High EPSS Vulnerabilities with Public Exploits
Updated 5h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
3,481 results
Clear all
CVE-2021-41381
7.5
HIGH
2 PoCs
Analysis
NUCLEI
EPSS 0.84
Payara Micro Community < 5.2021.6 - Path Traversal
Payara Micro Community 5.2021.6 and below allows Directory Traversal.
CWE-22
Sep 23, 2021
CVE-2005-0491
7 PoCs
Analysis
EPSS 0.84
Knox Software Arkeia Server Backup - Buffer Overflow
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a long type 77 request.
May 02, 2005
CVE-2014-3936
2 PoCs
Analysis
EPSS 0.84
D-Link DSP-W215 <1.01b06 - Buffer Overflow
Stack-based buffer overflow in the do_hnap function in www/my_cgi.cgi in D-Link DSP-W215 (Rev. A1) with firmware 1.01b06 and earlier, DIR-505 with firmware before 1.08b10, and DIR-505L with firmware 1.01 and earlier allows remote attackers to execute arbitrary code via a long Content-Length header in a GetDeviceSettings action in an HNAP request.
CWE-119
Jun 02, 2014
CVE-2004-0842
1 PoC
Analysis
EPSS 0.84
Internet Explorer <6.0 SP1 - Memory Corruption
Internet Explorer 6.0 SP1 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (application crash from "memory corruption") via certain malformed Cascading Style Sheet (CSS) elements that trigger heap-based buffer overflows, as demonstrated using the "<STYLE>@;/*" string, possibly due to a missing comment terminator that may cause an invalid length to trigger a large memory copy operation, aka the "CSS Heap Memory Corruption Vulnerability."
Dec 23, 2004
CVE-2010-0842
EXPLOITED
2 PoCs
Analysis
EPSS 0.84
Oracle Java SE/JFB - Unspecified Vuln
Unspecified vulnerability in the Sound component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is an uncontrolled array index that allows remote attackers to execute arbitrary code via a MIDI file with a crafted MixerSequencer object, related to the GM_Song structure.
Apr 01, 2010
CVE-2007-4921
1 PoC
Analysis
EPSS 0.84
Ajax File Browser - Code Injection
PHP remote file inclusion vulnerability in _includes/settings.inc.php in Ajax File Browser 3 Beta allows remote attackers to execute arbitrary PHP code via a URL in the approot parameter.
CWE-94
Sep 17, 2007
CVE-2022-34598
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.84
H3C Magic R100 - Command Injection
The udpserver in H3C Magic R100 V200R004 and V100R005 has the 9034 port opened, allowing attackers to execute arbitrary commands.
Jul 06, 2022
CVE-2007-1355
1 PoC
Analysis
EPSS 0.84
Apache Tomcat < 4.1.37 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the appdev/sample/web/hello.jsp example application in Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.23, and 6.0.0 through 6.0.10 allow remote attackers to inject arbitrary web script or HTML via the test parameter and unspecified vectors.
May 21, 2007
CVE-2023-36812
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.84
OpenTSDB - RCE
OpenTSDB is a open source, distributed, scalable Time Series Database (TSDB). OpenTSDB is vulnerable to Remote Code Execution vulnerability by writing user-controlled input to Gnuplot configuration file and running Gnuplot with the generated configuration. This issue has been patched in commit `07c4641471c` and further refined in commit `fa88d3e4b`. These patches are available in the `2.4.2` release. Users are advised to upgrade. User unable to upgrade may disable Gunuplot via the config option`tsd.core.enable_ui = true` and remove the shell files `mygnuplot.bat` and `mygnuplot.sh`.
CWE-74
Jun 30, 2023
CVE-2007-3325
1 PoC
Analysis
EPSS 0.84
LAN Management System <1.9.6 - RCE
PHP remote file inclusion vulnerability in lib/language.php in LAN Management System (LMS) 1.9.6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _LIB_DIR parameter, a different vector than CVE-2007-1643 and CVE-2007-2205.
Jun 21, 2007
CVE-2007-3306
1 PoC
Analysis
EPSS 0.84
MiniBill 1.2.5 - RCE
PHP remote file inclusion vulnerability in crontab/run_billing.php in MiniBill 1.2.5 allows remote attackers to execute arbitrary PHP code via a URL in the config[include_dir] parameter, a different vector than CVE-2006-4489.
Jun 21, 2007
CVE-2007-2986
1 PoC
Analysis
EPSS 0.84
AdminBot MX 9.0.5 - Code Injection
PHP remote file inclusion vulnerability in lib/live_status.lib.php in AdminBot MX 9.0.5 allows remote attackers to execute arbitrary PHP code via a URL in the ROOT parameter.
Jun 01, 2007
CVE-2007-2937
1 PoC
Analysis
EPSS 0.84
TROforum 0.1 - RCE
PHP remote file inclusion vulnerability in admin/admin.php in TROforum 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the site_url parameter.
May 31, 2007
CVE-2007-2793
1 PoC
Analysis
EPSS 0.84
Geeklog 2.x - RCE
PHP remote file inclusion vulnerability in ImageImageMagick.php in Geeklog 2.x allows remote attackers to execute arbitrary PHP code via a URL in the glConf[path_system] parameter.
May 22, 2007
CVE-2012-4924
2 PoCs
Analysis
EPSS 0.84
ASUS Net4Switch 1.0.0020 - Buffer Overflow
Buffer overflow in the CxDbgPrint function in the ipswcom.dll ActiveX component 1.0.0.1 for ASUS Net4Switch 1.0.0020 allows remote attackers to execute arbitrary code via a long parameter to the Alert method.
CWE-119
Sep 15, 2012
CVE-2007-6166
EXPLOITED
10 PoCs
Analysis
EPSS 0.84
Apple QuickTime <7.3.1 - Buffer Overflow
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.
CWE-119
Nov 29, 2007
CVE-2023-37941
6.6
MEDIUM
EXPLOITED
1 PoC
Analysis
EPSS 0.84
Apache Superset < 2.1.0 - Insecure Deserialization
If an attacker gains write access to the Apache Superset metadata database, they could persist a specifically crafted Python object that may lead to remote code execution on Superset's web backend.
The Superset metadata db is an 'internal' component that is typically
only accessible directly by the system administrator and the superset
process itself. Gaining access to that database should
be difficult and require significant privileges.
This vulnerability impacts Apache Superset versions 1.5.0 up to and including 2.1.0. Users are recommended to upgrade to version 2.1.1 or later.
CWE-502
Sep 06, 2023
CVE-2014-7205
4 PoCs
Analysis
EPSS 0.84
hapi Server Framework - Code Injection
Eval injection vulnerability in the internals.batch function in lib/batch.js in the bassmaster plugin before 1.5.2 for the hapi server framework for Node.js allows remote attackers to execute arbitrary Javascript code via unspecified vectors.
CWE-94
Oct 08, 2014
CVE-2006-3524
7 PoCs
Analysis
EPSS 0.84
SIPfoundry sipXtapi <20060324 - RCE
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a long CSeq field value in an INVITE message.
Jul 12, 2006
CVE-2007-5099
1 PoC
Analysis
EPSS 0.84
David Watters Helplink - Code Injection
PHP remote file inclusion vulnerability in show.php in David Watters Helplink 0.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the file parameter.
CWE-94
Sep 26, 2007