CISA KEV Gaps — Exploited CVEs Missing from KEV

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,361 CVEs tracked 53,621 with exploits 4,857 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,288 vendors 43,840 researchers
607 results Clear all
CVE-2014-2120 6.1 MEDIUM KEV EPSS 0.70
Cisco ASA - XSS
Cross-site scripting (XSS) vulnerability in the WebVPN login page in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCun19025.
CWE-79 Mar 19, 2014
CVE-2014-0502 8.8 HIGH KEV EPSS 0.91
Adobe Flash Player <11.7.700.269-12.0.0.70 - RCE
Double free vulnerability in Adobe Flash Player before 11.7.700.269 and 11.8.x through 12.0.x before 12.0.0.70 on Windows and Mac OS X and before 11.2.202.341 on Linux, Adobe AIR before 4.0.0.1628 on Android, Adobe AIR SDK before 4.0.0.1628, and Adobe AIR SDK & Compiler before 4.0.0.1628 allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in February 2014.
CWE-415 Feb 21, 2014
CVE-2014-8439 8.8 HIGH KEV RANSOMWARE EPSS 0.34
Adobe Flash Player < 11.2.202.418 - Use After Free
Adobe Flash Player before 13.0.0.258 and 14.x and 15.x before 15.0.0.239 on Windows and OS X and before 11.2.202.424 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe AIR SDK & Compiler before 15.0.0.302 allow attackers to execute arbitrary code or cause a denial of service (invalid pointer dereference) via unspecified vectors.
CWE-119 Nov 25, 2014
CVE-2014-4077 7.8 HIGH KEV EPSS 0.51
Microsoft - Auth Bypass
Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Office 2007 SP3, when IMJPDCT.EXE (aka IME for Japanese) is installed, allow remote attackers to bypass a sandbox protection mechanism via a crafted PDF document, aka "Microsoft IME (Japanese) Elevation of Privilege Vulnerability," as exploited in the wild in 2014.
Nov 11, 2014
CVE-2014-4148 8.8 HIGH KEV EPSS 0.60
Microsoft Windows - RCE
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to execute arbitrary code via a crafted TrueType font, as exploited in the wild in October 2014, aka "TrueType Font Parsing Remote Code Execution Vulnerability."
CWE-94 Oct 15, 2014
CVE-2014-4123 8.8 HIGH KEV EPSS 0.51
Microsoft Internet Explorer <11 - Privilege Escalation
Microsoft Internet Explorer 7 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability," as exploited in the wild in October 2014, a different vulnerability than CVE-2014-4124.
Oct 15, 2014
CVE-2014-2817 8.8 HIGH KEV EPSS 0.29
Microsoft Internet Explorer <11 - Privilege Escalation
Microsoft Internet Explorer 6 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability."
Aug 12, 2014
CVE-2014-0546 9.8 CRITICAL KEV EPSS 0.28
Adobe Reader/Acrobat <10.1.11-11.0.08 - Privilege Escalation
Adobe Reader and Acrobat 10.x before 10.1.11 and 11.x before 11.0.08 on Windows allow attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via unspecified vectors.
Aug 12, 2014
CVE-2014-9163 7.8 HIGH KEV EPSS 0.03
Adobe Flash Player <13.0.0.259-15.0.0.246 - Buffer Overflow
Stack-based buffer overflow in Adobe Flash Player before 13.0.0.259 and 14.x and 15.x before 15.0.0.246 on Windows and OS X and before 11.2.202.425 on Linux allows attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in December 2014.
CWE-121 Dec 10, 2014
CVE-2014-0496 8.8 HIGH KEV EPSS 0.66
Adobe Reader/Acrobat <10.1.9, <11.0.06 - Use After Free
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allows attackers to execute arbitrary code via unspecified vectors.
CWE-416 Jan 15, 2014
CVE-2014-1776 9.8 CRITICAL KEV EPSS 0.84
Microsoft Internet Explorer <11 - Use After Free
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to the CMarkup::IsConnectedToPrimaryMarkup function, as exploited in the wild in April 2014. NOTE: this issue originally emphasized VGX.DLL, but Microsoft clarified that "VGX.DLL does not contain the vulnerable code leveraged in this exploit. Disabling VGX.DLL is an exploit-specific workaround that provides an immediate, effective workaround to help block known attacks."
CWE-416 Apr 27, 2014
CVE-2013-0648 8.8 HIGH KEV EPSS 0.61
Adobe Flash Player <11.6.602.171 - RCE
Unspecified vulnerability in the ExternalInterface ActionScript functionality in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, allows remote attackers to execute arbitrary code via crafted SWF content, as exploited in the wild in February 2013.
Feb 27, 2013
CVE-2013-0643 8.8 HIGH KEV EPSS 0.64
Adobe Flash Player <10.3.183.67-11.6.602.171 - RCE
The Firefox sandbox in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, does not properly restrict privileges, which makes it easier for remote attackers to execute arbitrary code via crafted SWF content, as exploited in the wild in February 2013.
CWE-269 Feb 27, 2013
CVE-2013-1331 7.8 HIGH KEV EPSS 0.89
Microsoft Office <2011 - RCE
Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to execute arbitrary code via crafted PNG data in an Office document, leading to improper memory allocation, aka "Office Buffer Overflow Vulnerability."
CWE-120 Jun 12, 2013
CVE-2013-3993 6.5 MEDIUM KEV RANSOMWARE EPSS 0.26
IBM Infosphere Biginsights < 2.1.0.3 - Path Traversal
IBM InfoSphere BigInsights before 2.1.0.3 allows remote authenticated users to bypass intended file and directory restrictions, or access untrusted data or code, via crafted parameters in unspecified API calls.
CWE-22 Jul 07, 2014
CVE-2013-0631 7.5 HIGH KEV EPSS 0.82
Adobe ColdFusion <9.0.2 - Info Disclosure
Adobe ColdFusion 9.0, 9.0.1, and 9.0.2 allows attackers to obtain sensitive information via unspecified vectors, as exploited in the wild in January 2013.
Jan 09, 2013
CVE-2013-1675 6.5 MEDIUM KEV EPSS 0.08
Mozilla Firefox <21 - Info Disclosure
Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.
CWE-665 May 16, 2013
CVE-2013-0641 7.8 HIGH KEV EPSS 0.88
Adobe Reader/Acrobat <9.5.4-10.1.6-11.0.02 - RCE
Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allows remote attackers to execute arbitrary code via a crafted PDF document, as exploited in the wild in February 2013.
CWE-120 Feb 14, 2013
CVE-2012-1854 7.8 HIGH KEV EPSS 0.04
Microsoft Office <2010 - Privilege Escalation
Untrusted search path vulnerability in VBE6.dll in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Microsoft Visual Basic for Applications (VBA); and Summit Microsoft Visual Basic for Applications SDK allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .docx file, aka "Visual Basic for Applications Insecure Library Loading Vulnerability," as exploited in the wild in July 2012.
CWE-426 Jul 10, 2012
CVE-2012-5054 8.8 HIGH KEV EPSS 0.72
Adobe Flash Player <11.4.402.265 - RCE
Integer overflow in the copyRawDataTo method in the Matrix3D class in Adobe Flash Player before 11.4.402.265 allows remote attackers to execute arbitrary code via malformed arguments.
CWE-190 Sep 24, 2012