SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

CVE Analysis Report · 2026-09-23 edition · PDF

The year’s CVEs, on paper.

Every CVE published this year by month, severity and exploitability, the vendors carrying the volume, how the exploited minority scores on EPSS, and the KEV additions and public exploits to check against your estate. Built from the same data as this page, refreshed daily. Tell us where to send it.

Free · PDF · No newsletter attached

We keep your name and email so we know who asked. UK Cyber Defence Ltd is the controller; see the privacy notice for the rest.

The year’s CVE activity with KEV, EPSS and exploit data as a PDF: heatmaps, a vendor treemap, and the lists worth checking against your estate.

396,407 CVEs1,721 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 23 September 2026

25,049 results · page 149 of 501

CVESummaryPriorityPublished
CVE-2012-5972Directory traversal vulnerability in the web server in SpecView 2.5 build 853 and earlier allows remote attackers to read arbitrary files via a ...EXPLOITMEDIUM 5.0EPSS 5.00%17 January 2013
CVE-2013-0397Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Diagnostics.EXPLOITMEDIUM 6.4EPSS 2.67%17 January 2013
CVE-2013-0632Adobe ColdFusion Authentication Bypass VulnerabilityKEVEXPLOIT ×3CRITICAL 9.8EPSS 93.6%17 January 2013
CVE-2013-0156active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19, 3.1.x before 3.1.10, and 3.2.x before 3.2.11 does not properly restrict casts of string values, which allows remote attackers to conduct object-injection…EXPLOIT ×2HIGH 7.5EPSS 99.4%13 January 2013
CVE-2013-0758Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12 and 17.x before 17.0.2, and SeaMonkey before 2.15 allow remote attackers to execute arbitrary JavaScript…EXPLOIT ×2HIGH 9.3EPSS 73.4%13 January 2013
CVE-2013-0757The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not prevent modifications to the prototype of an…EXPLOIT ×2HIGH 9.3EPSS 60.9%13 January 2013
CVE-2013-0753Use-after-free vulnerability in the serializeToStream implementation in the XMLSerializer component in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12…EXPLOITHIGH 9.3EPSS 51.3%13 January 2013
CVE-2012-6500Directory traversal vulnerability in download.lib.php in Pragyan CMS 3.0 and earlier allows remote attackers to read arbitrary files via a ..EXPLOITMEDIUM 5.0EPSS 3.39%12 January 2013
CVE-2012-6499Open redirect vulnerability in age-verification.php in the Age Verification plugin 0.4 and earlier for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect_to parameter.EXPLOIT ×2MEDIUM 5.8EPSS 10.6%12 January 2013
CVE-2012-5874Multiple SQL injection vulnerabilities in the (1) update_whosonline_reg and (2) update_whosonline_guest functions in Elite Bulletin Board before 2.1.22 allow remote attackers to execute arbitrary SQL commands via the PATH_INFO to (a) checkuser.php, (b)…EXPLOITHIGH 7.5EPSS 2.51%12 January 2013
CVE-2011-5252Open redirect vulnerability in Users/Account/LogOff in Orchard 1.0.x before 1.0.21, 1.1.x before 1.1.31, 1.2.x before 1.2.42, and 1.3.x before 1.3.10 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL…EXPLOITMEDIUM 5.8EPSS 11.9%12 January 2013
CVE-2013-0722Stack-based buffer overflow in the scan_load_hosts function in ec_scan.c in Ettercap 0.7.5.1 and earlier might allow local users to gain privileges via a Trojan horse hosts list containing a long line.EXPLOITMEDIUM 4.4EPSS 0.84%11 January 2013
CVE-2012-0722Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.EXPLOITUnscoredEPSS —11 January 2013
CVE-2013-0422Oracle JRE Remote Code Execution VulnerabilityKEVEXPLOITCRITICAL 9.8EPSS 97.6%10 January 2013
CVE-2013-0008win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT does not properly handle window broadcast messages, which allows local…EXPLOIT ×2HIGH 7.2EPSS 17.1%9 January 2013
CVE-2013-0629Adobe ColdFusion Directory Traversal VulnerabilityKEVEXPLOITHIGH 7.5EPSS 65.8%9 January 2013
CVE-2013-0625Adobe ColdFusion Authentication Bypass VulnerabilityKEVEXPLOITCRITICAL 9.8EPSS 93.8%9 January 2013
CVE-2012-6330The localization functionality in TWiki before 5.1.3, and Foswiki 1.0.x through 1.0.10 and 1.1.x through 1.1.6, allows remote attackers to cause a denial of service (memory consumption) via a large integer in a %MAKETEXT% macro.EXPLOITMEDIUM 5.0EPSS 35.7%4 January 2013
CVE-2012-6329The _compile function in Maketext.pm in the Locale::Maketext implementation in Perl before 5.17.7 does not properly handle backslashes and fully qualified method names during compilation of bracket notation, which allows context-dependent attackers to…EXPLOIT ×2HIGH 7.5EPSS 63.5%4 January 2013
CVE-2012-6434Multiple cross-site request forgery (CSRF) vulnerabilities in e107_admin/download.php in e107 1.0.2 allow remote attackers to hijack the authentication of administrators for requests that conduct SQL injection attacks via the (1) download_url, (2)…EXPLOITMEDIUM 6.8EPSS 1.44%3 January 2013
CVE-2012-6433Cross-site request forgery (CSRF) vulnerability in e107_admin/newspost.php in e107 1.0.1 allows remote attackers to hijack the authentication of administrators for requests that conduct XSS attacks via the news_title parameter in a create action.EXPLOITMEDIUM 6.8EPSS 1.96%3 January 2013
CVE-2012-5667Multiple integer overflows in GNU Grep before 2.11 might allow context-dependent attackers to execute arbitrary code via vectors involving a long input line that triggers a heap-based buffer overflow.EXPLOITMEDIUM 4.4EPSS 1.02%3 January 2013
CVE-2012-6495Multiple directory traversal vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users with write permissions to overwrite arbitrary files via…EXPLOIT ×2MEDIUM 6.0EPSS 18.7%3 January 2013
CVE-2012-6081Multiple unrestricted file upload vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users with write permissions to execute arbitrary code…EXPLOIT ×2MEDIUM 6.0EPSS 30.8%3 January 2013
CVE-2012-6470Opera before 12.12 does not properly allocate memory for GIF images, which allows remote attackers to execute arbitrary code or cause a denial of service (memory overwrite) via a malformed image.EXPLOITHIGH 9.3EPSS 7.79%2 January 2013
CVE-2012-4792Microsoft Internet Explorer Use-After-Free VulnerabilityKEVEXPLOIT ×2HIGH 8.8EPSS 78.8%30 December 2012
CVE-2012-4932Multiple cross-site scripting (XSS) vulnerabilities in SimpleInvoices before stable-2012-1-CIS3000 allow remote attackers to inject arbitrary web script or HTML via (1) the having parameter in a manage action to index.php; (2) the Email field in an Add…EXPLOITMEDIUM 4.3EPSS 1.32%28 December 2012
CVE-2012-4528The mod_security2 module before 2.7.0 for the Apache HTTP Server allows remote attackers to bypass rules, and deliver arbitrary POST data to a PHP application, via a multipart request in which an invalid part precedes the crafted data.EXPLOITMEDIUM 5.0EPSS 12.5%28 December 2012
CVE-2012-3873Multiple SQL injection vulnerabilities in Open Constructor 3.12.0 allow remote authenticated users to execute arbitrary SQL commands via the id parameter to (1) data/gallery/edit.php, (2) data/guestbook/edit.php, (3) data/file/edit.php, (4)…EXPLOITMEDIUM 6.5EPSS 0.92%28 December 2012
CVE-2012-3872Multiple cross-site scripting (XSS) vulnerabilities in Open Constructor 3.12.0 allow remote attackers to inject arbitrary web script or HTML via (1) the result parameter to data/file/edit.php, (2) the q parameter to confirm.php, or (3) the keyword…EXPLOIT ×3MEDIUM 4.3EPSS 1.38%28 December 2012
CVE-2012-0432Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x before 8.8.7.2 allows remote attackers to have an unspecified impact via unknown vectors.EXPLOIT ×2HIGH 10.0EPSS 58.7%25 December 2012
CVE-2012-5932Eval injection vulnerability in the ldapagnt_eval function in ldapagnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote attackers to execute arbitrary Perl code via a crafted application/x-amf request.EXPLOITHIGH 10.0EPSS 62.7%24 December 2012
CVE-2012-5931Directory traversal vulnerability in the set_log_config function in regclnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote authenticated users to create or overwrite arbitrary files via directory traversal…EXPLOITMEDIUM 5.5EPSS 7.28%24 December 2012
CVE-2012-5930The pa_modify_accounts function in auth.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 does not require authentication for the modifyAccounts method, which allows remote attackers to change the passwords of administrative…EXPLOITMEDIUM 6.4EPSS 7.37%24 December 2012
CVE-2012-0957The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality.EXPLOITMEDIUM 4.9EPSS 0.96%21 December 2012
CVE-2012-5469The Portable phpMyAdmin plugin before 1.3.1 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod.EXPLOITHIGH 7.5EPSS 23.7%20 December 2012
CVE-2012-6007Cross-site scripting (XSS) vulnerability in screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to inject arbitrary web script or HTML via the headline parameter, aka…EXPLOITMEDIUM 4.3EPSS 3.66%19 December 2012
CVE-2012-5992Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allow remote attackers to hijack the authentication of administrators for requests that (1) add administrative accounts via…EXPLOITMEDIUM 6.8EPSS 1.78%19 December 2012
CVE-2012-5991screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to cause a denial of service (device reload) via a certain buttonClicked value in an internal webauth_type…EXPLOITMEDIUM 6.3EPSS 5.52%19 December 2012
CVE-2012-5967SQL injection vulnerability in menuXML.php in Centreon 2.3.3 through 2.3.9-4 (fixed in Centreon web 2.6.0) allows remote authenticated users to execute arbitrary SQL commands via the menu parameter.EXPLOITMEDIUM 6.5EPSS 3.31%19 December 2012
CVE-2012-5691Buffer overflow in RealNetworks RealPlayer before 16.0.0.282 and RealPlayer SP 1.0 through 1.1.5 allows remote attackers to execute arbitrary code via a crafted RealMedia file.EXPLOITHIGH 9.3EPSS 52.7%19 December 2012
CVE-2012-4991Multiple directory traversal vulnerabilities in Axway SecureTransport 5.1 SP2 and earlier allow remote authenticated users to (1) read, (2) delete, or (3) create files, or (4) list directories, via a ..%5C (encoded dot dot backslash) in a URI.EXPLOITHIGH 8.5EPSS 4.55%13 December 2012
CVE-2012-6313simple-gmail-login.php in the Simple Gmail Login plugin before 1.1.4 for WordPress allows remote attackers to obtain sensitive information via a request that lacks a timezone, leading to disclosure of the installation path in a stack trace.EXPLOITMEDIUM 5.0EPSS 7.66%11 December 2012
CVE-2012-6312Cross-site scripting (XSS) vulnerability in the Video Lead Form plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter in a video-lead-form action to wp-admin/admin.php.EXPLOITMEDIUM 4.3EPSS 3.22%11 December 2012
CVE-2012-3274Stack-based buffer overflow in uam.exe in the User Access Manager (UAM) component in HP Intelligent Management Center (IMC) before 5.1 E0101P01 allows remote attackers to execute arbitrary code via vectors related to log data.EXPLOITHIGH 10.0EPSS 63.6%6 December 2012
CVE-2011-2732CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the…EXPLOITMEDIUM 4.3EPSS 4.65%5 December 2012
CVE-2012-4982Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the a parameter.EXPLOITMEDIUM 5.8EPSS 8.91%5 December 2012
CVE-2012-4347Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow remote authenticated users to read arbitrary files via a ..EXPLOITMEDIUM 5.0EPSS 58.8%5 December 2012
CVE-2012-6066freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.EXPLOIT ×3HIGH 9.3EPSS 39.5%4 December 2012
CVE-2012-5975The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6.2.5, and 6.3.0 through 6.3.2 on UNIX and Linux, when old-style password authentication is enabled, allows remote attackers to bypass…EXPLOIT ×2HIGH 9.3EPSS 35.9%4 December 2012

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.