Critical Vulnerabilities with Public Exploits

Updated 40m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,482 CVEs tracked 53,635 with exploits 4,859 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,335 vendors 43,883 researchers
4,103 results Clear all
CVE-2019-25487 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
SAPIDO RB-1732 V2.0.43 - RCE
SAPIDO RB-1732 V2.0.43 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary system commands by submitting malicious input to the formSysCmd endpoint. Attackers can send POST requests with the sysCmd parameter containing shell commands to execute code on the device with router privileges.
CWE-639 Mar 11, 2026
CVE-2019-13507 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
Hidea AZ Admin - SQL Injection
hidea.com AZ Admin 1.0 has news_det.php?cod= SQL Injection.
CWE-89 Jul 11, 2019
CVE-2019-13131 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Supermicro Superdoctor 5 - Missing Authentication
Super Micro SuperDoctor 5, when restrictions are not implemented in agent.cfg, allows remote attackers to execute arbitrary commands via NRPE.
CWE-306 Jul 01, 2019
CVE-2019-11705 9.8 CRITICAL 1 PoC Analysis EPSS 0.09
Thunderbird <60.7.1 - Buffer Overflow
A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain email messages, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7.1.
CWE-787 Jul 23, 2019
CVE-2019-11704 9.8 CRITICAL 1 PoC Analysis EPSS 0.08
Thunderbird <60.7.1 - Buffer Overflow
A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in icalmemory_strdup_and_dequote when processing certain email messages, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7.1.
CWE-787 Jul 23, 2019
CVE-2019-11703 9.8 CRITICAL 1 PoC Analysis EPSS 0.08
Thunderbird <60.7.1 - Buffer Overflow
A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in parser_get_next_char when processing certain email messages, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7.1.
CWE-787 Jul 23, 2019
CVE-2019-13294 9.8 CRITICAL 1 PoC Analysis EPSS 0.34
Arox School-erp - Authentication Bypass
AROX School-ERP Pro has a command execution vulnerability. import_stud.php and upload_fille.php do not have session control. Therefore an unauthenticated user can execute a command on the system.
CWE-287 Jul 04, 2019
CVE-2019-12920 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
Cylan Clever Dog Smart Camera Panoram... - Hard-coded Credentials
On Shenzhen Cylan Clever Dog Smart Camera DOG-2W and DOG-2W-V4 devices, an attacker on the network can login remotely to the camera and gain root access. The device ships with a hardcoded 12345678 password for the root account, accessible from a TELNET login prompt.
CWE-798 Jun 20, 2019
CVE-2019-11523 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Anviz Global M3 Outdoor RFID Access Control - Command Injection
Anviz Global M3 Outdoor RFID Access Control executes any command received from any source. No authentication/encryption is done. Attackers can fully interact with the device: for example, send the "open door" command, download the users list (which includes RFID codes and passcodes in cleartext), or update/create users. The same attack can be executed on a local network and over the internet (if the device is exposed on a public IP address).
CWE-306 Jun 06, 2019
CVE-2019-8352 9.8 CRITICAL 1 PoC Analysis EPSS 0.04
BMC Patrol Agent < 11.3.01 - Hard-coded Credentials
By default, BMC PATROL Agent through 11.3.01 uses a static encryption key for encrypting/decrypting user credentials sent over the network to managed PATROL Agent services. If an attacker were able to capture this network traffic, they could decrypt these credentials and use them to execute code or escalate privileges on the network.
CWE-798 May 20, 2019
CVE-2019-10866 9.8 CRITICAL 1 PoC Analysis EPSS 0.14
10web Form Maker < 1.13.3 - SQL Injection
In the Form Maker plugin before 1.13.3 for WordPress, it's possible to achieve SQL injection in the function get_labels_parameters in the file form-maker/admin/models/Submissions_fm.php with a crafted value of the /models/Submissioc parameter.
CWE-89 May 23, 2019
CVE-2019-9792 9.8 CRITICAL 1 PoC Analysis EPSS 0.19
Thunderbird <60.6, Firefox ESR <60.6, Firefox <66 - Memory Corruption
The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then be used by JavaScript to achieve memory corruption, which results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.6, Firefox ESR < 60.6, and Firefox < 66.
CWE-787 Apr 26, 2019
CVE-2019-8613 9.8 CRITICAL 1 PoC Analysis EPSS 0.10
Apple Iphone OS < 12.3 - Use After Free
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, tvOS 12.3, watchOS 5.2.1. A remote attacker may be able to cause arbitrary code execution.
CWE-416 Dec 18, 2019
CVE-2019-12279 9.8 CRITICAL 1 PoC Analysis EPSS 0.16
Nagios XI 5.6.1 - SQL Injection
Nagios XI 5.6.1 allows SQL injection via the username parameter to login.php?forgotpass (aka the reset password form). NOTE: The vendor disputes this issues as not being a vulnerability because the issue does not seem to be a legitimate SQL Injection. The POC does not show any valid injection that can be done with the variable provided, and while the username value being passed does get used in a SQL query, it is passed through SQL escaping functions when creating the call. The vendor tried re-creating the issue with no luck
CWE-89 May 22, 2019
CVE-2019-6203 9.8 CRITICAL 1 PoC Analysis EPSS 0.10
iOS <12.2 - Info Disclosure
A logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2. An attacker in a privileged network position may be able to intercept network traffic.
Apr 17, 2020
CVE-2019-6446 9.8 CRITICAL 1 PoC Analysis EPSS 0.71
Numpy < 1.16.0 - Insecure Deserialization
An issue was discovered in NumPy before 1.16.3. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, as demonstrated by a numpy.load call. NOTE: third parties dispute this issue because it is a behavior that might have legitimate applications in (for example) loading serialized Python object arrays from trusted and authenticated sources.
CWE-502 Jan 16, 2019
CVE-2019-7442 9.8 CRITICAL 1 PoC Analysis EPSS 0.17
CyberArk Enterprise Password Vault <=10.7 - XXE
An XML external entity (XXE) vulnerability in the Password Vault Web Access (PVWA) of CyberArk Enterprise Password Vault <=10.7 allows remote attackers to read arbitrary files or potentially bypass authentication via a crafted DTD in the SAML authentication system.
CWE-611 May 08, 2019
CVE-2019-25614 9.8 CRITICAL 1 PoC Analysis EPSS 0.01
Free Float FTP 1.0 STOR Command Remote Buffer Overflow
Free Float FTP 1.0 contains a buffer overflow vulnerability in the STOR command handler that allows remote attackers to execute arbitrary code by sending a crafted STOR request with an oversized payload. Attackers can authenticate with anonymous credentials and send a malicious STOR command containing 247 bytes of padding followed by a return address and shellcode to trigger code execution on the FTP server.
CWE-787 Mar 22, 2026
CVE-2019-17600 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
Intelbras Iwr 1000n Firmware - CSRF
Intelbras IWR 1000N 1.6.4 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled.
CWE-352 Oct 15, 2019
CVE-2019-10664 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Domoticz < 4.10578 - SQL Injection
Domoticz before 4.10578 allows SQL Injection via the idx parameter in CWebServer::GetFloorplanImage in WebServer.cpp.
CWE-89 Mar 31, 2019