Vulnerabilities with Nuclei Scanner Templates
Updated 4h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,077 results
Clear all
CVE-2008-4764
1 PoC
Analysis
NUCLEI
EPSS 0.00
Com Extplorer < 2.0.0 - Path Traversal
Directory traversal vulnerability in the eXtplorer module (com_extplorer) 2.0.0 RC2 and earlier in Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter in a show_error action.
CWE-22
Oct 28, 2008
CVE-2008-4668
1 PoC
Analysis
NUCLEI
EPSS 0.00
Joomla Com Imagebrowser - Path Traversal
Directory traversal vulnerability in the Image Browser (com_imagebrowser) 0.1.5 component for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the folder parameter to index.php.
CWE-22
Oct 22, 2008
CVE-2008-1547
1 PoC
Analysis
NUCLEI
EPSS 0.63
Microsoft Outlook Web Access <6.5.7638 - Open Redirect
Open redirect vulnerability in exchweb/bin/redir.asp in Microsoft Outlook Web Access (OWA) for Exchange Server 2003 SP2 (aka build 6.5.7638) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the URL parameter.
CWE-601
Oct 21, 2008
CVE-2008-2650
1 PoC
Analysis
NUCLEI
EPSS 0.02
Cmsimple - Path Traversal
Directory traversal vulnerability in cmsimple/cms.php in CMSimple 3.1, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the sl parameter to index.php. NOTE: this can be leveraged for remote file execution by including adm.php and then invoking the upload action. NOTE: on 20080601, the vendor patched 3.1 without changing the version number.
CWE-22
Jun 10, 2008
CVE-2008-2398
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.00
Appserv < 2.5.10 - XSS
Cross-site scripting (XSS) vulnerability in index.php in AppServ Open Project 2.5.10 and earlier allows remote attackers to inject arbitrary web script or HTML via the appservlang parameter.
CWE-79
May 21, 2008
CVE-2008-1059
1 PoC
Analysis
NUCLEI
EPSS 0.00
Wordpress Sniplets Plugin - Code Injection
PHP remote file inclusion vulnerability in modules/syntax_highlight.php in the Sniplets 1.1.2 and 1.2.2 plugin for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the libpath parameter.
CWE-94
Feb 28, 2008
CVE-2008-1061
1 PoC
Analysis
NUCLEI
EPSS 0.00
Sniplets 1.1.2-1.2.2 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Sniplets 1.1.2 and 1.2.2 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) text parameter to (a) warning.php, (b) notice.php, and (c) inset.php in view/sniplets/, and possibly (d) modules/execute.php; the (2) url parameter to (e) view/admin/submenu.php; and the (3) page parameter to (f) view/admin/pager.php.
CWE-79
Feb 28, 2008
CVE-2007-5728
1 PoC
Analysis
NUCLEI
EPSS 0.01
Phppgadmin - XSS
Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, and possibly 4.1.2, allows remote attackers to inject arbitrary web script or HTML via certain input available in PHP_SELF in (1) redirect.php, possibly related to (2) login.php, different vectors than CVE-2007-2865.
CWE-79
Oct 30, 2007
CVE-2007-3010
9.8
CRITICAL
KEV
4 PoCs
Analysis
NUCLEI
EPSS 0.94
Al-enterprise Omnipcx Enterprise Comm... - Command Injection
masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.
CWE-77
Sep 18, 2007
CVE-2007-4556
NUCLEI
EPSS 0.02
OpenSymphony XWork <2.0.4 - DoS
Struts support in OpenSymphony XWork before 1.2.3, and 2.x before 2.0.4, as used in WebWork and Apache Struts, recursively evaluates all input as an Object-Graph Navigation Language (OGNL) expression when altSyntax is enabled, which allows remote attackers to cause a denial of service (infinite loop) or execute arbitrary code via form input beginning with a "%{" sequence and ending with a "}" character.
Aug 28, 2007
CVE-2007-4504
1 PoC
Analysis
NUCLEI
EPSS 0.00
Joomla! com_rsfiles <1.0.2 - Path Traversal
Directory traversal vulnerability in index.php in the RSfiles component (com_rsfiles) 1.0.2 and earlier for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the path parameter in a files.display action.
Aug 23, 2007
CVE-2007-2449
1 PoC
Analysis
NUCLEI
EPSS 0.49
Apache Tomcat <6.0.14 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in certain JSP files in the examples web application in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote attackers to inject arbitrary web script or HTML via the portion of the URI after the ';' character, as demonstrated by a URI containing a "snp/snoop.jsp;" sequence.
Jun 14, 2007
CVE-2007-0885
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.01
Rainbow/Zen - XSS
Cross-site scripting (XSS) vulnerability in jira/secure/BrowseProject.jspa in Rainbow with the Zen (Rainbow.Zen) extension allows remote attackers to inject arbitrary web script or HTML via the id parameter.
Feb 12, 2007
CVE-2006-6565
2 PoCs
Analysis
NUCLEI
EPSS 0.72
FileZilla Server <0.9.22 - DoS
FileZilla Server before 0.9.22 allows remote attackers to cause a denial of service (crash) via a wildcard argument to the (1) LIST or (2) NLST commands, which results in a NULL pointer dereference, a different set of vectors than CVE-2006-6564. NOTE: CVE analysis suggests that the problem might be due to a malformed PORT command.
CWE-476
Dec 15, 2006
CVE-2006-2173
NUCLEI
EPSS 0.00
Filezilla Server - Buffer Overflow
Buffer overflow in FileZilla FTP Server 2.2.22 allows remote authenticated attackers to cause a denial of service and possibly execute arbitrary code via a long (1) PORT or (2) PASS followed by the MLSD command, or (2) the remote server interface, as demonstrated by the Infigo FTPStress Fuzzer.
May 04, 2006
CVE-2006-3392
10 PoCs
Analysis
NUCLEI
EPSS 0.79
Webmin <1.290 - Info Disclosure
Webmin before 1.290 and Usermin before 1.220 calls the simplify_path function before decoding HTML, which allows remote attackers to read arbitrary files, as demonstrated using "..%01" sequences, which bypass the removal of "../" sequences before bytes such as "%01" are removed from the filename. NOTE: This is a different issue than CVE-2006-3274.
Jul 06, 2006
CVE-2006-2842
2 PoCs
Analysis
NUCLEI
EPSS 0.01
SquirrelMail <1.4.6 - RCE
PHP remote file inclusion vulnerability in functions/plugin.php in SquirrelMail 1.4.6 and earlier, if register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the plugins array parameter. NOTE: this issue has been disputed by third parties, who state that Squirrelmail provides prominent warnings to the administrator when register_globals is enabled. Since the varieties of administrator negligence are uncountable, perhaps this type of issue should not be included in CVE. However, the original developer has posted a security advisory, so there might be relevant real-world environments under which this vulnerability is applicable
Jun 06, 2006
CVE-2006-1681
NUCLEI
EPSS 0.00
Cherokee HTTPD <0.5 - XSS
Cross-site scripting (XSS) vulnerability in Cherokee HTTPD 0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a malformed request that generates an HTTP 400 error, which is not properly handled when the error message is generated.
Apr 11, 2006
CVE-2005-0850
NUCLEI
EPSS 0.00
Filezilla-project Filezilla Server < 0.9.6 - Improper Input Validation
FileZilla FTP server before 0.9.6 allows remote attackers to cause a denial of service via a request for a filename containing an MS-DOS device name such as CON, NUL, COM1, LPT1, and others.
CWE-20
May 02, 2005
CVE-2005-0851
NUCLEI
EPSS 0.00
Filezilla-project Filezilla Server < 0.9.6 - Infinite Loop
FileZilla FTP server before 0.9.6, when using MODE Z (zlib compression), allows remote attackers to cause a denial of service (infinite loop) via certain file uploads or directory listings.
CWE-835
May 02, 2005