SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

CVE Analysis Report · 2026-09-23 edition · PDF

The year’s CVEs, on paper.

Every CVE published this year by month, severity and exploitability, the vendors carrying the volume, how the exploited minority scores on EPSS, and the KEV additions and public exploits to check against your estate. Built from the same data as this page, refreshed daily. Tell us where to send it.

Free · PDF · No newsletter attached

We keep your name and email so we know who asked. UK Cyber Defence Ltd is the controller; see the privacy notice for the rest.

The year’s CVE activity with KEV, EPSS and exploit data as a PDF: heatmaps, a vendor treemap, and the lists worth checking against your estate.

396,388 CVEs1,721 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026

25,049 results · page 147 of 501

CVESummaryPriorityPublished
CVE-2013-0074Microsoft Silverlight Double Dereference VulnerabilityKEVEXPLOIT ×2HIGH 7.8EPSS 81.0%13 March 2013
CVE-2013-1081Directory traversal vulnerability in MDM.php in Novell ZENworks Mobile Management (ZMM) 2.6.1 and 2.7.0 allows remote attackers to include and execute arbitrary local files via the language parameter.EXPLOITHIGH 7.5EPSS 68.1%11 March 2013
CVE-2013-2503Privoxy before 3.0.21 does not properly handle Proxy-Authenticate and Proxy-Authorization headers in the client-server data stream, which makes it easier for remote HTTP servers to spoof the intended proxy service via a 407 (aka Proxy Authentication…EXPLOITMEDIUM 5.8EPSS 4.63%11 March 2013
CVE-2013-1627Absolute path traversal vulnerability in NTWebServer.exe in Indusoft Studio 7.0 and earlier and Advantech Studio 7.0 and earlier allows remote attackers to read arbitrary files via a full pathname in an argument to the sub_401A90 CreateFileW function.EXPLOITHIGH 7.8EPSS 3.39%11 March 2013
CVE-2013-2551Microsoft Internet Explorer Use-After-Free VulnerabilityKEVEXPLOITHIGH 8.8EPSS 74.1%11 March 2013
CVE-2012-5201Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1611.EXPLOITHIGH 10.0EPSS 63.7%9 March 2013
CVE-2013-0249Stack-based buffer overflow in the Curl_sasl_create_digest_md5_message function in lib/curl_sasl.c in curl and libcurl 7.26.0 through 7.28.1, when negotiating SASL DIGEST-MD5 authentication, allows remote attackers to cause a denial of service (crash)…EXPLOITHIGH 7.5EPSS 21.6%8 March 2013
CVE-2013-1488The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 6 and 7, allows remote attackers to execute arbitrary code via unspecified vectors involving reflection, Libraries, "improper toString calls," and the…EXPLOITHIGH 10.0EPSS 87.2%8 March 2013
CVE-2013-1493The color management (CMM) functionality in the 2D component in Oracle Java SE 7 Update 15 and earlier, 6 Update 41 and earlier, and 5.0 Update 40 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (crash) via an…EXPLOITHIGH 10.0EPSS 86.2%5 March 2013
CVE-2013-1775sudo 1.6.0 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p6 allows local users or physically proximate attackers to bypass intended time restrictions and retain privileges without re-authenticating by setting the system clock and sudo user timestamp to…EXPLOIT ×2MEDIUM 6.9EPSS 3.18%5 March 2013
CVE-2013-0292The dbus_g_proxy_manager_filter function in dbus-gproxy in Dbus-glib before 0.100.1 does not properly verify the sender of NameOwnerChanged signals, which allows local users to gain privileges via a spoofed signal.EXPLOITHIGH 7.2EPSS 1.09%5 March 2013
CVE-2013-1773Buffer overflow in the VFAT filesystem implementation in the Linux kernel before 3.3 allows local users to gain privileges or cause a denial of service (system crash) via a VFAT write operation on a filesystem with the utf8 mount option, which is not…EXPLOITMEDIUM 6.2EPSS 1.04%28 February 2013
CVE-2013-1763Array index error in the __sock_diag_rcv_msg function in net/core/sock_diag.c in the Linux kernel before 3.7.10 allows local users to gain privileges via a large family value in a Netlink message.EXPLOIT ×4HIGH 7.2EPSS 4.21%28 February 2013
CVE-2012-5337Multiple cross-site scripting (XSS) vulnerabilities in jforum.page in JForum 2.1.9 allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) match_type, (3) sort_by, or (4) start parameters.EXPLOITMEDIUM 4.3EPSS 2.52%24 February 2013
CVE-2013-0108An ActiveX control in HscRemoteDeploy.dll in Honeywell Enterprise Buildings Integrator (EBI) R310, R400.2, R410.1, and R410.2; SymmetrE R310, R410.1, and R410.2; ComfortPoint Open Manager (aka CPO-M) Station R100; and HMIWeb Browser client packages…EXPLOITMEDIUM 6.8EPSS 26.6%24 February 2013
CVE-2012-6275Multiple stack-based buffer overflows in AntDS.exe in BigAntSoft BigAnt IM Message Server allow remote attackers to have an unspecified impact via (1) the filename header in an SCH request or (2) the userid component in a DUPF request.EXPLOITHIGH 10.0EPSS 46.5%24 February 2013
CVE-2012-6274BigAntSoft BigAnt IM Message Server does not require authentication for file uploading, which allows remote attackers to create arbitrary files under AntServer\DocData\Public via unspecified vectors.EXPLOITMEDIUM 5.0EPSS 46.9%24 February 2013
CVE-2012-4705Directory traversal vulnerability in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via vectors involving a crafted pathname.EXPLOITHIGH 10.0EPSS 64.9%24 February 2013
CVE-2013-0804The client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference) via unspecified vectors.EXPLOITHIGH 10.0EPSS 12.4%24 February 2013
CVE-2012-0439An ActiveX control in gwcls1.dll in the client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code via (1) a pointer argument to the SetEngine method or (2) an XPItem pointer argument to an…EXPLOITHIGH 9.3EPSS 39.2%24 February 2013
CVE-2012-6533Buffer overflow in pgpwded.sys in Symantec PGP Desktop 10.x and Encryption Desktop 10.3.0 before MP1 on Windows XP and Server 2003 allows local users to gain privileges via a crafted application.EXPLOITMEDIUM 4.4EPSS 0.62%18 February 2013
CVE-2012-5375The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (prevention of file creation) by leveraging the ability to write to a directory important to the victim, and creating a…EXPLOITMEDIUM 4.0EPSS 0.86%18 February 2013
CVE-2013-0268The msr_open function in arch/x86/kernel/msr.c in the Linux kernel before 3.7.6 allows local users to bypass intended capability restrictions by executing a crafted application as root, as demonstrated by msr32.c.EXPLOITMEDIUM 6.2EPSS 1.56%18 February 2013
CVE-2013-0160The Linux kernel through 3.7.9 allows local users to obtain sensitive information about keystroke timing by using the inotify API on the /dev/ptmx device.EXPLOITLOW 2.1EPSS 0.73%18 February 2013
CVE-2012-4530The load_script function in fs/binfmt_script.c in the Linux kernel before 3.7.2 does not properly handle recursion, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.EXPLOITLOW 2.1EPSS 0.88%18 February 2013
CVE-2013-0658Heap-based buffer overflow in RFManagerService.exe in Schneider Electric Accutech Manager 2.00.1 and earlier allows remote attackers to execute arbitrary code via a crafted HTTP request.EXPLOITHIGH 10.0EPSS 21.5%15 February 2013
CVE-2012-4711Buffer overflow in kingMess.exe 65.20.2003.10300 in WellinTech KingView 6.52, kingMess.exe 65.20.2003.10400 in KingView 6.53, and kingMess.exe 65.50.2011.18049 in KingView 6.55 allows remote attackers to execute arbitrary code or cause a denial of…EXPLOITHIGH 10.0EPSS 61.5%15 February 2013
CVE-2013-1402DigiLIBE 3.4 and possibly other versions sends a redirect but does not exit, which allows remote attackers to obtain sensitive configuration information via a direct request to configuration/general_configuration.html.EXPLOITMEDIUM 5.0EPSS 6.33%14 February 2013
CVE-2013-0640Adobe Reader and Acrobat Memory Corruption VulnerabilityKEVEXPLOITHIGH 7.8EPSS 86.9%14 February 2013
CVE-2013-1114Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unity Express before 8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCud87527.EXPLOITMEDIUM 4.3EPSS 10.3%13 February 2013
CVE-2012-3363Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle SimpleXMLElement classes, which allows remote attackers to read arbitrary files or create TCP connections via an external entity reference in a DOCTYPE…EXPLOITCRITICAL 9.1EPSS 50.2%13 February 2013
CVE-2013-0025Use-after-free vulnerability in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer SLayoutRun Use After Free Vulnerability."EXPLOIT ×2HIGH 9.3EPSS 55.8%13 February 2013
CVE-2013-0019Use-after-free vulnerability in Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer COmWindowProxy Use After Free…EXPLOITHIGH 9.3EPSS 34.9%13 February 2013
CVE-2013-14533.0.x through 3.0.2 and 2.5.x through 2.5.8 allows attackers to unserialize arbitrary PHP objects to obtain sensitive information, delete arbitrary directories, conduct SQL injection attacks, and possibly have other impacts via the highlight parameter.EXPLOITHIGH 7.5EPSS 3.15%13 February 2013
CVE-2013-0238The try_parse_v4_netmask function in hostmask.c in IRCD-Hybrid before 8.0.6 does not properly validate masks, which allows remote attackers to cause a denial of service (crash) via a mask that causes a negative number to be parsed.EXPLOITMEDIUM 5.0EPSS 9.96%13 February 2013
CVE-2011-5265Cross-site scripting (XSS) vulnerability in cached_image.php in the Featurific For WordPress plugin 1.6.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the snum parameter.EXPLOITMEDIUM 4.3EPSS 9.96%12 February 2013
CVE-2011-5262SQL injection vulnerability in prodpage.cfm in SonicWALL Aventail allows remote attackers to execute arbitrary SQL commands via the CategoryID parameter.EXPLOITHIGH 7.5EPSS 1.11%12 February 2013
CVE-2011-5261Cross-site scripting (XSS) vulnerability in serverreport.cgi in Axis M10 Series Network Cameras M1054 firmware 5.21 and earlier allows remote attackers to inject arbitrary web script or HTML via the pageTitle parameter to admin/showReport.shtml.EXPLOITMEDIUM 4.3EPSS 3.61%12 February 2013
CVE-2011-5259SQL injection vulnerability in lib/controllers/CentralController.php in OrangeHRM before 2.6.11.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.EXPLOITMEDIUM 6.8EPSS 1.23%12 February 2013
CVE-2011-5258Multiple cross-site scripting (XSS) vulnerabilities in OrangeHRM before 2.6.11.2 allow remote attackers to inject arbitrary web script or HTML via the (1) uniqcode or (2) isAdmin parameter to index.php; or the (3) PATH_INFO to…EXPLOIT ×2MEDIUM 4.3EPSS 2.09%12 February 2013
CVE-2011-5257Multiple cross-site scripting (XSS) vulnerabilities in the Classipress theme before 3.1.5 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) twitter_id parameter related to the Twitter widget and (2) facebook_id…EXPLOITMEDIUM 4.3EPSS 3.79%12 February 2013
CVE-2013-1406The Virtual Machine Communication Interface (VMCI) implementation in vmci.sys in VMware Workstation 8.x before 8.0.5 and 9.x before 9.0.1 on Windows, VMware Fusion 4.1 before 4.1.4 and 5.0 before 5.0.2, VMware View 4.x before 4.6.2 and 5.x before 5.1.2…EXPLOITHIGH 7.2EPSS 0.97%11 February 2013
CVE-2013-1465The Cubecart::_basket method in classes/cubecart.class.php in CubeCart 5.0.0 through 5.2.0 allows remote attackers to unserialize arbitrary PHP objects via a crafted shipping parameter, as demonstrated by modifying the application configuration using…EXPLOITCRITICAL 9.8EPSS 7.09%8 February 2013
CVE-2013-1638Opera before 12.13 allows remote attackers to execute arbitrary code via crafted clipPaths in an SVG document.EXPLOITHIGH 9.3EPSS 8.04%8 February 2013
CVE-2013-0634Adobe Flash Player before 10.3.183.51 and 11.x before 11.5.502.149 on Windows and Mac OS X, before 10.3.183.51 and 11.x before 11.2.202.262 on Linux, before 11.1.111.32 on Android 2.x and 3.x, and before 11.1.115.37 on Android 4.x allows remote…EXPLOITHIGH 9.3EPSS 77.6%8 February 2013
CVE-2013-0633Buffer overflow in Adobe Flash Player before 10.3.183.51 and 11.x before 11.5.502.149 on Windows and Mac OS X, before 10.3.183.51 and 11.x before 11.2.202.262 on Linux, before 11.1.111.32 on Android 2.x and 3.x, and before 11.1.115.37 on Android 4.x…EXPLOITHIGH 9.3EPSS 20.9%8 February 2013
CVE-2013-1464Cross-site scripting (XSS) vulnerability in assets/player.swf in the Audio Player plugin before 2.0.4.6 for Wordpress allows remote attackers to inject arbitrary web script or HTML via the playerID parameter.EXPLOITMEDIUM 4.3EPSS 6.41%7 February 2013
CVE-2013-1463Cross-site scripting (XSS) vulnerability in js/tabletools/zeroclipboard.swf in the WP-Table Reloaded module before 1.9.4 for Wordpress allows remote attackers to inject arbitrary web script or HTML via the id parameter.EXPLOITMEDIUM 4.3EPSS 6.35%7 February 2013
CVE-2013-1120Multiple cross-site request forgery (CSRF) vulnerabilities on the Cisco Unity Express with software before 8.0 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors, aka Bug ID CSCue35910.EXPLOITMEDIUM 6.8EPSS 1.20%6 February 2013
CVE-2012-3282Unspecified vulnerability on the HP LeftHand Virtual SAN Appliance hydra with software before 10.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1468.EXPLOITHIGH 10.0EPSS 16.9%6 February 2013

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.