High EPSS Vulnerabilities with Public Exploits

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,391 CVEs tracked 53,627 with exploits 4,859 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,294 vendors 43,856 researchers
3,485 results Clear all
CVE-2000-0302 1 PoC Analysis EPSS 0.74
Microsoft Index Server - Info Disclosure
Microsoft Index Server allows remote attackers to view the source code of ASP files by appending a %20 to the filename in the CiWebHitsFile argument to the null.htw URL.
Mar 31, 2000
CVE-2007-5863 2 PoCs Analysis EPSS 0.74
Apple Mac OS X 10.5.1 - Command Injection
Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the client and the server, using a modified distribution definition file with the "allow-external-scripts" option.
CWE-310 Dec 19, 2007
CVE-2008-0116 1 PoC Analysis EPSS 0.74
Microsoft Excel - Code Injection
Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, Compatibility Pack, and Office 2004 and 2008 for Mac allows user-assisted remote attackers to execute arbitrary code via malformed tags in rich text, aka "Excel Rich Text Validation Vulnerability."
CWE-20 Mar 11, 2008
CVE-2017-8634 7.5 HIGH 1 PoC Analysis EPSS 0.74
Microsoft Edge - Memory Corruption
Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user due to the way that Microsoft browser JavaScript engines render content when handling objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-8635, CVE-2017-8636, CVE-2017-8638, CVE-2017-8639, CVE-2017-8640, CVE-2017-8641, CVE-2017-8645, CVE-2017-8646, CVE-2017-8647, CVE-2017-8655, CVE-2017-8656, CVE-2017-8657, CVE-2017-8670, CVE-2017-8671, CVE-2017-8672, and CVE-2017-8674.
CWE-119 Aug 08, 2017
CVE-2006-0032 1 PoC Analysis EPSS 0.74
Microsoft Windows - XSS
Cross-site scripting (XSS) vulnerability in the Indexing Service in Microsoft Windows 2000, XP, and Server 2003, when the Encoding option is set to Auto Select, allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL, which is injected into an error message whose charset is set to UTF-7.
CWE-79 Sep 12, 2006
CVE-2013-0229 EXPLOITED 5 PoCs Analysis EPSS 0.74
Miniupnpd < 1.3 - Denial of Service
The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd before 1.4 allows remote attackers to cause a denial of service (service crash) via a crafted request that triggers a buffer over-read.
Jan 31, 2013
CVE-2014-4877 1 PoC Analysis EPSS 0.74
GNU Wget <1.16 - Path Traversal
Absolute path traversal vulnerability in GNU Wget before 1.16, when recursion is enabled, allows remote FTP servers to write to arbitrary files, and consequently execute arbitrary code, via a LIST response that references the same filename within two entries, one of which indicates that the filename is for a symlink.
CWE-22 Oct 29, 2014
CVE-2008-0492 3 PoCs Analysis EPSS 0.74
Persits Xupload - Memory Corruption
Stack-based buffer overflow in the Persits.XUpload.2 ActiveX control in XUpload.ocx 3.0.0.4 and earlier in Persits XUpload 3.0 allows remote attackers to execute arbitrary code via a long argument to the AddFile method. NOTE: some of these details are obtained from third party information.
CWE-119 Jan 30, 2008
CVE-2001-0779 1 PoC Analysis EPSS 0.74
SUN Solaris - Buffer Overflow
Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers to gain root access via a long username.
Oct 18, 2001
CVE-2024-47076 8.6 HIGH 2 PoCs Analysis EPSS 0.74
CUPS - Info Disclosure
CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the former `cups-filters` package as library functions to be used for the data format conversion tasks needed in Printer Applications. The `cfGetPrinterAttributes5` function in `libcupsfilters` does not sanitize IPP attributes returned from an IPP server. When these IPP attributes are used, for instance, to generate a PPD file, this can lead to attacker controlled data to be provided to the rest of the CUPS system.
CWE-20 Sep 26, 2024
CVE-2006-2389 1 PoC Analysis EPSS 0.74
Microsoft Office - Code Injection
Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to execute arbitrary code via an Office file with a malformed property that triggers memory corruption related to record lengths, aka "Microsoft Office Property Vulnerability," a different vulnerability than CVE-2006-1316.
CWE-94 Jul 11, 2006
CVE-2008-4322 2 PoCs Analysis EPSS 0.74
Realflex Technologies LTD Realwin Server - Memory Corruption
Stack-based buffer overflow in RealFlex Technologies Ltd. RealWin Server 2.0, as distributed by DATAC, allows remote attackers to execute arbitrary code via a crafted FC_INFOTAG/SET_CONTROL packet.
CWE-119 Sep 29, 2008
CVE-2018-4937 8.8 HIGH 1 PoC Analysis EPSS 0.74
Adobe Flash Player Desktop Runtime < 29.0.0.113 - Out-of-Bounds Write
Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
CWE-787 May 19, 2018
CVE-2018-4935 8.8 HIGH 1 PoC Analysis EPSS 0.74
Adobe Flash Player Desktop Runtime < 29.0.0.113 - Out-of-Bounds Write
Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
CWE-787 May 19, 2018
CVE-2002-0148 1 PoC Analysis EPSS 0.74
Microsoft Internet Information Server - XSS
Cross-site scripting vulnerability in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to execute arbitrary script as other users via an HTTP error page.
Apr 22, 2002
CVE-2008-0117 1 PoC Analysis EPSS 0.74
Microsoft Excel <2000 SP3,2002 SP2,2004,2008 - RCE
Unspecified vulnerability in Microsoft Excel 2000 SP3 and 2002 SP2, and Office 2004 and 2008 for Mac, allows user-assisted remote attackers to execute arbitrary code via crafted conditional formatting values, aka "Excel Conditional Formatting Vulnerability."
Mar 11, 2008
CVE-2018-9160 9.8 CRITICAL 3 PoCs Analysis EPSS 0.74
Sickrage < 9.2.101 - Insufficiently Protected Credentials
SickRage before v2018.03.09-1 includes cleartext credentials in HTTP responses.
CWE-522 Mar 31, 2018
CVE-2007-2386 2 PoCs Analysis EPSS 0.74
Apple Mac OS X <10.4.9 - Buffer Overflow
Buffer overflow in mDNSResponder in Apple Mac OS X 10.4 up to 10.4.9 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted UPnP Internet Gateway Device (IGD) packet.
May 24, 2007
CVE-2023-39265 3.8 LOW EXPLOITED 1 PoC Analysis EPSS 0.74
Apache Superset < 2.1.0 - Improper Input Validation
Apache Superset would allow for SQLite database connections to be incorrectly registered when an attacker uses alternative driver names like sqlite+pysqlite or by using database imports. This could allow for unexpected file creation on Superset webservers. Additionally, if Apache Superset is using a SQLite database for its metadata (not advised for production use) it could result in more severe vulnerabilities related to confidentiality and integrity. This vulnerability exists in Apache Superset versions up to and including 2.1.0.
CWE-20 Sep 06, 2023
CVE-2024-32964 9.0 CRITICAL 1 PoC Analysis NUCLEI EPSS 0.74
Lobehub Lobe Chat < 0.150.6 - SSRF
Lobe Chat is a chatbot framework that supports speech synthesis, multimodal, and extensible Function Call plugin system. Prior to 0.150.6, lobe-chat had an unauthorized Server-Side Request Forgery vulnerability in the /api/proxy endpoint. An attacker can construct malicious requests to cause Server-Side Request Forgery without logging in, attack intranet services, and leak sensitive information.
CWE-918 May 14, 2024