Vulnerabilities with Nuclei Scanner Templates

Updated 54m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,402 CVEs tracked 53,629 with exploits 4,859 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,301 vendors 43,863 researchers
4,077 results Clear all
CVE-2017-3881 9.8 CRITICAL KEV 9 PoCs Analysis NUCLEI EPSS 0.94
Cisco - RCE
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges. The Cluster Management Protocol utilizes Telnet internally as a signaling and command protocol between cluster members. The vulnerability is due to the combination of two factors: (1) the failure to restrict the use of CMP-specific Telnet options only to internal, local communications between cluster members and instead accept and process such options over any Telnet connection to an affected device; and (2) the incorrect processing of malformed CMP-specific Telnet options. An attacker could exploit this vulnerability by sending malformed CMP-specific Telnet options while establishing a Telnet session with an affected Cisco device configured to accept Telnet connections. An exploit could allow an attacker to execute arbitrary code and obtain full control of the device or cause a reload of the affected device. This affects Catalyst switches, Embedded Service 2020 switches, Enhanced Layer 2 EtherSwitch Service Module, Enhanced Layer 2/3 EtherSwitch Service Module, Gigabit Ethernet Switch Module (CGESM) for HP, IE Industrial Ethernet switches, ME 4924-10GE switch, RF Gateway 10, and SM-X Layer 2/3 EtherSwitch Service Module. Cisco Bug IDs: CSCvd48893.
CWE-20 Mar 17, 2017
CVE-2017-20194 5.3 MEDIUM EXPLOITED NUCLEI EPSS 0.09
Formidable Form Builder <2.05.03 - Info Disclosure
The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2.05.03 via the frm_forms_preview AJAX action. This makes it possible for unauthenticated attackers to export all of the form entries for a given form.
CWE-200 Oct 16, 2024
CVE-2017-20192 8.3 HIGH EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.29
Formidable Form Builder <2.05.03 - XSS
The Formidable Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters submitted during form entries like 'after_html' in versions before 2.05.03 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts that execute in a victim's browser.
CWE-79 Oct 16, 2024
CVE-2017-18638 7.5 HIGH NUCLEI EPSS 0.87
Graphite <1.1.5 - SSRF
send_email in graphite-web/webapp/graphite/composer/views.py in Graphite through 1.1.5 is vulnerable to SSRF. The vulnerable SSRF endpoint can be used by an attacker to have the Graphite web server request any resource. The response to this SSRF request is encoded into an image file and then sent to an e-mail address that can be supplied by the attacker. Thus, an attacker can exfiltrate any information.
CWE-918 Oct 11, 2019
CVE-2017-18598 6.1 MEDIUM NUCLEI EPSS 0.01
Qards <2017-10-11 - XSS
The Qards plugin through 2017-10-11 for WordPress has XSS via a remote document specified in the url parameter to html2canvasproxy.php.
CWE-79 Sep 10, 2019
CVE-2017-18590 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress Timesheet <0.1.5 - XSS
The timesheet plugin before 0.1.5 for WordPress has multiple XSS issues.
CWE-79 Aug 27, 2019
CVE-2017-18580 9.8 CRITICAL EXPLOITED NUCLEI EPSS 0.75
WordPress <5.0.1 - RCE
The shortcodes-ultimate plugin before 5.0.1 for WordPress has remote code execution via a filter in a meta, post, or user shortcode.
CWE-20 Aug 22, 2019
CVE-2017-18562 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <1.0.6 - XSS
The error-log-viewer plugin before 1.0.6 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18516 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <1.0.5 - XSS
The bws-linkedin plugin before 1.0.5 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18564 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress Sender Plugin <1.2.1 - XSS
The sender plugin before 1.2.1 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18565 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <1.35 - XSS
The updater plugin before 1.35 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18558 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <0.1.9 - XSS
The bws-testimonials plugin before 0.1.9 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18557 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <1.3.6 - XSS
The bws-google-maps plugin before 1.3.6 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18556 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <1.7.1 - XSS
The bws-google-analytics plugin before 1.7.1 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18537 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <1.0.0 - XSS
The visitors-online plugin before 1.0.0 for WordPress has multiple XSS issues.
CWE-79 Aug 21, 2019
CVE-2017-18536 6.1 MEDIUM NUCLEI EPSS 0.05
WordPress <1.3.8 - XSS
The stop-user-enumeration plugin before 1.3.8 for WordPress has XSS.
CWE-79 Aug 21, 2019
CVE-2017-18566 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress <1.5.6 - XSS
The user-role plugin before 1.5.6 for WordPress has multiple XSS issues.
CWE-79 Aug 20, 2019
CVE-2017-18532 6.1 MEDIUM NUCLEI EPSS 0.00
Realty Plugin <1.1.0 - XSS
The realty plugin before 1.1.0 for WordPress has multiple XSS issues.
CWE-79 Aug 20, 2019
CVE-2017-18530 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress rating-bws <0.2 - XSS
The rating-bws plugin before 0.2 for WordPress has multiple XSS issues.
CWE-79 Aug 20, 2019
CVE-2017-18529 6.1 MEDIUM NUCLEI EPSS 0.00
WordPress Promobar <1.1.1 - XSS
The promobar plugin before 1.1.1 for WordPress has multiple XSS issues.
CWE-79 Aug 20, 2019