Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,425 CVEs1,721 in CISA KEV17,395 with EPSS ≥ 10%25,049 with a public exploitUpdated 23 September 2026
25,049 results · page 160 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2012-2386 | Integer overflow in the phar_parse_tarfile function in tar.c in the phar extension in PHP before 5.3.14 and 5.4.x before 5.4.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted tar… | EXPLOITHIGH 7.5EPSS 42.5% | 7 July 2012 |
| CVE-2012-3585 | Heap-based buffer overflow in jpeg_ls.dll in the Jpeg_LS (aka JLS) plugin in the formats plugins in IrfanView PlugIns before 4.34 allows remote attackers to execute arbitrary code via a crafted JLS file. | EXPLOITHIGH 9.3EPSS 7.74% | 5 July 2012 |
| CVE-2012-2516 | An ActiveX control in KeyHelp.ocx in KeyWorks KeyHelp Module (aka the HTML Help component), as used in GE Intelligent Platforms Proficy Historian 3.1, 3.5, 4.0, and 4.5; Proficy HMI/SCADA iFIX 5.0 and 5.1; Proficy Pulse 1.0; Proficy Batch Execution 5.6;… | EXPLOIT ✓HIGH 9.3EPSS 39.7% | 5 July 2012 |
| CVE-2012-1831 | Heap-based buffer overflow in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 555. | EXPLOIT ✓HIGH 10.0EPSS 15.9% | 5 July 2012 |
| CVE-2012-1830 | Stack-based buffer overflow in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 555. | EXPLOIT ✓HIGH 10.0EPSS 7.65% | 5 July 2012 |
| CVE-2012-3845 | Buffer overflow in LAN Messenger 1.2.28 and earlier allows remote attackers to cause a denial of service (crash) via a long string in an initiation request. | EXPLOIT ✓MEDIUM 5.0EPSS 3.31% | 3 July 2012 |
| CVE-2012-3840 | Multiple cross-site scripting (XSS) vulnerabilities in index.php/users/form/user_id in MyClientBase 0.12 allow remote attackers to inject arbitrary web script or HTML via the (1) first_name or (2) last_name parameters. | EXPLOIT ✓MEDIUM 4.3EPSS 1.63% | 3 July 2012 |
| CVE-2012-3839 | Multiple SQL injection vulnerabilities in application/core/MY_Model.php in MyClientBase 0.12 allow remote attackers to execute arbitrary SQL commands via the (1) invoice_number or (2) tags parameter to index.php/invoice_search. | EXPLOIT ✓HIGH 7.5EPSS 2.44% | 3 July 2012 |
| CVE-2012-3838 | Gekko before 1.2.0 allows remote attackers to obtain the installation path via a direct request to (1) admin/templates/babygekko/index.php or (2) templates/html5demo/index.php. | EXPLOIT ✓MEDIUM 5.0EPSS 2.82% | 3 July 2012 |
| CVE-2012-3837 | Multiple cross-site scripting (XSS) vulnerabilities in apps/users/registration.template.php in Baby Gekko 1.2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) username, (2) email_address, (3) password, (4)… | EXPLOIT ✓MEDIUM 4.3EPSS 1.63% | 3 July 2012 |
| CVE-2012-3836 | Multiple cross-site scripting (XSS) vulnerabilities in Baby Gekko before 1.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) groupname parameter in a savecategory in the users module; (2) virtual_filename, (3) branch, (4)… | EXPLOIT ✓MEDIUM 4.3EPSS 1.63% | 3 July 2012 |
| CVE-2012-3835 | Multiple cross-site scripting (XSS) vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to top.php or (2) time[0][0] parameter to… | EXPLOIT ×2 ✓MEDIUM 4.3EPSS 2.23% | 3 July 2012 |
| CVE-2012-3834 | SQL injection vulnerability in forensics/base_qry_main.php in AlienVault Open Source Security Information Management (OSSIM) 3.1 allows remote authenticated users to execute arbitrary SQL commands via the time[0][0] parameter. | EXPLOIT ×2 ✓MEDIUM 6.5EPSS 1.44% | 3 July 2012 |
| CVE-2012-3831 | Cross-site scripting (XSS) vulnerability in decoda/templates/video.php in Decoda before 3.3.1 allows remote attackers to inject arbitrary web script or HTML via multiple URLs in an img tag. | EXPLOITMEDIUM 4.3EPSS 2.47% | 3 July 2012 |
| CVE-2012-3830 | Cross-site scripting (XSS) vulnerability in decoda/templates/video.php in Decoda before 3.3.3 allows remote attackers to inject arbitrary web script or HTML via the video directive. | EXPLOITMEDIUM 4.3EPSS 3.75% | 3 July 2012 |
| CVE-2012-3811 | Unrestricted file upload vulnerability in ImageUpload.ashx in the Wallboard application in Avaya IP Office Customer Call Reporter 7.0 before 7.0.5.8 Q1 2012 Maintenance Release and 8.0 before 8.0.9.13 Q1 2012 Maintenance Release allows remote attackers… | EXPLOIT ✓HIGH 10.0EPSS 62.9% | 3 July 2012 |
| CVE-2011-4029 | The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on… | EXPLOITLOW 1.9EPSS 0.60% | 3 July 2012 |
| CVE-2012-0045 | The em_syscall function in arch/x86/kvm/emulate.c in the KVM implementation in the Linux kernel before 3.2.14 does not properly handle the 0f05 (aka syscall) opcode, which allows guest OS users to cause a denial of service (guest OS crash) via a crafted… | EXPLOIT ✓MEDIUM 4.7EPSS 1.01% | 3 July 2012 |
| CVE-2012-3826 | Multiple integer underflows in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allow remote attackers to cause a denial of service (loop) via vectors related to the R3 dissector, a different vulnerability than CVE-2012-2392. | EXPLOIT ✓LOW 3.3EPSS 3.44% | 30 June 2012 |
| CVE-2012-3825 | Multiple integer overflows in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allow remote attackers to cause a denial of service (infinite loop) via vectors related to the (1) BACapp and (2) Bluetooth HCI dissectors, a different vulnerability than… | EXPLOIT ✓LOW 3.3EPSS 3.35% | 30 June 2012 |
| CVE-2012-2394 | Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 on the SPARC and Itanium platforms does not properly perform data alignment for a certain structure member, which allows remote attackers to cause a denial of service (application crash) via a (1)… | EXPLOIT ✓LOW 3.3EPSS 3.98% | 30 June 2012 |
| CVE-2012-2393 | epan/dissectors/packet-diameter.c in the DIAMETER dissector in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 does not properly construct certain array data structures, which allows remote attackers to cause a denial of service (application crash)… | EXPLOIT ✓LOW 3.3EPSS 3.77% | 30 June 2012 |
| CVE-2012-2392 | Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allows remote attackers to cause a denial of service (infinite loop) via vectors related to the (1) ANSI MAP, (2) ASF, (3) IEEE 802.11, (4) IEEE 802.3, and (5) LTP dissectors. | EXPLOIT ✓LOW 3.3EPSS 3.47% | 30 June 2012 |
| CVE-2012-2698 | Cross-site scripting (XSS) vulnerability in the outputPage function in includes/SkinTemplate.php in MediaWiki before 1.17.5, 1.18.x before 1.18.4, and 1.19.x before 1.19.1 allows remote attackers to inject arbitrary web script or HTML via the uselang… | EXPLOIT ✓MEDIUM 4.3EPSS 4.95% | 29 June 2012 |
| CVE-2012-2385 | The terminal dispatcher in mosh before 1.2.1 allows remote authenticated users to cause a denial of service (long loop and CPU consumption) via an escape sequence with a large repeat count value. | EXPLOIT ✓MEDIUM 4.0EPSS 10.9% | 29 June 2012 |
| CVE-2012-3232 | Cross-site scripting (XSS) vulnerability in search.php in web@all 2.0, as downloaded before May 30, 2012, allows remote attackers to inject arbitrary web script or HTML via the _text[title] parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 1.30% | 29 June 2012 |
| CVE-2012-3816 | WinRadius Server 2009 allows remote attackers to cause a denial of service (crash) via a long password in an Access-Request packet. | EXPLOITHIGH 7.8EPSS 7.82% | 27 June 2012 |
| CVE-2012-3815 | Buffer overflow in RunTime.exe in Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 46824. | EXPLOIT ×2 ✓HIGH 9.3EPSS 44.2% | 27 June 2012 |
| CVE-2012-3814 | Unrestricted file upload vulnerability in font-upload.php in the Font Uploader plugin 1.2.4 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a PHP file with a .php.ttf extension, then accessing it via a direct request to… | EXPLOIT ✓HIGH 7.5EPSS 10.3% | 27 June 2012 |
| CVE-2012-2764 | Untrusted search path vulnerability in Google Chrome before 20.0.1132.43 on Windows might allow local users to gain privileges via a Trojan horse Metro DLL in the current working directory. | EXPLOIT ✓HIGH 7.2EPSS 0.45% | 27 June 2012 |
| CVE-2012-2122 | sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain… | EXPLOIT ✓MEDIUM 5.1EPSS 96.5% | 26 June 2012 |
| CVE-2012-3797 | Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, does not properly check packet sizes before reusing packet memory buffers, which allows remote attackers to cause a denial of service (heap… | EXPLOIT ✓HIGH 10.0EPSS 12.2% | 25 June 2012 |
| CVE-2012-3796 | Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to obtain sensitive information from daemon memory via a crafted packet with a certain opcode. | EXPLOIT ✓MEDIUM 5.0EPSS 10.6% | 25 June 2012 |
| CVE-2012-3795 | Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (daemon crash) via a crafted packet with a certain opcode and a large value in a size… | EXPLOIT ✓MEDIUM 5.0EPSS 10.9% | 25 June 2012 |
| CVE-2012-3794 | Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (unhandled exception and daemon crash) via a crafted packet with a certain opcode that… | EXPLOIT ✓MEDIUM 5.0EPSS 21.5% | 25 June 2012 |
| CVE-2012-3793 | Integer overflow in Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (daemon crash) via a crafted packet with a certain opcode that… | EXPLOIT ✓MEDIUM 5.0EPSS 11.9% | 25 June 2012 |
| CVE-2012-3792 | Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (out-of-bounds read operation) via a crafted packet that triggers a certain Find Node… | EXPLOIT ✓MEDIUM 5.0EPSS 10.9% | 25 June 2012 |
| CVE-2012-2179 | libodm.a in IBM AIX 5.3, 6.1, and 7.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file. | EXPLOIT ✓MEDIUM 6.9EPSS 1.75% | 22 June 2012 |
| CVE-2012-2172 | Cross-site scripting (XSS) vulnerability in SoftwareRegistration.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote attackers to inject arbitrary web script or HTML via the… | EXPLOITMEDIUM 4.3EPSS 1.63% | 22 June 2012 |
| CVE-2012-2171 | SQL injection vulnerability in ModuleServlet.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote authenticated users to execute arbitrary SQL commands via the… | EXPLOITMEDIUM 6.5EPSS 5.14% | 22 June 2012 |
| CVE-2011-1479 | Double free vulnerability in the inotify subsystem in the Linux kernel before 2.6.39 allows local users to cause a denial of service (system crash) via vectors involving failed attempts to create files. | EXPLOIT ✓MEDIUM 4.7EPSS 0.80% | 21 June 2012 |
| CVE-2011-1021 | drivers/acpi/debugfs.c in the Linux kernel before 3.0 allows local users to modify arbitrary kernel memory locations by leveraging root privileges to write to the /sys/kernel/debug/acpi/custom_method file. | EXPLOIT ✓LOW 3.6EPSS 0.93% | 21 June 2012 |
| CVE-2010-4250 | Memory leak in the inotify_init1 function in fs/notify/inotify/inotify_user.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service (memory consumption) via vectors involving failed attempts to create files. | EXPLOIT ✓MEDIUM 4.9EPSS 0.76% | 21 June 2012 |
| CVE-2012-3791 | Multiple SQL injection vulnerabilities in Simple Web Content Management System 1.1 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) item_delete.php, (2) item_status.php, (3) item_detail.php, (4) item_modify.php, or… | EXPLOIT ✓HIGH 7.5EPSS 1.26% | 21 June 2012 |
| CVE-2012-2175 | Buffer overflow in the Attachment_Times method in a certain ActiveX control in dwa85W.dll in IBM Lotus iNotes 8.5.x before 8.5.3 FP2 allows remote attackers to execute arbitrary code via a long argument. | EXPLOIT ✓HIGH 9.3EPSS 29.4% | 20 June 2012 |
| CVE-2012-2174 | The URL handler in IBM Lotus Notes 8.x before 8.5.3 FP2 allows remote attackers to execute arbitrary code via a crafted notes:// URL. | EXPLOIT ✓HIGH 9.3EPSS 38.3% | 20 June 2012 |
| CVE-2012-3588 | Directory traversal vulnerability in preview.php in the Plugin Newsletter plugin 1.5 for WordPress allows remote attackers to read arbitrary files via a .. | EXPLOIT ✓MEDIUM 5.0EPSS 10.7% | 19 June 2012 |
| CVE-2009-0695 | hagent.exe in Wyse Device Manager (WDM) 4.7.x does not require authentication for commands, which allows remote attackers to obtain management access via a crafted query, as demonstrated by a V52 query that triggers a power-off action. | EXPLOIT ×2 ✓HIGH 7.5EPSS 68.9% | 19 June 2012 |
| CVE-2009-0693 | Multiple buffer overflows in Wyse Device Manager (WDM) 4.7.x allow remote attackers to execute arbitrary code via (1) the User-Agent HTTP header to hserver.dll or (2) unspecified input to hagent.exe. | EXPLOITHIGH 7.5EPSS 12.8% | 19 June 2012 |
| CVE-2012-3578 | Unrestricted file upload vulnerability in html/Upload.php in the FCChat Widget plugin 2.2.13.1 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with a file with an executable extension followed by a safe… | EXPLOIT ✓MEDIUM 6.8EPSS 8.35% | 17 June 2012 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.