Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,329 CVEs1,721 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026
25,049 results · page 140 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2013-6023 | Directory traversal vulnerability in the TVT TD-2308SS-B DVR with firmware 3.2.0.P-3520A-00 and earlier allows remote attackers to read arbitrary files via .. | EXPLOITHIGH 7.8EPSS 10.2% | 2 November 2013 |
| CVE-2013-3631 | NAS4Free 9.1.0.1.804 and earlier allows remote authenticated users to execute arbitrary PHP code via a request to exec.php, aka the "Advanced | Execute Command" feature. | EXPLOIT ✓MEDIUM 6.0EPSS 13.7% | 2 November 2013 |
| CVE-2013-3617 | The XML API in Openbravo ERP 2.5, 3.0, and earlier allows remote authenticated users to read arbitrary files via an XML document with an external entity declaration in conjunction with an entity reference to /ws/dal/ADUser or other /ws/dal/XXX… | EXPLOIT ✓LOW 3.5EPSS 21.1% | 2 November 2013 |
| CVE-2013-5977 | Cross-site request forgery (CSRF) vulnerability in Cart66Product.php in the Cart66 Lite plugin before 1.5.1.15 for WordPress allows remote attackers to hijack the authentication of administrators for requests that (1) create or modify products or… | EXPLOIT ✓MEDIUM 6.8EPSS 3.15% | 1 November 2013 |
| CVE-2013-3630 | Moodle through 2.5.2 allows remote authenticated administrators to execute arbitrary programs by configuring the aspell pathname and then triggering a spell-check operation within the TinyMCE editor. | EXPLOIT ✓MEDIUM 4.6EPSS 42.6% | 1 November 2013 |
| CVE-2012-6303 | Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large… | EXPLOIT ✓MEDIUM 6.8EPSS 10.2% | 28 October 2013 |
| CVE-2010-1159 | Multiple heap-based buffer overflows in Aircrack-ng before 1.1 allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a (1) large length value in an EAPOL packet or (2) long EAPOL packet. | EXPLOIT ✓MEDIUM 6.8EPSS 7.26% | 28 October 2013 |
| CVE-2013-4885 | The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal… | EXPLOIT ✓MEDIUM 6.8EPSS 7.22% | 26 October 2013 |
| CVE-2011-4106 | TimThumb (timthumb.php) before 2.0 does not validate the entire source with the domain white list, which allows remote attackers to upload and execute arbitrary code via a URL containing a white-listed domain in the src parameter, then accessing it via… | EXPLOIT ×2 ✓MEDIUM 6.8EPSS 23.3% | 26 October 2013 |
| CVE-2013-6283 | VideoLAN VLC Media Player 2.0.8 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a URL in a m3u file. | EXPLOIT ✓HIGH 7.5EPSS 9.98% | 25 October 2013 |
| CVE-2013-6128 | The KCHARTXYLib.KChartXY ActiveX control in KChartXY.ocx before 65.30.30000.10002 in WellinTech KingView before 6.53 does not properly restrict SaveToFile method calls, which allows remote attackers to create or overwrite arbitrary files, and… | EXPLOIT ✓MEDIUM 5.8EPSS 2.64% | 25 October 2013 |
| CVE-2013-6127 | The SUPERGRIDLib.SuperGrid ActiveX control in SuperGrid.ocx before 65.30.30000.10002 in WellinTech KingView before 6.53 does not properly restrict ReplaceDBFile method calls, which allows remote attackers to create or overwrite arbitrary files, and… | EXPLOIT ✓MEDIUM 5.8EPSS 13.9% | 25 October 2013 |
| CVE-2013-1743 | Multiple cross-site scripting (XSS) vulnerabilities in report.cgi in Bugzilla 4.1.x and 4.2.x before 4.2.7 and 4.3.x and 4.4.x before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via a field value that is not properly handled… | EXPLOIT ✓MEDIUM 4.3EPSS 2.82% | 24 October 2013 |
| CVE-2013-1742 | Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via the… | EXPLOIT ✓MEDIUM 4.3EPSS 2.40% | 24 October 2013 |
| CVE-2013-6246 | The Dell Quest One Password Manager, possibly 5.0, allows remote attackers to bypass CAPTCHA protections and obtain sensitive information (user's full name) by sending a login request with a valid domain and username but without the CaptchaType,… | EXPLOIT ✓MEDIUM 5.0EPSS 5.87% | 24 October 2013 |
| CVE-2013-4295 | The gadget renderer in Apache Shindig 2.5.0 for PHP allows remote attackers to obtain sensitive information via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE)… | EXPLOIT ✓MEDIUM 5.0EPSS 11.7% | 24 October 2013 |
| CVE-2013-6129 | The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrative accounts via the customerid, htmldata[password], htmldata[confirmpassword], and htmldata[email] parameters, as exploited in the wild in October 2013. | EXPLOIT ✓HIGH 7.5EPSS 51.9% | 19 October 2013 |
| CVE-2013-6027 | Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow remote authenticated administrators to execute arbitrary commands via a long set/runtime/diagnostic/pingIp parameter to… | EXPLOIT ✓HIGH 8.5EPSS 4.50% | 19 October 2013 |
| CVE-2013-6025 | The XMLParse procedure in SAP Sybase Adaptive Server Enterprise (ASE) 15.7 ESD 2 allows remote authenticated users to read arbitrary files via a SQL statement containing an XML document with an external entity declaration in conjunction with an entity… | EXPLOIT ✓MEDIUM 4.0EPSS 8.20% | 19 October 2013 |
| CVE-2013-6021 | Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code via a long sessionid value in a cookie. | EXPLOITHIGH 9.3EPSS 11.7% | 19 October 2013 |
| CVE-2013-5791 | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.4.1 allows context-dependent attackers to affect availability via unknown vectors related to Outside In Filters. | EXPLOITLOW 1.5EPSS 1.90% | 16 October 2013 |
| CVE-2013-3827 | Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1, 3.0.1, and 3.1.2; the Oracle JDeveloper component in Oracle Fusion Middleware 11.1.2.3.0, 11.1.2.4.0, and 12.1.2.0.0; and the Oracle WebLogic Server… | EXPLOIT ✓MEDIUM 5.0EPSS 32.4% | 16 October 2013 |
| CVE-2013-3792 | Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox prior to 3.2.18, 4.0.20, 4.1.28, and 4.2.18 allows local users to affect availability via unknown vectors related to Core. | EXPLOIT ✓LOW 3.8EPSS 0.57% | 16 October 2013 |
| CVE-2013-5030 | Ruckus Wireless Zoneflex 2942 devices with firmware 9.6.0.0.267 allow remote attackers to bypass authentication, and subsequently access certain configuration/ and maintenance/ scripts, by constructing a crafted URI after receiving an authentication… | EXPLOITHIGH 7.2EPSS 2.04% | 16 October 2013 |
| CVE-2013-4822 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and HP IMC Branch Intelligent Management System Software Module (aka BIMS) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1606. | EXPLOIT ✓HIGH 10.0EPSS 62.6% | 13 October 2013 |
| CVE-2013-2749 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. | EXPLOIT ✓UnscoredEPSS — | 13 October 2013 |
| CVE-2013-6079 | Buffer overflow in MostGear Soft Easy LAN Folder Share 3.2.0.100 allows local users to cause a denial of service (application crash) and possibly execute arbitrary code via a long string in the (1) registration code field in the activate license window… | EXPLOIT ×2 ✓HIGH 7.2EPSS 1.27% | 11 October 2013 |
| CVE-2013-5028 | SQL injection vulnerability in IT/hardware-list.dll in Kwoksys Kwok Information Server before 2.8.5 allows remote authenticated users to execute arbitrary SQL commands via the (1) hardwareType, (2) hardwareStatus, or (3) hardwareLocation parameter in a… | EXPLOIT ✓MEDIUM 6.5EPSS 1.95% | 11 October 2013 |
| CVE-2013-3687 | AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD, POE100HD, and possibly other camera models use cleartext to store sensitive information, which allows attackers to obtain passwords, user names, and other sensitive information by… | EXPLOITHIGH 7.8EPSS 2.54% | 11 October 2013 |
| CVE-2013-3686 | cgi-bin/operator/param in AirLive WL2600CAM and possibly other camera models allows remote attackers to obtain the administrator password via a list action. | EXPLOITHIGH 10.0EPSS 27.6% | 11 October 2013 |
| CVE-2013-2581 | cgi-bin/firmwareupgrade in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6 allows remote attackers to modify the firmware revision via a "preset" action. | EXPLOIT ✓HIGH 7.8EPSS 2.40% | 11 October 2013 |
| CVE-2013-2580 | Unrestricted file upload vulnerability in cgi-bin/uploadfile in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6, allows remote attackers to upload arbitrary files, then… | EXPLOIT ✓HIGH 7.1EPSS 3.54% | 11 October 2013 |
| CVE-2013-2579 | TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6 have an empty password for the hardcoded "qmik" account, which allows remote attackers to obtain administrative access via… | EXPLOIT ✓HIGH 10.0EPSS 3.74% | 11 October 2013 |
| CVE-2013-2578 | cgi-bin/admin/servetest in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6 allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the… | EXPLOIT ✓HIGH 10.0EPSS 73.7% | 11 October 2013 |
| CVE-2013-5528 | Directory traversal vulnerability in the Tomcat administrative web interface in Cisco Unified Communications Manager allows remote authenticated users to read arbitrary files via directory traversal sequences in an unspecified input string, aka Bug ID… | EXPLOITMEDIUM 4.0EPSS 23.3% | 11 October 2013 |
| CVE-2012-4412 | Integer overflow in string/strcoll_l.c in the GNU C Library (aka glibc or libc6) 2.17 and earlier allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string, which triggers a heap-based… | EXPLOIT ✓HIGH 7.5EPSS 16.7% | 9 October 2013 |
| CVE-2013-5967 | Multiple SQL injection vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 4.3 and earlier allow remote attackers to execute arbitrary SQL commands via the date_from parameter to (1) radar-iso27001-potential.php, (2)… | EXPLOIT ✓HIGH 7.5EPSS 19.0% | 9 October 2013 |
| CVE-2013-5576 | 2.5.x before 2.5.14 and 3.x before 3.1.5 allows remote authenticated users or remote attackers to bypass intended access restrictions and upload files with dangerous extensions via a filename with a trailing . | EXPLOIT ✓MEDIUM 6.8EPSS 48.2% | 9 October 2013 |
| CVE-2013-3897 | Microsoft Internet Explorer Use-After-Free Vulnerability | KEVEXPLOIT ✓HIGH 8.8EPSS 77.3% | 9 October 2013 |
| CVE-2013-3896 | Microsoft Silverlight Information Disclosure Vulnerability | KEVEXPLOIT ✓MEDIUM 5.5EPSS 69.4% | 9 October 2013 |
| CVE-2013-3881 | win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 and Windows Server 2008 R2 SP1 allows local users to gain privileges via a crafted application, aka "Win32k NULL Page Vulnerability." | EXPLOIT ✓HIGH 7.2EPSS 14.8% | 9 October 2013 |
| CVE-2013-3543 | The AXIS Media Control (AMC) ActiveX control (AxisMediaControlEmb.dll) 6.2.10.11 for AXIS network cameras allows remote attackers to create or overwrite arbitrary files via a file path to the (1) StartRecord, (2) SaveCurrentImage, or (3)… | EXPLOITHIGH 8.8EPSS 4.13% | 4 October 2013 |
| CVE-2013-3541 | Directory traversal vulnerability in cgi-bin/admin/fileread in AirLive WL2600CAM and possibly other camera models allows remote attackers to read arbitrary files via a .. | EXPLOITHIGH 7.8EPSS 8.93% | 4 October 2013 |
| CVE-2013-3540 | Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/usrgrp.cgi in AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD, POE100HD, and possibly other camera models allows remote attackers to hijack the authentication of… | EXPLOITMEDIUM 6.8EPSS 0.97% | 4 October 2013 |
| CVE-2013-5091 | SQL injection vulnerability in CalendarCommon.php in vTiger CRM 5.4.0 and possibly earlier allows remote authenticated users to execute arbitrary SQL commands via the onlyforuser parameter in an index action to index.php. | EXPLOITMEDIUM 6.5EPSS 1.19% | 4 October 2013 |
| CVE-2013-4788 | The PTR_MANGLE implementation in the GNU C Library (aka glibc or libc6) 2.4, 2.17, and earlier, and Embedded GLIBC (EGLIBC) does not initialize the random value for the pointer guard, which makes it easier for context-dependent attackers to control… | EXPLOITMEDIUM 5.1EPSS 11.4% | 4 October 2013 |
| CVE-2013-3248 | Untrusted search path vulnerability in Corel PDF Fusion 1.11 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .pdf or .xps file. | EXPLOIT ✓HIGH 9.3EPSS 18.5% | 3 October 2013 |
| CVE-2013-0742 | Stack-based buffer overflow in Corel PDF Fusion 1.11 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a long ZIP directory entry name in an XPS file. | EXPLOIT ✓HIGH 9.3EPSS 9.01% | 3 October 2013 |
| CVE-2013-5701 | Multiple untrusted search path vulnerabilities in (1) Watchguard Log Collector (wlcollector.exe) and (2) Watchguard WebBlocker Server (wbserver.exe) in WatchGuard Server Center 11.7.4, 11.7.3, and possibly earlier allow local users to gain privileges… | EXPLOIT ✓HIGH 7.2EPSS 1.04% | 3 October 2013 |
| CVE-2013-5979 | Directory traversal vulnerability in Spring Signage Xibo 1.2.x before 1.2.3 and 1.4.x before 1.4.2 allows remote attackers to read arbitrary files via a .. | EXPLOITMEDIUM 5.0EPSS 18.1% | 2 October 2013 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.