Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
395,963 CVEs1,717 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026
25,049 results · page 105 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2016-0165 | Microsoft Win32k Privilege Escalation Vulnerability | KEVEXPLOITHIGH 7.8EPSS 13.7% | 12 April 2016 |
| CVE-2016-0151 | Microsoft Windows CSRSS Security Feature Bypass Vulnerability | KEVEXPLOIT ✓HIGH 7.8EPSS 62.9% | 12 April 2016 |
| CVE-2016-0145 | The font library in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold and 1511; Office 2007 SP3 and 2010 SP2; Word Viewer; .NET Framework 3.0… | EXPLOIT ✓HIGH 8.8EPSS 38.0% | 12 April 2016 |
| CVE-2016-0143 | The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted… | EXPLOIT ✓HIGH 7.8EPSS 4.23% | 12 April 2016 |
| CVE-2016-0122 | Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Word 2016 for Mac, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft… | EXPLOIT ✓HIGH 7.8EPSS 31.1% | 12 April 2016 |
| CVE-2016-4004 | Directory traversal vulnerability in Dell OpenManage Server Administrator (OMSA) 8.2 allows remote authenticated administrators to read arbitrary files via a ..\ (dot dot backslash) in the file parameter to ViewFile. | EXPLOIT ✓MEDIUM 4.9EPSS 7.42% | 12 April 2016 |
| CVE-2016-3987 | The HTTP server in Trend Micro Password Manager allows remote web servers to execute arbitrary commands via the url parameter to (1) api/openUrlInDefaultBrowser or (2) api/showSB. | EXPLOIT ✓CRITICAL 9.8EPSS 22.3% | 12 April 2016 |
| CVE-2016-3986 | Avast allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted PE file, related to authenticode parsing. | EXPLOIT ✓HIGH 7.8EPSS 10.1% | 12 April 2016 |
| CVE-2016-1885 | Integer signedness error in the amd64_set_ldt function in sys/amd64/amd64/sys_machdep.c in FreeBSD 9.3 before p39, 10.1 before p31, and 10.2 before p14 allows local users to cause a denial of service (kernel panic) via an i386_set_ldt system call, which… | EXPLOIT ✓MEDIUM 6.2EPSS 1.01% | 12 April 2016 |
| CVE-2015-8399 | Atlassian Confluence before 5.8.17 allows remote authenticated users to read configuration files via the decoratorName parameter to (1) spaces/viewdefaultdecorator.action or (2) admin/viewdefaultdecorator.action. | EXPLOITMEDIUM 4.3EPSS 26.9% | 11 April 2016 |
| CVE-2015-8398 | Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.8.17 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to rest/prototype/1/session/check. | EXPLOITMEDIUM 6.1EPSS 2.59% | 11 April 2016 |
| CVE-2016-2385 | Heap-based buffer overflow in the encode_msg function in encode_msg.c in the SEAS module in Kamailio (formerly OpenSER and SER) before 4.3.5 allows remote attackers to cause a denial of service (memory corruption and process crash) or possibly execute… | EXPLOITCRITICAL 9.8EPSS 27.0% | 11 April 2016 |
| CVE-2016-0784 | Directory traversal vulnerability in the Import/Export System Backups functionality in Apache OpenMeetings before 3.1.1 allows remote authenticated administrators to write to arbitrary files via a .. | EXPLOITMEDIUM 6.5EPSS 32.0% | 11 April 2016 |
| CVE-2016-0710 | Multiple SQL injection vulnerabilities in the User Manager service in Apache Jetspeed before 2.3.1 allow remote attackers to execute arbitrary SQL commands via the (1) role or (2) user parameter to services/usermanager/users/. | EXPLOIT ✓HIGH 8.8EPSS 59.4% | 11 April 2016 |
| CVE-2016-0709 | Directory traversal vulnerability in the Import/Export function in the Portal Site Manager in Apache Jetspeed before 2.3.1 allows remote authenticated administrators to write to arbitrary files, and consequently execute arbitrary code, via a .. | EXPLOIT ✓HIGH 7.2EPSS 76.2% | 11 April 2016 |
| CVE-2016-1013 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different… | EXPLOIT ✓HIGH 8.8EPSS 22.8% | 9 April 2016 |
| CVE-2016-1011 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different… | EXPLOIT ✓HIGH 8.8EPSS 26.0% | 9 April 2016 |
| CVE-2016-3984 | The McAfee VirusScan Console (mcconsol.exe) in McAfee Active Response (MAR) before 1.1.0.161, Agent (MA) 5.x before 5.0.2 Hotfix 1110392 (5.0.2.333), Data Exchange Layer 2.x (DXL) before 2.0.1.140.1, Data Loss Prevention Endpoint (DLPe) 9.3 before Patch… | EXPLOITMEDIUM 5.1EPSS 1.11% | 8 April 2016 |
| CVE-2016-3963 | Siemens SCALANCE S613 allows remote attackers to cause a denial of service (web-server outage) via traffic to TCP port 443. | EXPLOITMEDIUM 5.3EPSS 7.56% | 8 April 2016 |
| CVE-2015-6541 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Mail interface in Zimbra Collaboration Server (ZCS) before 8.5 allow remote attackers to hijack the authentication of arbitrary users for requests that change account preferences via a… | EXPLOITHIGH 8.8EPSS 3.11% | 8 April 2016 |
| CVE-2016-3976 | SAP NetWeaver Directory Traversal Vulnerability | KEVEXPLOITHIGH 7.5EPSS 47.3% | 7 April 2016 |
| CVE-2016-2851 | Integer overflow in proto.c in libotr before 4.1.1 on 64-bit platforms allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a series of large OTR messages, which triggers a… | EXPLOITCRITICAL 9.8EPSS 20.9% | 7 April 2016 |
| CVE-2016-2563 | Stack-based buffer overflow in the SCP command-line utility in PuTTY before 0.67 and KiTTY 0.66.6.3 and earlier allows remote servers to cause a denial of service (stack memory corruption) or execute arbitrary code via a crafted SCP-SINK file-size… | EXPLOITCRITICAL 9.8EPSS 28.5% | 7 April 2016 |
| CVE-2016-2098 | Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to execute arbitrary Ruby code by leveraging an application's unrestricted use of the render method. | EXPLOIT ✓HIGH 7.3EPSS 85.0% | 7 April 2016 |
| CVE-2016-1531 | Exim before 4.86.2, when installed setuid root, allows local users to gain privileges via the perl_startup argument. | EXPLOIT ×3 ✓HIGH 7.0EPSS 5.59% | 7 April 2016 |
| CVE-2016-0792 | Multiple unspecified API endpoints in Jenkins before 1.650 and LTS before 1.642.2 allow remote authenticated users to execute arbitrary code via serialized data in an XML file, related to XStream and groovy.util.Expando. | EXPLOIT ×2 ✓HIGH 8.8EPSS 71.1% | 7 April 2016 |
| CVE-2016-3974 | XML external entity (XXE) vulnerability in the Configuration Wizard in SAP NetWeaver Java AS 7.1 through 7.5 allows remote attackers to cause a denial of service, conduct SMB Relay attacks, or access arbitrary files via a crafted XML request to… | EXPLOITCRITICAL 9.1EPSS 15.1% | 7 April 2016 |
| CVE-2016-0793 | Incomplete blacklist vulnerability in the servlet filter restriction mechanism in WildFly (formerly JBoss Application Server) before 10.0.0.Final on Windows allows remote attackers to read the sensitive files in the (1) WEB-INF or (2) META-INF directory… | EXPLOIT ✓HIGH 7.5EPSS 11.6% | 1 April 2016 |
| CVE-2016-2288 | Cogent DataHub before 7.3.10 allows local users to gain privileges by leveraging the user or guest role to modify a file. | EXPLOIT ✓HIGH 7.8EPSS 1.25% | 29 March 2016 |
| CVE-2016-1769 | QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Photoshop file. | EXPLOIT ✓HIGH 7.8EPSS 7.29% | 24 March 2016 |
| CVE-2016-1768 | QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix image, a different vulnerability than CVE-2016-1767. | EXPLOIT ✓HIGH 7.8EPSS 22.2% | 24 March 2016 |
| CVE-2016-1767 | QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix image, a different vulnerability than CVE-2016-1768. | EXPLOIT ✓HIGH 7.8EPSS 7.29% | 24 March 2016 |
| CVE-2016-1757 | Race condition in the kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context via a crafted app. | EXPLOIT ×2 ✓HIGH 7.0EPSS 23.6% | 24 March 2016 |
| CVE-2016-1755 | The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different… | EXPLOIT ✓HIGH 7.8EPSS 10.3% | 24 March 2016 |
| CVE-2016-1749 | IOUSBFamily in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. | EXPLOIT ✓HIGH 7.8EPSS 7.78% | 24 March 2016 |
| CVE-2016-1744 | The Intel driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than… | EXPLOIT ✓HIGH 7.8EPSS 7.85% | 24 March 2016 |
| CVE-2016-1743 | The Intel driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than… | EXPLOITHIGH 7.8EPSS 10.1% | 24 March 2016 |
| CVE-2016-1741 | The NVIDIA driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. | EXPLOIT ✓CRITICAL 9.8EPSS 10.7% | 24 March 2016 |
| CVE-2016-3116 | CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data. | EXPLOITMEDIUM 6.4EPSS 21.1% | 22 March 2016 |
| CVE-2016-3115 | Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2)… | EXPLOITMEDIUM 6.4EPSS 36.8% | 22 March 2016 |
| CVE-2016-2345 | Stack-based buffer overflow in dwrcs.exe in the dwmrcs daemon in SolarWinds DameWare Mini Remote Control 12.0 allows remote attackers to execute arbitrary code via a crafted string. | EXPLOITCRITICAL 9.8EPSS 40.5% | 17 March 2016 |
| CVE-2016-2856 | pt_chown in the glibc package before 2.19-18+deb8u4 on Debian jessie; the elibc package before 2.15-0ubuntu10.14 on Ubuntu 12.04 LTS and before 2.19-0ubuntu6.8 on Ubuntu 14.04 LTS; and the glibc package before 2.21-0ubuntu4.2 on Ubuntu 15.10 and before… | EXPLOITHIGH 8.4EPSS 0.79% | 14 March 2016 |
| CVE-2016-1960 | Integer underflow in the nsHtml5TreeBuilder class in the HTML5 string parser in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) by leveraging… | EXPLOIT ×2 ✓HIGH 8.8EPSS 26.7% | 13 March 2016 |
| CVE-2016-1002 | Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow… | EXPLOIT ✓HIGH 8.8EPSS 20.6% | 12 March 2016 |
| CVE-2016-1001 | Heap-based buffer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler… | EXPLOIT ✓HIGH 8.8EPSS 26.2% | 12 March 2016 |
| CVE-2016-1000 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler… | EXPLOIT ✓HIGH 8.8EPSS 29.8% | 12 March 2016 |
| CVE-2016-0999 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler… | EXPLOIT ✓HIGH 8.8EPSS 29.8% | 12 March 2016 |
| CVE-2016-0998 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler… | EXPLOIT ×2 ✓HIGH 8.8EPSS 29.6% | 12 March 2016 |
| CVE-2016-0997 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler… | EXPLOIT ✓HIGH 8.8EPSS 29.8% | 12 March 2016 |
| CVE-2016-0954 | Adobe Digital Editions before 4.5.1 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors. | EXPLOIT ✓CRITICAL 9.8EPSS 16.8% | 9 March 2016 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.