Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,407 CVEs1,721 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 23 September 2026
25,049 results · page 149 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2012-5972 | Directory traversal vulnerability in the web server in SpecView 2.5 build 853 and earlier allows remote attackers to read arbitrary files via a ... | EXPLOIT ✓MEDIUM 5.0EPSS 5.00% | 17 January 2013 |
| CVE-2013-0397 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Diagnostics. | EXPLOIT ✓MEDIUM 6.4EPSS 2.67% | 17 January 2013 |
| CVE-2013-0632 | Adobe ColdFusion Authentication Bypass Vulnerability | KEVEXPLOIT ×3 ✓CRITICAL 9.8EPSS 93.6% | 17 January 2013 |
| CVE-2013-0156 | active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19, 3.1.x before 3.1.10, and 3.2.x before 3.2.11 does not properly restrict casts of string values, which allows remote attackers to conduct object-injection… | EXPLOIT ×2 ✓HIGH 7.5EPSS 99.4% | 13 January 2013 |
| CVE-2013-0758 | Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12 and 17.x before 17.0.2, and SeaMonkey before 2.15 allow remote attackers to execute arbitrary JavaScript… | EXPLOIT ×2 ✓HIGH 9.3EPSS 73.4% | 13 January 2013 |
| CVE-2013-0757 | The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not prevent modifications to the prototype of an… | EXPLOIT ×2 ✓HIGH 9.3EPSS 60.9% | 13 January 2013 |
| CVE-2013-0753 | Use-after-free vulnerability in the serializeToStream implementation in the XMLSerializer component in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12… | EXPLOIT ✓HIGH 9.3EPSS 51.3% | 13 January 2013 |
| CVE-2012-6500 | Directory traversal vulnerability in download.lib.php in Pragyan CMS 3.0 and earlier allows remote attackers to read arbitrary files via a .. | EXPLOITMEDIUM 5.0EPSS 3.39% | 12 January 2013 |
| CVE-2012-6499 | Open redirect vulnerability in age-verification.php in the Age Verification plugin 0.4 and earlier for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect_to parameter. | EXPLOIT ×2 ✓MEDIUM 5.8EPSS 10.6% | 12 January 2013 |
| CVE-2012-5874 | Multiple SQL injection vulnerabilities in the (1) update_whosonline_reg and (2) update_whosonline_guest functions in Elite Bulletin Board before 2.1.22 allow remote attackers to execute arbitrary SQL commands via the PATH_INFO to (a) checkuser.php, (b)… | EXPLOIT ✓HIGH 7.5EPSS 2.51% | 12 January 2013 |
| CVE-2011-5252 | Open redirect vulnerability in Users/Account/LogOff in Orchard 1.0.x before 1.0.21, 1.1.x before 1.1.31, 1.2.x before 1.2.42, and 1.3.x before 1.3.10 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL… | EXPLOIT ✓MEDIUM 5.8EPSS 11.9% | 12 January 2013 |
| CVE-2013-0722 | Stack-based buffer overflow in the scan_load_hosts function in ec_scan.c in Ettercap 0.7.5.1 and earlier might allow local users to gain privileges via a Trojan horse hosts list containing a long line. | EXPLOITMEDIUM 4.4EPSS 0.84% | 11 January 2013 |
| CVE-2012-0722 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. | EXPLOITUnscoredEPSS — | 11 January 2013 |
| CVE-2013-0422 | Oracle JRE Remote Code Execution Vulnerability | KEVEXPLOIT ✓CRITICAL 9.8EPSS 97.6% | 10 January 2013 |
| CVE-2013-0008 | win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT does not properly handle window broadcast messages, which allows local… | EXPLOIT ×2 ✓HIGH 7.2EPSS 17.1% | 9 January 2013 |
| CVE-2013-0629 | Adobe ColdFusion Directory Traversal Vulnerability | KEVEXPLOIT ✓HIGH 7.5EPSS 65.8% | 9 January 2013 |
| CVE-2013-0625 | Adobe ColdFusion Authentication Bypass Vulnerability | KEVEXPLOIT ✓CRITICAL 9.8EPSS 93.8% | 9 January 2013 |
| CVE-2012-6330 | The localization functionality in TWiki before 5.1.3, and Foswiki 1.0.x through 1.0.10 and 1.1.x through 1.1.6, allows remote attackers to cause a denial of service (memory consumption) via a large integer in a %MAKETEXT% macro. | EXPLOIT ✓MEDIUM 5.0EPSS 35.7% | 4 January 2013 |
| CVE-2012-6329 | The _compile function in Maketext.pm in the Locale::Maketext implementation in Perl before 5.17.7 does not properly handle backslashes and fully qualified method names during compilation of bracket notation, which allows context-dependent attackers to… | EXPLOIT ×2 ✓HIGH 7.5EPSS 63.5% | 4 January 2013 |
| CVE-2012-6434 | Multiple cross-site request forgery (CSRF) vulnerabilities in e107_admin/download.php in e107 1.0.2 allow remote attackers to hijack the authentication of administrators for requests that conduct SQL injection attacks via the (1) download_url, (2)… | EXPLOIT ✓MEDIUM 6.8EPSS 1.44% | 3 January 2013 |
| CVE-2012-6433 | Cross-site request forgery (CSRF) vulnerability in e107_admin/newspost.php in e107 1.0.1 allows remote attackers to hijack the authentication of administrators for requests that conduct XSS attacks via the news_title parameter in a create action. | EXPLOIT ✓MEDIUM 6.8EPSS 1.96% | 3 January 2013 |
| CVE-2012-5667 | Multiple integer overflows in GNU Grep before 2.11 might allow context-dependent attackers to execute arbitrary code via vectors involving a long input line that triggers a heap-based buffer overflow. | EXPLOIT ✓MEDIUM 4.4EPSS 1.02% | 3 January 2013 |
| CVE-2012-6495 | Multiple directory traversal vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users with write permissions to overwrite arbitrary files via… | EXPLOIT ×2 ✓MEDIUM 6.0EPSS 18.7% | 3 January 2013 |
| CVE-2012-6081 | Multiple unrestricted file upload vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users with write permissions to execute arbitrary code… | EXPLOIT ×2 ✓MEDIUM 6.0EPSS 30.8% | 3 January 2013 |
| CVE-2012-6470 | Opera before 12.12 does not properly allocate memory for GIF images, which allows remote attackers to execute arbitrary code or cause a denial of service (memory overwrite) via a malformed image. | EXPLOIT ✓HIGH 9.3EPSS 7.79% | 2 January 2013 |
| CVE-2012-4792 | Microsoft Internet Explorer Use-After-Free Vulnerability | KEVEXPLOIT ×2 ✓HIGH 8.8EPSS 78.8% | 30 December 2012 |
| CVE-2012-4932 | Multiple cross-site scripting (XSS) vulnerabilities in SimpleInvoices before stable-2012-1-CIS3000 allow remote attackers to inject arbitrary web script or HTML via (1) the having parameter in a manage action to index.php; (2) the Email field in an Add… | EXPLOIT ✓MEDIUM 4.3EPSS 1.32% | 28 December 2012 |
| CVE-2012-4528 | The mod_security2 module before 2.7.0 for the Apache HTTP Server allows remote attackers to bypass rules, and deliver arbitrary POST data to a PHP application, via a multipart request in which an invalid part precedes the crafted data. | EXPLOIT ✓MEDIUM 5.0EPSS 12.5% | 28 December 2012 |
| CVE-2012-3873 | Multiple SQL injection vulnerabilities in Open Constructor 3.12.0 allow remote authenticated users to execute arbitrary SQL commands via the id parameter to (1) data/gallery/edit.php, (2) data/guestbook/edit.php, (3) data/file/edit.php, (4)… | EXPLOITMEDIUM 6.5EPSS 0.92% | 28 December 2012 |
| CVE-2012-3872 | Multiple cross-site scripting (XSS) vulnerabilities in Open Constructor 3.12.0 allow remote attackers to inject arbitrary web script or HTML via (1) the result parameter to data/file/edit.php, (2) the q parameter to confirm.php, or (3) the keyword… | EXPLOIT ×3 ✓MEDIUM 4.3EPSS 1.38% | 28 December 2012 |
| CVE-2012-0432 | Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x before 8.8.7.2 allows remote attackers to have an unspecified impact via unknown vectors. | EXPLOIT ×2 ✓HIGH 10.0EPSS 58.7% | 25 December 2012 |
| CVE-2012-5932 | Eval injection vulnerability in the ldapagnt_eval function in ldapagnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote attackers to execute arbitrary Perl code via a crafted application/x-amf request. | EXPLOIT ✓HIGH 10.0EPSS 62.7% | 24 December 2012 |
| CVE-2012-5931 | Directory traversal vulnerability in the set_log_config function in regclnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote authenticated users to create or overwrite arbitrary files via directory traversal… | EXPLOIT ✓MEDIUM 5.5EPSS 7.28% | 24 December 2012 |
| CVE-2012-5930 | The pa_modify_accounts function in auth.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 does not require authentication for the modifyAccounts method, which allows remote attackers to change the passwords of administrative… | EXPLOIT ✓MEDIUM 6.4EPSS 7.37% | 24 December 2012 |
| CVE-2012-0957 | The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality. | EXPLOIT ✓MEDIUM 4.9EPSS 0.96% | 21 December 2012 |
| CVE-2012-5469 | The Portable phpMyAdmin plugin before 1.3.1 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod. | EXPLOIT ✓HIGH 7.5EPSS 23.7% | 20 December 2012 |
| CVE-2012-6007 | Cross-site scripting (XSS) vulnerability in screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to inject arbitrary web script or HTML via the headline parameter, aka… | EXPLOITMEDIUM 4.3EPSS 3.66% | 19 December 2012 |
| CVE-2012-5992 | Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allow remote attackers to hijack the authentication of administrators for requests that (1) add administrative accounts via… | EXPLOITMEDIUM 6.8EPSS 1.78% | 19 December 2012 |
| CVE-2012-5991 | screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to cause a denial of service (device reload) via a certain buttonClicked value in an internal webauth_type… | EXPLOITMEDIUM 6.3EPSS 5.52% | 19 December 2012 |
| CVE-2012-5967 | SQL injection vulnerability in menuXML.php in Centreon 2.3.3 through 2.3.9-4 (fixed in Centreon web 2.6.0) allows remote authenticated users to execute arbitrary SQL commands via the menu parameter. | EXPLOITMEDIUM 6.5EPSS 3.31% | 19 December 2012 |
| CVE-2012-5691 | Buffer overflow in RealNetworks RealPlayer before 16.0.0.282 and RealPlayer SP 1.0 through 1.1.5 allows remote attackers to execute arbitrary code via a crafted RealMedia file. | EXPLOIT ✓HIGH 9.3EPSS 52.7% | 19 December 2012 |
| CVE-2012-4991 | Multiple directory traversal vulnerabilities in Axway SecureTransport 5.1 SP2 and earlier allow remote authenticated users to (1) read, (2) delete, or (3) create files, or (4) list directories, via a ..%5C (encoded dot dot backslash) in a URI. | EXPLOITHIGH 8.5EPSS 4.55% | 13 December 2012 |
| CVE-2012-6313 | simple-gmail-login.php in the Simple Gmail Login plugin before 1.1.4 for WordPress allows remote attackers to obtain sensitive information via a request that lacks a timezone, leading to disclosure of the installation path in a stack trace. | EXPLOIT ✓MEDIUM 5.0EPSS 7.66% | 11 December 2012 |
| CVE-2012-6312 | Cross-site scripting (XSS) vulnerability in the Video Lead Form plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter in a video-lead-form action to wp-admin/admin.php. | EXPLOIT ✓MEDIUM 4.3EPSS 3.22% | 11 December 2012 |
| CVE-2012-3274 | Stack-based buffer overflow in uam.exe in the User Access Manager (UAM) component in HP Intelligent Management Center (IMC) before 5.1 E0101P01 allows remote attackers to execute arbitrary code via vectors related to log data. | EXPLOIT ✓HIGH 10.0EPSS 63.6% | 6 December 2012 |
| CVE-2011-2732 | CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the… | EXPLOIT ✓MEDIUM 4.3EPSS 4.65% | 5 December 2012 |
| CVE-2012-4982 | Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the a parameter. | EXPLOIT ✓MEDIUM 5.8EPSS 8.91% | 5 December 2012 |
| CVE-2012-4347 | Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow remote authenticated users to read arbitrary files via a .. | EXPLOITMEDIUM 5.0EPSS 58.8% | 5 December 2012 |
| CVE-2012-6066 | freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c. | EXPLOIT ×3 ✓HIGH 9.3EPSS 39.5% | 4 December 2012 |
| CVE-2012-5975 | The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6.2.5, and 6.3.0 through 6.3.2 on UNIX and Linux, when old-style password authentication is enabled, allows remote attackers to bypass… | EXPLOIT ×2 ✓HIGH 9.3EPSS 35.9% | 4 December 2012 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.