Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
395,996 CVEs1,717 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026
25,049 results · page 110 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2015-7765 | ZOHO ManageEngine OpManager 11.5 build 11600 and earlier uses a hardcoded password of "plugin" for the IntegrationUser account, which allows remote authenticated users to obtain administrator access by leveraging knowledge of this password. | EXPLOIT ✓HIGH 9.0EPSS 67.3% | 9 October 2015 |
| CVE-2015-5889 | rsh in the remote_cmds component in Apple OS X before 10.11 allows local users to obtain root privileges via vectors involving environment variables. | EXPLOIT ×2 ✓HIGH 7.2EPSS 5.13% | 9 October 2015 |
| CVE-2015-7709 | The arkeiad daemon in the Arkeia Backup Agent in Western Digital Arkeia 11.0.12 and earlier allows remote attackers to bypass authentication and execute arbitrary commands via a series of crafted requests involving the ARKFS_EXEC_CMD operation. | EXPLOIT ✓HIGH 10.0EPSS 79.0% | 5 October 2015 |
| CVE-2015-7707 | Ignite Realtime Openfire 3.10.2 allows remote authenticated users to gain administrator access via the isadmin parameter to user-edit-form.jsp. | EXPLOITMEDIUM 6.5EPSS 6.03% | 5 October 2015 |
| CVE-2015-1338 | kernel_crashdump in Apport before 2.19 allows local users to cause a denial of service (disk consumption) or possibly gain privileges via a (1) symlink or (2) hard link attack on /var/crash/vmcore.log. | EXPLOITHIGH 7.2EPSS 0.91% | 1 October 2015 |
| CVE-2015-3864 | Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted MPEG-4 data, aka internal bug 23034759. | EXPLOIT ×3 ✓HIGH 10.0EPSS 87.1% | 1 October 2015 |
| CVE-2015-1538 | Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I allows remote attackers to execute arbitrary code via crafted atoms in MP4 data that trigger an unchecked… | EXPLOIT ✓HIGH 10.0EPSS 99.1% | 1 October 2015 |
| CVE-2015-7603 | Directory traversal vulnerability in Konica Minolta FTP Utility 1.0 allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in a RETR command. | EXPLOITHIGH 7.8EPSS 60.7% | 29 September 2015 |
| CVE-2015-7602 | Directory traversal vulnerability in BisonWare BisonFTP 3.5 allows remote attackers to read arbitrary files via a ../ (dot dot slash) in a RETR command. | EXPLOITHIGH 7.8EPSS 61.5% | 29 September 2015 |
| CVE-2015-7601 | Directory traversal vulnerability in PCMan's FTP Server 2.0.7 allows remote attackers to read arbitrary files via a ..// (dot dot double slash) in a RETR command. | EXPLOITHIGH 7.8EPSS 58.3% | 29 September 2015 |
| CVE-2015-5075 | Cross-site request forgery (CSRF) vulnerability in X2Engine X2CRM before 5.2 allows remote attackers to hijack the authentication of administrators for requests that create an administrative account via a crafted request to index.php/users/create. | EXPLOITMEDIUM 6.8EPSS 2.76% | 29 September 2015 |
| CVE-2015-5074 | Incomplete blacklist vulnerability in the FileUploadsFilter class in protected/components/filters/FileUploadsFilter.php in X2Engine X2CRM before 5.0.9 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a .pht… | EXPLOITHIGH 7.5EPSS 7.51% | 29 September 2015 |
| CVE-2015-3203 | Unrestricted file upload vulnerability in h5ai before 0.25.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the directory specified by the href… | EXPLOITHIGH 7.5EPSS 9.44% | 28 September 2015 |
| CVE-2015-7387 | ZOHO ManageEngine EventLog Analyzer 10.6 build 10060 and earlier allows remote attackers to bypass intended restrictions and execute arbitrary SQL commands via an allowed query followed by a disallowed one in the query parameter to event/runQuery.do, as… | EXPLOIT ×2 ✓HIGH 7.5EPSS 80.2% | 28 September 2015 |
| CVE-2015-5082 | Endian Firewall before 3.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) NEW_PASSWORD_1 or (2) NEW_PASSWORD_2 parameter to cgi-bin/chpasswd.cgi. | EXPLOIT ×3 ✓HIGH 10.0EPSS 69.9% | 28 September 2015 |
| CVE-2015-7382 | SQL injection vulnerability in install.php in Web Reference Database (aka refbase) through 0.9.6 allows remote attackers to execute arbitrary SQL commands via the defaultCharacterSet parameter, a different issue than CVE-2015-6009. | EXPLOITHIGH 7.5EPSS 1.47% | 28 September 2015 |
| CVE-2015-7381 | Multiple PHP remote file inclusion vulnerabilities in install.php in Web Reference Database (aka refbase) through 0.9.6 allow remote attackers to execute arbitrary PHP code via the (1) pathToMYSQL or (2) databaseStructureFile parameter, a different… | EXPLOITHIGH 7.5EPSS 3.20% | 28 September 2015 |
| CVE-2015-6009 | Multiple SQL injection vulnerabilities in Web Reference Database (aka refbase) through 0.9.6 allow remote attackers to execute arbitrary SQL commands via (1) the where parameter to rss.php or (2) the sqlQuery parameter to search.php, a different issue… | EXPLOITHIGH 7.5EPSS 1.53% | 28 September 2015 |
| CVE-2015-6008 | install.php in Web Reference Database (aka refbase) through 0.9.6 allows remote attackers to execute arbitrary commands via the adminPassword parameter, a different issue than CVE-2015-7381. | EXPLOITHIGH 7.5EPSS 4.82% | 28 September 2015 |
| CVE-2015-6306 | Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947. | EXPLOITHIGH 7.2EPSS 1.05% | 26 September 2015 |
| CVE-2015-6305 | Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConnect Secure Mobility Client 2.0 through 4.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current… | EXPLOIT ✓HIGH 7.2EPSS 1.20% | 26 September 2015 |
| CVE-2015-7309 | The theme editor in Bolt before 2.2.5 does not check the file extension when renaming files, which allows remote authenticated users to execute arbitrary code by renaming a crafted file and then directly accessing it. | EXPLOIT ✓MEDIUM 6.5EPSS 38.6% | 22 September 2015 |
| CVE-2015-5574 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before 19.0.0.190, Adobe AIR SDK before 19.0.0.190, and Adobe AIR SDK & Compiler before… | EXPLOIT ✓HIGH 10.0EPSS 45.5% | 22 September 2015 |
| CVE-2015-5568 | Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before 19.0.0.190, Adobe AIR SDK before 19.0.0.190, and Adobe AIR SDK & Compiler before 19.0.0.190 allow attackers to cause a… | EXPLOITHIGH 10.0EPSS 19.9% | 22 September 2015 |
| CVE-2015-6923 | The ndvbs module in VBox Communications Satellite Express Protocol 2.3.17.3 allows local users to write to arbitrary physical memory locations and gain privileges via a 0x00000ffd ioctl call. | EXPLOITHIGH 7.2EPSS 0.92% | 21 September 2015 |
| CVE-2015-5603 | The HipChat for JIRA plugin before 6.30.0 for Atlassian JIRA allows remote authenticated users to execute arbitrary Java code via unspecified vectors, related to "Velocity Template Injection Vulnerability." | EXPLOIT ×2 ✓MEDIUM 6.5EPSS 59.3% | 21 September 2015 |
| CVE-2015-7243 | Buffer overflow in Boxoft WAV to MP3 Converter allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted WAV file. | EXPLOIT ×2 ✓HIGH 7.5EPSS 58.3% | 18 September 2015 |
| CVE-2015-5895 | Multiple unspecified vulnerabilities in SQLite before 3.8.10.2, as used in Apple iOS before 9, have unknown impact and attack vectors. | EXPLOITHIGH 10.0EPSS 9.21% | 18 September 2015 |
| CVE-2015-7235 | Multiple SQL injection vulnerabilities in dex_reservations.php in the CP Reservation Calendar plugin before 1.1.7 for WordPress allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a dex_reservations_calendar_load2 action… | EXPLOITHIGH 7.5EPSS 4.82% | 17 September 2015 |
| CVE-2015-4040 | Directory traversal vulnerability in the configuration utility in F5 BIG-IP before 12.0.0 and Enterprise Manager 3.0.0 through 3.1.1 allows remote authenticated users to access arbitrary files in the web root via unspecified vectors. | EXPLOITMEDIUM 4.0EPSS 6.76% | 17 September 2015 |
| CVE-2015-6962 | SQL injection vulnerability in the web application in Farol allows remote attackers to execute arbitrary SQL commands via the email parameter to tkmonitor/estrutura/login/Login.actions.php. | EXPLOITHIGH 7.5EPSS 2.10% | 17 September 2015 |
| CVE-2015-6973 | Multiple cross-site request forgery (CSRF) vulnerabilities in Ignite Realtime Openfire 3.10.2 allow remote attackers to hijack the authentication of administrators for requests that (1) change a password via a crafted request to user-password.jsp, (2)… | EXPLOITMEDIUM 6.8EPSS 64.8% | 16 September 2015 |
| CVE-2015-6972 | Multiple cross-site scripting (XSS) vulnerabilities in Ignite Realtime Openfire 3.10.2 allow remote attackers to inject arbitrary web script or HTML via the (1) groupchatName parameter to plugins/clientcontrol/create-bookmark.jsp; the (2) urlName… | EXPLOITMEDIUM 4.3EPSS 8.00% | 16 September 2015 |
| CVE-2015-5465 | Silicon Integrated Systems WindowsXP Display Manager (aka VGA Driver Manager and VGA Display Manager) 6.14.10.3930 allows local users to gain privileges via a crafted (1) 0x96002400 or (2) 0x96002404 IOCTL call. | EXPLOITHIGH 7.2EPSS 0.92% | 16 September 2015 |
| CVE-2015-3623 | XML external entity (XXE) vulnerability in QlikTech Qlikview before 11.20 SR12 allows remote attackers to conduct server-side request forgery (SSRF) attacks and read arbitrary files via crafted XML data in a request to AccessPoint.aspx. | EXPLOITMEDIUM 6.4EPSS 15.8% | 16 September 2015 |
| CVE-2015-6967 | Unrestricted file upload vulnerability in the My Image plugin in Nibbleblog before 4.0.5 allows remote administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in… | EXPLOIT ✓MEDIUM 6.5EPSS 49.3% | 16 September 2015 |
| CVE-2015-6965 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Contact Form Generator plugin 2.0.1 and earlier for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) create a field, (2) update a… | EXPLOITMEDIUM 6.8EPSS 3.02% | 16 September 2015 |
| CVE-2015-6945 | Cross-site scripting (XSS) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to inject arbitrary web script or HTML via the bd parameter to sys/sys/listaBD2.jsp. | EXPLOITMEDIUM 4.3EPSS 3.49% | 15 September 2015 |
| CVE-2015-6944 | Cross-site request forgery (CSRF) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to hijack the authentication of users for requests that execute arbitrary SQL commands via the cmd parameter to sys/sys/listaBD2.jsp. | EXPLOITMEDIUM 6.8EPSS 2.43% | 15 September 2015 |
| CVE-2015-6830 | libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a… | EXPLOITMEDIUM 5.0EPSS 9.79% | 14 September 2015 |
| CVE-2015-6912 | Synology Video Station before 1.5-0763 allows remote attackers to execute arbitrary shell commands via shell metacharacters in the subtitle_codepage parameter to subtitle.cgi. | EXPLOITHIGH 10.0EPSS 11.8% | 11 September 2015 |
| CVE-2015-6911 | SQL injection vulnerability in Synology Video Station before 1.5-0763 allows remote attackers to execute arbitrary SQL commands via the id parameter to watchstatus.cgi. | EXPLOITHIGH 7.5EPSS 2.43% | 11 September 2015 |
| CVE-2015-6908 | The ber_get_next function in libraries/liblber/io.c in OpenLDAP 2.4.42 and earlier allows remote attackers to cause a denial of service (reachable assertion and application crash) via crafted BER data, as demonstrated by an attack against slapd. | EXPLOITMEDIUM 5.0EPSS 20.0% | 11 September 2015 |
| CVE-2014-9208 | Multiple stack-based buffer overflows in unspecified DLL files in Advantech WebAccess before 8.0.1 allow remote attackers to execute arbitrary code via unknown vectors. | EXPLOITHIGH 10.0EPSS 9.26% | 11 September 2015 |
| CVE-2015-6827 | Cross-site request forgery (CSRF) vulnerability in Auto-Exchanger 5.1.0 allows remote attackers to hijack the authentication of users for requests that change a password via a request to signup.php. | EXPLOITMEDIUM 6.8EPSS 1.98% | 11 September 2015 |
| CVE-2015-2528 | Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 do not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "Windows Task… | EXPLOIT ✓HIGH 7.2EPSS 3.34% | 9 September 2015 |
| CVE-2015-2527 | The process-initialization implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 does not properly constrain impersonation levels, which… | EXPLOIT ✓HIGH 7.2EPSS 6.56% | 9 September 2015 |
| CVE-2015-2525 | Task Scheduler in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to bypass intended filesystem… | EXPLOIT ✓HIGH 7.2EPSS 31.5% | 9 September 2015 |
| CVE-2015-2524 | Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 do not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "Windows Task… | EXPLOIT ✓HIGH 7.2EPSS 3.23% | 9 September 2015 |
| CVE-2015-2523 | Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel for Mac 2011 and 2016, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft… | EXPLOIT ✓HIGH 9.3EPSS 30.3% | 9 September 2015 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.