High EPSS Vulnerabilities with Public Exploits

Updated 6h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,482 CVEs tracked 53,635 with exploits 4,859 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,335 vendors 43,883 researchers
3,483 results Clear all
CVE-2002-0656 1 PoC Analysis EPSS 0.88
Openssl - Buffer Overflow
Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary code via (1) a large client master key in SSL2 or (2) a large session ID in SSL3.
Aug 12, 2002
CVE-2020-5791 7.2 HIGH 3 PoCs Analysis EPSS 0.88
Nagios XI 5.6.0-5.7.3 - Mibs.php Authenticated Remote Code Exection
Improper neutralization of special elements used in an OS command in Nagios XI 5.7.3 allows a remote, authenticated admin user to execute operating system commands with the privileges of the apache user.
CWE-78 Oct 20, 2020
CVE-2013-1347 8.8 HIGH KEV 2 PoCs Analysis EPSS 0.88
Microsoft Internet Explorer - Use After Free
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly allocated or (2) is deleted, as exploited in the wild in May 2013.
CWE-416 May 05, 2013
CVE-2023-36255 8.8 HIGH 1 PoC Analysis EPSS 0.88
Eramba Limited <3.19.1 - RCE
An issue in Eramba Limited Eramba Enterprise and Community edition v.3.19.1 allows a remote attacker to execute arbitrary code via the path parameter in the URL.
CWE-94 Aug 03, 2023
CVE-2015-5371 1 PoC Analysis EPSS 0.88
SolarWinds Storage Manager - RCE
The AuthenticationFilter class in SolarWinds Storage Manager allows remote attackers to upload and execute arbitrary scripts via unspecified vectors.
Jul 06, 2015
CVE-2018-10662 9.8 CRITICAL 2 PoCs Analysis EPSS 0.88
Axis IP Cameras - Info Disclosure
An issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface.
Jun 26, 2018
CVE-2024-21182 7.5 HIGH 2 PoCs Analysis EPSS 0.88
Oracle WebLogic Server <14.1.1.0.0 - Unauthorized Access
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3, IIOP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).
Jul 16, 2024
CVE-2019-9978 6.1 MEDIUM KEV 17 PoCs Analysis NUCLEI EPSS 0.88
Social Warfare <3.5.3 - Stored XSS
The social-warfare plugin before 3.5.3 for WordPress has stored XSS via the wp-admin/admin-post.php?swp_debug=load_options swp_url parameter, as exploited in the wild in March 2019. This affects Social Warfare and Social Warfare Pro.
CWE-79 Mar 24, 2019
CVE-2017-2741 9.8 CRITICAL 4 PoCs Analysis EPSS 0.88
HP PageWide/OfficeJet Pro <1708D - RCE
A potential security vulnerability has been identified with HP PageWide Printers, HP OfficeJet Pro Printers, with firmware before 1708D. This vulnerability could potentially be exploited to execute arbitrary code.
Jan 23, 2018
CVE-2022-45354 5.3 MEDIUM EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.88
Wpchill Download Monitor < 4.7.60 - Information Disclosure
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.7.60.
CWE-200 Jan 08, 2024
CVE-2013-2115 8.1 HIGH 2 PoCs Analysis EPSS 0.88
Apache Struts < 2.3.14.1 - Code Injection
Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not properly handled when using the includeParams attribute in the (1) URL or (2) A tag. NOTE: this issue is due to an incomplete fix for CVE-2013-1966.
CWE-94 Jul 10, 2013
CVE-2022-1162 9.1 CRITICAL 4 PoCs Analysis NUCLEI EPSS 0.88
Gitlab < 14.7.7 - Hard-coded Credentials
A hardcoded password was set for accounts registered using an OmniAuth provider (e.g. OAuth, LDAP, SAML) in GitLab CE/EE versions 14.7 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 allowing attackers to potentially take over accounts
CWE-798 Apr 04, 2022
CVE-2006-1359 EXPLOITED 6 PoCs Analysis EPSS 0.88
Microsoft Internet Explorer <7 - RCE/DoS
Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a certain createTextRange call on a checkbox object, which results in a dereference of an invalid table pointer.
CWE-94 Mar 23, 2006
CVE-2020-11975 9.8 CRITICAL EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.88
Apache Unomi - RCE
Apache Unomi allows conditions to use OGNL scripting which offers the possibility to call static Java classes from the JDK that could execute code with the permission level of the running Java process.
Jun 05, 2020
CVE-2025-2563 8.1 HIGH EXPLOITED 5 PoCs Analysis NUCLEI EPSS 0.88
User Registration & Membership <= 4.1.1 - Unauthenticated Privilege Escalation
The User Registration & Membership WordPress plugin before 4.1.2 does not prevent users to set their account role when the Membership Addon is enabled, leading to a privilege escalation issue and allowing unauthenticated users to gain admin privileges
Apr 14, 2025
CVE-2006-4777 EXPLOITED 4 PoCs Analysis EPSS 0.88
Internet Explorer 6.0 SP1 - Buffer Overflow
Heap-based buffer overflow in the DirectAnimation Path Control (DirectAnimation.PathControl) COM object (daxctle.ocx) for Internet Explorer 6.0 SP1, on Chinese and possibly other Windows distributions, allows remote attackers to execute arbitrary code via unknown manipulations in arguments to the KeyFrame method, possibly related to an integer overflow, as demonstrated by daxctle2, and a different vulnerability than CVE-2006-4446.
CWE-119 Sep 14, 2006
CVE-2018-7445 9.8 CRITICAL KEV 2 PoCs Analysis EPSS 0.88
Mikrotik Routeros < 6.41.3 - Memory Corruption
A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attackers with access to the service can exploit this vulnerability and gain code execution on the system. The overflow occurs before authentication takes place, so it is possible for an unauthenticated remote attacker to exploit it. All architectures and all devices running RouterOS before versions 6.41.3/6.42rc27 are vulnerable.
CWE-119 Mar 19, 2018
CVE-2011-0807 3 PoCs Analysis EPSS 0.88
Oracle Sun GlassFish Enterprise Server <3.0.1 - Info Disclosure
Unspecified vulnerability in Oracle Sun GlassFish Enterprise Server 2.1, 2.1.1, and 3.0.1, and Sun Java System Application Server 9.1, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Administration.
Apr 20, 2011
CVE-2018-16323 6.5 MEDIUM 2 PoCs Analysis EPSS 0.88
Imagemagick < 6.9.10-9 - Information Disclosure
ReadXBMImage in coders/xbm.c in ImageMagick before 7.0.8-9 leaves data uninitialized when processing an XBM file that has a negative pixel value. If the affected code is used as a library loaded into a process that includes sensitive information, that information sometimes can be leaked via the image data.
CWE-200 Sep 01, 2018
CVE-2019-8394 6.5 MEDIUM KEV 2 PoCs Analysis EPSS 0.88
Zohocorp Manageengine Servicedesk Plus - Unrestricted File Upload
Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customization.
CWE-434 Feb 17, 2019