Critical Vulnerabilities with Public Exploits

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,402 CVEs tracked 53,629 with exploits 4,859 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,301 vendors 43,863 researchers
4,101 results Clear all
CVE-2017-17611 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Doctor Search Script - SQL Injection
Doctor Search Script 1.0 has SQL Injection via the /list city parameter.
CWE-89 Dec 13, 2017
CVE-2017-17610 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
E-commerce Mlm Software - SQL Injection
E-commerce MLM Software 1.0 has SQL Injection via the service_detail.php pid parameter, event_detail.php eventid parameter, or news_detail.php newid parameter.
CWE-89 Dec 13, 2017
CVE-2017-17609 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Chartered Accountant Booking Script - SQL Injection
Chartered Accountant Booking Script 1.0 has SQL Injection via the /service-list city parameter.
CWE-89 Dec 13, 2017
CVE-2017-17608 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Kindergarten - Elementary School Listing Script - SQL Injection
Child Care Script 1.0 has SQL Injection via the /list city parameter.
CWE-89 Dec 13, 2017
CVE-2017-17607 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Cms Auditor Website - SQL Injection
CMS Auditor Website 1.0 has SQL Injection via the PATH_INFO to /news-detail.
CWE-89 Dec 13, 2017
CVE-2017-17606 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Co-work Space Search Script - SQL Injection
Co-work Space Search Script 1.0 has SQL Injection via the /list city parameter.
CWE-89 Dec 13, 2017
CVE-2017-17605 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Consumer Complaints Clone Script - SQL Injection
Consumer Complaints Clone Script 1.0 has SQL Injection via the other-user-profile.php id parameter.
CWE-89 Dec 13, 2017
CVE-2017-17601 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Cab Booking Script - SQL Injection
Cab Booking Script 1.0 has SQL Injection via the /service-list city parameter.
CWE-89 Dec 13, 2017
CVE-2017-17597 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Nearbuy Clone Script - SQL Injection
Nearbuy Clone Script 3.2 has SQL Injection via the category_list.php search parameter.
CWE-89 Dec 13, 2017
CVE-2017-17596 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Entrepreneur Job Portal Script - SQL Injection
Entrepreneur Job Portal Script 2.0.6 has SQL Injection via the jobsearch_all.php rid1 parameter.
CWE-89 Dec 13, 2017
CVE-2017-17594 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Domainsale Php Script - SQL Injection
DomainSale PHP Script 1.0 has SQL Injection via the domain.php id parameter.
CWE-89 Dec 13, 2017
CVE-2017-17592 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Website Auction Marketplace - SQL Injection
Website Auction Marketplace 2.0.5 has SQL Injection via the search.php cat_id parameter.
CWE-89 Dec 13, 2017
CVE-2017-17591 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
Realestate Crowdfunding Script - SQL Injection
Realestate Crowdfunding Script 2.7.2 has SQL Injection via the single-cause.php pid parameter.
CWE-89 Dec 13, 2017
CVE-2017-17590 9.8 CRITICAL 1 PoC Analysis EPSS 0.01
Stackoverflow-clone - SQL Injection
FS Stackoverflow Clone 1.0 has SQL Injection via the /question keywords parameter.
CWE-89 Dec 13, 2017
CVE-2017-17589 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Thumbtack Clone - SQL Injection
FS Thumbtack Clone 1.0 has SQL Injection via the browse-category.php cat parameter or the browse-scategory.php sc parameter.
CWE-89 Dec 13, 2017
CVE-2017-17586 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Olx Clone - SQL Injection
FS Olx Clone 1.0 has SQL Injection via the subpage.php scat parameter or the message.php pid parameter.
CWE-89 Dec 13, 2017
CVE-2017-17585 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Monster Clone - SQL Injection
FS Monster Clone 1.0 has SQL Injection via the Employer_Details.php id parameter.
CWE-89 Dec 13, 2017
CVE-2017-17584 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Makemytrip Clone - SQL Injection
FS Makemytrip Clone 1.0 has SQL Injection via the show-flight-result.php fl_orig or fl_dest parameter.
CWE-89 Dec 13, 2017
CVE-2017-17583 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Shutterstock Clone - SQL Injection
FS Shutterstock Clone 1.0 has SQL Injection via the /Category keywords parameter.
CWE-89 Dec 13, 2017
CVE-2017-17581 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Quibids Clone - SQL Injection
FS Quibids Clone 1.0 has SQL Injection via the itechd.php productid parameter.
CWE-89 Dec 13, 2017