High EPSS Vulnerabilities with Public Exploits
Updated 1h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
3,481 results
Clear all
CVE-2017-6526
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.84
Dnatools Dnalims - Authentication Bypass
An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to unauthenticated command execution through an improperly protected administrative web shell (cgi-bin/dna/sysAdmin.cgi POST requests).
CWE-287
Mar 09, 2017
CVE-2010-2709
3 PoCs
Analysis
EPSS 0.84
HP OpenView Network Node Manager <7.53 - Buffer Overflow
Stack-based buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long OvJavaLocale value in a cookie.
CWE-119
Aug 05, 2010
CVE-2010-2729
EXPLOITED
2 PoCs
Analysis
EPSS 0.84
Microsoft Windows XP-7 - RCE
The Print Spooler service in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, when printer sharing is enabled, does not properly validate spooler access permissions, which allows remote attackers to create files in a system directory, and consequently execute arbitrary code, by sending a crafted print request over RPC, as exploited in the wild in September 2010, aka "Print Spooler Service Impersonation Vulnerability."
CWE-20
Sep 15, 2010
CVE-2024-43160
10.0
CRITICAL
1 PoC
Analysis
NUCLEI
EPSS 0.84
BerqWP <1.7.6 - Code Injection
Unrestricted Upload of File with Dangerous Type vulnerability in BerqWP allows Code Injection.This issue affects BerqWP: from n/a through 1.7.6.
CWE-434
Aug 13, 2024
CVE-2023-28770
7.5
HIGH
EXPLOITED
1 PoC
Analysis
EPSS 0.84
Zyxel DX5401-B0 <V5.17(ABYO.1)C0 - Info Disclosure
The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0 could allow a remote unauthenticated attacker to read the system files and to retrieve the password of the supervisor from the encrypted file.
CWE-200
Apr 27, 2023
CVE-2016-2389
7.5
HIGH
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.84
SAP Netweaver - Path Traversal
Directory traversal vulnerability in the GetFileList function in the SAP Manufacturing Integration and Intelligence (xMII) component 15.0 for SAP NetWeaver 7.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the Path parameter to /Catalog, aka SAP Security Note 2230978.
CWE-22
Feb 16, 2016
CVE-2023-2822
4.3
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.84
Ellucian Ethos Identity <5.10.5 - XSS
A vulnerability was found in Ellucian Ethos Identity up to 5.10.5. It has been classified as problematic. Affected is an unknown function of the file /cas/logout. The manipulation of the argument url leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 5.10.6 is able to address this issue. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-229596.
CWE-79
May 20, 2023
CVE-2014-3914
EXPLOITED
2 PoCs
Analysis
EPSS 0.84
Rocket ServerGraph 1.2 - Path Traversal
Directory traversal vulnerability in the Admin Center for Tivoli Storage Manager (TSM) in Rocket ServerGraph 1.2 allows remote attackers to (1) create arbitrary files via a .. (dot dot) in the query parameter in a writeDataFile action to the fileRequestor servlet, execute arbitrary files via a .. (dot dot) in the query parameter in a (2) run or (3) runClear action to the fileRequestor servlet, (4) read arbitrary files via a readDataFile action to the fileRequestor servlet, (5) execute arbitrary code via a save_server_groups action to the userRequest servlet, or (6) delete arbitrary files via a del action in the fileRequestServlet servlet.
CWE-22
Aug 07, 2014
CVE-2019-4279
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.84
IBM WebSphere App Server <9.0 - RCE
IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM X-Force ID: 160445.
CWE-502
May 17, 2019
CVE-2024-46538
4.8
MEDIUM
2 PoCs
Analysis
EPSS 0.84
Netgate Pfsense - XSS
A cross-site scripting (XSS) vulnerability in pfsense v2.5.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the $pconfig variable at interfaces_groups_edit.php.
CWE-79
Oct 22, 2024
CVE-2017-0059
4.3
MEDIUM
KEV
3 PoCs
Analysis
EPSS 0.84
Microsoft Internet Explorer - Information Disclosure
Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disclosure Vulnerability." This vulnerability is different from those described in CVE-2017-0008 and CVE-2017-0009.
Mar 17, 2017
CVE-2014-6039
7.5
HIGH
1 PoC
Analysis
EPSS 0.84
Zohocorp Manageengine Eventlog Analyzer - Insufficiently Protected ...
ManageEngine EventLog Analyzer version 7 through 9.9 build 9002 has a Credentials Disclosure Vulnerability. Fixed version 10 Build 10000.
CWE-522
Jan 13, 2020
CVE-2012-1465
4 PoCs
Analysis
EPSS 0.84
Netmechanica Netdecision < 4.5.1 - Memory Corruption
Stack-based buffer overflow in the HTTP Server in NetMechanica NetDecision before 4.6.1 allows remote attackers to cause a denial of service (application crash) via a long URL in an HTTP request. NOTE: some of these details are obtained from third party information.
CWE-119
Mar 19, 2012
CVE-2002-0079
4 PoCs
Analysis
EPSS 0.84
Microsoft Internet Information Server - Buffer Overflow
Buffer overflow in the chunked encoding transfer mechanism in Internet Information Server (IIS) 4.0 and 5.0 Active Server Pages allows attackers to cause a denial of service or execute arbitrary code.
Apr 22, 2002
CVE-2000-0246
1 PoC
Analysis
EPSS 0.84
IIS 4.0-5.0 - Info Disclosure
IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, which allows remote attackers to read the source code of ASP and other files, aka the "Virtualized UNC Share" vulnerability.
Mar 30, 2000
CVE-2014-8636
EXPLOITED
1 PoC
Analysis
EPSS 0.84
Mozilla Firefox <35.0 - XSS
The XrayWrapper implementation in Mozilla Firefox before 35.0 and SeaMonkey before 2.32 does not properly interact with a DOM object that has a named getter, which might allow remote attackers to execute arbitrary JavaScript code with chrome privileges via unspecified vectors.
CWE-94
Jan 14, 2015
CVE-2013-5093
2 PoCs
Analysis
EPSS 0.84
Graphite <0.9.10 - RCE
The renderLocalView function in render/views.py in graphite-web in Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object.
CWE-94
Sep 27, 2013
CVE-2023-27532
7.5
HIGH
KEV
RANSOMWARE
4 PoCs
Analysis
EPSS 0.84
Veeam Backup & Replication < 11.0.1.1261 - Missing Authentication
Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database to be obtained. This may lead to gaining access to the backup infrastructure hosts.
CWE-306
Mar 10, 2023
CVE-2011-3176
3 PoCs
Analysis
EPSS 0.84
Novell Zenworks Configuration Management - Memory Corruption
Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to execute arbitrary code via an opcode 0x4c request.
CWE-119
Apr 09, 2012
CVE-2016-3715
5.5
MEDIUM
KEV
1 PoC
Analysis
EPSS 0.84
ImageMagick <6.9.3-10, <7.0.1-1 - RCE
The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image.
CWE-552
May 05, 2016