Vulnerabilities with Nuclei Scanner Templates

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,378 CVEs tracked 53,627 with exploits 4,858 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,288 vendors 43,849 researchers
4,077 results Clear all
CVE-2016-1000129 6.1 MEDIUM NUCLEI EPSS 0.03
WordPress Plugin Defa Online Image Protector <3.3 - XSS
Reflected XSS in wordpress plugin defa-online-image-protector v3.3
CWE-79 Oct 10, 2016
CVE-2016-1000128 6.1 MEDIUM NUCLEI EPSS 0.03
WordPress Plugin Anti-Plagiarism <3.60 - XSS
Reflected XSS in wordpress plugin anti-plagiarism v3.60
CWE-79 Oct 10, 2016
CVE-2016-1000127 6.1 MEDIUM NUCLEI EPSS 0.02
WordPress Plugin Ajax-Random-Post <2.00 - XSS
Reflected XSS in wordpress plugin ajax-random-post v2.00
CWE-79 Oct 10, 2016
CVE-2016-1000126 6.1 MEDIUM NUCLEI EPSS 0.02
WordPress Plugin Admin-Font-Editor <1.8 - XSS
Reflected XSS in wordpress plugin admin-font-editor v1.8
CWE-79 Oct 10, 2016
CVE-2016-5674 9.8 CRITICAL EXPLOITED 2 PoCs Analysis NUCLEI EPSS 0.89
NUUO NVRmini <3.0.0 - RCE
__debugging_center_utils___.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.7.5 through 3.0.0, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 allows remote attackers to execute arbitrary PHP code via the log parameter.
CWE-20 Aug 31, 2016
CVE-2016-6195 9.8 CRITICAL EXPLOITED 3 PoCs Analysis NUCLEI EPSS 0.85
vBulletin <4.2.2 PL5 & <4.2.3 PL1 - SQL Injection
SQL injection vulnerability in forumrunner/includes/moderation.php in vBulletin before 4.2.2 Patch Level 5 and 4.2.3 before Patch Level 1 allows remote attackers to execute arbitrary SQL commands via the postids parameter to forumrunner/request.php, as exploited in the wild in July 2016.
CWE-89 Aug 30, 2016
CVE-2016-4437 9.8 CRITICAL KEV 8 PoCs Analysis NUCLEI EPSS 0.94
Apache Shiro <1.2.5 - RCE
Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attackers to execute arbitrary code or bypass intended access restrictions via an unspecified request parameter.
CWE-321 Jun 07, 2016
CVE-2016-3088 9.8 CRITICAL KEV RANSOMWARE 11 PoCs Analysis NUCLEI EPSS 0.94
ActiveMQ web shell upload
The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request.
CWE-434 Jun 01, 2016
CVE-2016-3081 8.1 HIGH 2 PoCs Analysis NUCLEI EPSS 0.94
Apache Struts < 2.3.20.3 - Command Injection
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, allow remote attackers to execute arbitrary code via method: prefix, related to chained expressions.
CWE-77 Apr 26, 2016
CVE-2016-3978 6.1 MEDIUM NUCLEI EPSS 0.05
FortiOS <5.0.13-5.2.3-5.4.0 - CSRF
The Web User Interface (WebUI) in FortiOS 5.0.x before 5.0.13, 5.2.x before 5.2.3, and 5.4.x before 5.4.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or cross-site scripting (XSS) attacks via the "redirect" parameter to "login."
CWE-79 Apr 08, 2016
CVE-2016-2389 7.5 HIGH EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.84
SAP Netweaver - Path Traversal
Directory traversal vulnerability in the GetFileList function in the SAP Manufacturing Integration and Intelligence (xMII) component 15.0 for SAP NetWeaver 7.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the Path parameter to /Catalog, aka SAP Security Note 2230978.
CWE-22 Feb 16, 2016
CVE-2016-0957 7.5 HIGH 1 PoC Analysis NUCLEI EPSS 0.93
Adobe Experience Manager <6.1.0 - SSRF
Dispatcher before 4.1.5 in Adobe Experience Manager 5.6.1, 6.0.0, and 6.1.0 does not properly implement a URL filter, which allows remote attackers to bypass dispatcher rules via unspecified vectors.
Feb 10, 2016
CVE-2015-3306 25 PoCs Analysis NUCLEI EPSS 0.94
ProFTPD 1.3.5 - RCE
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
CWE-284 May 18, 2015
CVE-2015-1419 NUCLEI EPSS 0.72
vsftpd <3.0.2 - Auth Bypass
Unspecified vulnerability in vsftpd 3.0.2 and earlier allows remote attackers to bypass access restrictions via unknown vectors, related to deny_file parsing.
Jan 28, 2015
CVE-2015-10141 CRITICAL 4 PoCs Analysis NUCLEI EPSS 0.54
Xdebug <2.5.5 - Command Injection
An unauthenticated OS command injection vulnerability exists within Xdebug versions 2.5.5 and earlier, a PHP debugging extension developed by Derick Rethans. When remote debugging is enabled, Xdebug listens on port 9000 and accepts debugger protocol commands without authentication. An attacker can send a crafted eval command over this interface to execute arbitrary PHP code, which may invoke system-level functions such as system() or passthru(). This results in full compromise of the host under the privileges of the web server user.
CWE-306 Jul 23, 2025
CVE-2015-20067 7.5 HIGH 1 Writeup NUCLEI EPSS 0.19
WP Attachment Export < 0.2.4 - Missing Authorization
The WP Attachment Export WordPress plugin before 0.2.4 does not have proper access controls, allowing unauthenticated users to download the XML data that holds all the details of attachments/posts on a Wordpress
CWE-862 Nov 01, 2021
CVE-2015-9499 9.8 CRITICAL EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.68
Themepunch Showbiz Pro < 1.7.1 - Unrestricted File Upload
The Showbiz Pro plugin through 1.7.1 for WordPress has PHP code execution by uploading a .php file within a ZIP archive.
CWE-434 Oct 22, 2019
CVE-2015-9480 7.5 HIGH EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.62
Robot-cpa Robotcpa - Path Traversal
The RobotCPA plugin 5 for WordPress has directory traversal via the f.php l parameter.
CWE-22 Oct 10, 2019
CVE-2015-9415 7.5 HIGH EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.18
Angrycreative BJ Lazy Load < 1.0 - Improper Input Validation
The bj-lazy-load plugin before 1.0 for WordPress has Remote File Inclusion.
CWE-20 Sep 26, 2019
CVE-2015-9414 6.1 MEDIUM NUCLEI EPSS 0.03
Wpsymposiumpro Wp-symposium < 15.8.1 - XSS
The wp-symposium plugin through 15.8.1 for WordPress has XSS via the wp-content/plugins/wp-symposium/get_album_item.php?size parameter.
CWE-79 Sep 26, 2019