Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,425 CVEs1,721 in CISA KEV17,395 with EPSS ≥ 10%25,049 with a public exploitUpdated 23 September 2026
25,049 results · page 162 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2012-2904 | player.swf in LongTail JW Player 5.9 allows remote attackers to conduct cross-site scripting (XSS) attacks to inject arbitrary web script or HTML via multiple "javascript:" sequences in the debug parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 4.49% | 21 May 2012 |
| CVE-2012-2903 | Multiple cross-site scripting (XSS) vulnerabilities in PHP Address Book 7.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO to group.php, or the (2) target_language or (3) target_flag parameter to… | EXPLOITMEDIUM 4.3EPSS 1.80% | 21 May 2012 |
| CVE-2012-2376 | Buffer overflow in the com_print_typeinfo function in PHP 5.4.3 and earlier on Windows allows remote attackers to execute arbitrary code via crafted arguments that trigger incorrect handling of COM object VARIANT types, as exploited in the wild in May… | EXPLOIT ✓HIGH 10.0EPSS 20.1% | 21 May 2012 |
| CVE-2012-0207 | The igmp_heard_query function in net/ipv4/igmp.c in the Linux kernel before 3.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and panic) via IGMP packets. | EXPLOITHIGH 7.5EPSS 20.3% | 17 May 2012 |
| CVE-2012-0663 | Multiple stack-based buffer overflows in Apple QuickTime before 7.7.2 on Windows allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted TeXML file. | EXPLOIT ✓HIGH 9.3EPSS 28.3% | 16 May 2012 |
| CVE-2012-2612 | The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 3.60% | 15 May 2012 |
| CVE-2012-2611 | The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execute… | EXPLOIT ×3 ✓HIGH 9.3EPSS 44.3% | 15 May 2012 |
| CVE-2012-2514 | The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 3.60% | 15 May 2012 |
| CVE-2012-2513 | The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 3.60% | 15 May 2012 |
| CVE-2012-2512 | The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 3.60% | 15 May 2012 |
| CVE-2012-2511 | The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 3.95% | 15 May 2012 |
| CVE-2012-2277 | The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (pvcontrol.exe process hang) via \n (line feed) characters in the Id fields of many "batch… | EXPLOIT ✓HIGH 7.8EPSS 4.25% | 14 May 2012 |
| CVE-2012-2276 | The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via input data that (1) lacks FIPS fields or (2)… | EXPLOIT ✓HIGH 7.8EPSS 8.97% | 14 May 2012 |
| CVE-2012-2336 | sapi/cgi/cgi_main.c in PHP before 5.3.13 and 5.4.x before 5.4.3, when configured as a CGI script (aka php-cgi), does not properly handle query strings that lack an = (equals sign) character, which allows remote attackers to cause a denial of service… | EXPLOIT ×4 ✓MEDIUM 5.0EPSS 50.3% | 11 May 2012 |
| CVE-2012-2329 | Buffer overflow in the apache_request_headers function in sapi/cgi/cgi_main.c in PHP 5.4.x before 5.4.3 allows remote attackers to cause a denial of service (application crash) via a long string in the header of an HTTP request. | EXPLOIT ✓MEDIUM 5.0EPSS 62.3% | 11 May 2012 |
| CVE-2012-2311 | sapi/cgi/cgi_main.c in PHP before 5.3.13 and 5.4.x before 5.4.3, when configured as a CGI script (aka php-cgi), does not properly handle query strings that contain a %3D sequence but no = (equals sign) character, which allows remote attackers to execute… | EXPLOIT ×4 ✓HIGH 7.5EPSS 69.3% | 11 May 2012 |
| CVE-2012-1823 | PHP-CGI Query String Parameter Vulnerability | KEVEXPLOIT ×4 ✓CRITICAL 9.8EPSS 100.0% | 11 May 2012 |
| CVE-2012-2027 | Use-after-free vulnerability in Adobe Photoshop CS5 12.x before 12.0.5 and CS5.1 12.1.x before 12.1.1 allows remote attackers to execute arbitrary code via a crafted TIFF (aka .TIF) file. | EXPLOIT ✓HIGH 9.3EPSS 13.3% | 9 May 2012 |
| CVE-2012-0780 | Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2023, CVE-2012-2024, CVE-2012-2025, and CVE-2012-2026. | EXPLOITHIGH 10.0EPSS 15.0% | 9 May 2012 |
| CVE-2012-0181 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, and Windows 8 Consumer Preview does not properly manage Keyboard… | EXPLOIT ✓HIGH 7.2EPSS 3.40% | 9 May 2012 |
| CVE-2012-0779 | Adobe Flash Player before 10.3.183.19 and 11.x before 11.2.202.235 on Windows, Mac OS X, and Linux; before 11.1.111.9 on Android 2.x and 3.x; and before 11.1.115.8 on Android 4.x allows remote attackers to execute arbitrary code via a crafted file,… | EXPLOIT ✓HIGH 9.3EPSS 85.5% | 4 May 2012 |
| CVE-2012-0202 | Multiple stack-based buffer overflows in tm1admsd.exe in the Admin Server in IBM Cognos TM1 9.4.x and 9.5.x before 9.5.2 FP2 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted data. | EXPLOIT ✓HIGH 10.0EPSS 54.5% | 4 May 2012 |
| CVE-2012-1936 | The wp_create_nonce function in wp-includes/pluggable.php in WordPress 3.3.1 and earlier associates a nonce with a user account instead of a user session, which might make it easier for remote attackers to conduct cross-site request forgery (CSRF)… | EXPLOITMEDIUM 6.8EPSS 3.27% | 3 May 2012 |
| CVE-2012-0551 | Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE 7 update 4 and earlier and 6 update 32 and earlier, and the GlassFish Enterprise Server component in Oracle Sun Products Suite GlassFish Enterprise Server 3.1.1, allows… | EXPLOITMEDIUM 5.8EPSS 11.4% | 3 May 2012 |
| CVE-2012-0550 | Unspecified vulnerability in the GlassFish Enterprise Server component in Oracle Sun Products Suite GlassFish Enterprise Server 3.1.1 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Web… | EXPLOITMEDIUM 6.8EPSS 6.90% | 3 May 2012 |
| CVE-2012-0549 | Unspecified vulnerability in the Oracle AutoVue Office component in Oracle Supply Chain Products Suite 20.1.1 allows remote attackers to affect confidentiality, integrity, and availability, related to Desktop API. | EXPLOIT ✓HIGH 7.5EPSS 59.0% | 3 May 2012 |
| CVE-2012-2441 | RuggedCom Rugged Operating System (ROS) before 3.3 has a factory account with a password derived from the MAC Address field in a banner, which makes it easier for remote attackers to obtain access by performing a calculation on this address value, and… | EXPLOITHIGH 8.5EPSS 8.52% | 28 April 2012 |
| CVE-2012-1803 | RuggedCom Rugged Operating System (ROS) 3.10.x and earlier has a factory account with a password derived from the MAC Address field in the banner, which makes it easier for remote attackers to obtain access by performing a calculation on this address… | EXPLOITHIGH 8.5EPSS 49.0% | 28 April 2012 |
| CVE-2012-2131 | Multiple integer signedness errors in crypto/buffer/buffer.c in OpenSSL 0.9.8v allow remote attackers to conduct buffer overflow attacks, and cause a denial of service (memory corruption) or possibly have unspecified other impact, via crafted DER data,… | EXPLOIT ✓HIGH 7.5EPSS 16.8% | 24 April 2012 |
| CVE-2012-0946 | The NVIDIA UNIX driver before 295.40 allows local users to access arbitrary memory locations by leveraging GPU device-node read/write privileges. | EXPLOITMEDIUM 4.6EPSS 0.73% | 22 April 2012 |
| CVE-2012-0708 | Heap-based buffer overflow in the Ole API in the CQOle ActiveX control in cqole.dll in IBM Rational ClearQuest 7.1.1 before 7.1.1.9, 7.1.2 before 7.1.2.6, and 8.0.0 before 8.0.0.2 allows remote attackers to execute arbitrary code via a crafted web page… | EXPLOIT ✓HIGH 9.3EPSS 31.4% | 22 April 2012 |
| CVE-2012-2234 | Cross-site scripting (XSS) vulnerability in sources/users.queries.php in TeamPass before 2.1.6 allows remote authenticated users to inject arbitrary web script or HTML via the login parameter in an add_new_user action. | EXPLOIT ✓MEDIUM 4.3EPSS 3.57% | 22 April 2012 |
| CVE-2012-2270 | Open redirect vulnerability in index.php (aka the Login Page) in ownCloud before 3.0.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect_url parameter. | EXPLOIT ✓MEDIUM 5.8EPSS 6.01% | 20 April 2012 |
| CVE-2012-2236 | SQL injection vulnerability in users.php in PHP Gift Registry 1.5.5 allows remote authenticated users to execute arbitrary SQL commands via the userid parameter in an edit action. | EXPLOITMEDIUM 6.5EPSS 0.89% | 20 April 2012 |
| CVE-2012-0407 | Integer overflow in the DPA_Utilities library in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (infinite loop) via a negative 64-bit value in a certain size field. | EXPLOIT ✓MEDIUM 5.0EPSS 3.18% | 20 April 2012 |
| CVE-2012-0406 | The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an AUTHENTICATECONNECTION command that… | EXPLOIT ✓HIGH 7.8EPSS 8.55% | 20 April 2012 |
| CVE-2012-2396 | VideoLAN VLC media player 2.0.1 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted MP4 file. | EXPLOITMEDIUM 4.3EPSS 7.21% | 19 April 2012 |
| CVE-2012-2110 | The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in OpenSSL before 0.9.8v, 1.0.0 before 1.0.0i, and 1.0.1 before 1.0.1a does not properly interpret integer data, which allows remote attackers to conduct buffer overflow attacks, and cause a… | EXPLOIT ✓HIGH 7.5EPSS 47.9% | 19 April 2012 |
| CVE-2012-0278 | Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression. | EXPLOIT ✓HIGH 9.3EPSS 10.1% | 18 April 2012 |
| CVE-2011-4871 | Open Automation Software OPC Systems.NET before 5.0 allows remote attackers to cause a denial of service via a malformed .NET RPC packet on TCP port 58723. | EXPLOIT ✓MEDIUM 5.0EPSS 3.12% | 18 April 2012 |
| CVE-2012-1979 | Cross-site scripting (XSS) vulnerability in starnet/index.php in SyndeoCMS 3.0.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the email parameter (aka Email address field) in an edit_user configuration action. | EXPLOIT ✓LOW 3.5EPSS 1.66% | 17 April 2012 |
| CVE-2011-4883 | The web server in Certec atvise webMI2ADS (aka webMI) before 2.0.2 does not properly validate values in HTTP requests, which allows remote attackers to cause a denial of service (resource consumption) via a crafted request. | EXPLOIT ✓MEDIUM 5.0EPSS 3.12% | 13 April 2012 |
| CVE-2011-4882 | The web server in Certec atvise webMI2ADS (aka webMI) before 2.0.2 allows remote attackers to cause a denial of service (application exit) via an unspecified command in an HTTP request. | EXPLOIT ✓MEDIUM 5.0EPSS 3.29% | 13 April 2012 |
| CVE-2011-4881 | The web server in Certec atvise webMI2ADS (aka webMI) before 2.0.2 does not properly check return values from functions, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted HTTP request. | EXPLOIT ✓MEDIUM 5.0EPSS 7.54% | 13 April 2012 |
| CVE-2011-4880 | Directory traversal vulnerability in the web server in Certec atvise webMI2ADS (aka webMI) before 2.0.2 allows remote attackers to read arbitrary files via a crafted HTTP request. | EXPLOIT ✓MEDIUM 5.0EPSS 5.39% | 13 April 2012 |
| CVE-2012-2210 | The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a denial of service (configuration outage or device crash) via a flood of TCP SYN packets, as demonstrated by hping, a related issue to CVE-1999-0116. | EXPLOITHIGH 7.8EPSS 9.07% | 11 April 2012 |
| CVE-2012-2156 | Multiple cross-site scripting (XSS) vulnerabilities in Plume CMS 1.2.4 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the u_email parameter (aka Authors Email field) to manager/users.php, (2) the u_realname parameter… | EXPLOITMEDIUM 4.3EPSS 3.77% | 11 April 2012 |
| CVE-2012-1673 | SQL injection vulnerability in loginscript.php in e-ticketing allows remote attackers to execute arbitrary SQL commands via the password parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.20% | 11 April 2012 |
| CVE-2012-1672 | SQL injection vulnerability in getcity.php in Hotel Booking Portal 0.1 allows remote attackers to execute arbitrary SQL commands via the country parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.20% | 11 April 2012 |
| CVE-2012-1593 | epan/dissectors/packet-ansi_a.c in the ANSI A dissector in Wireshark 1.4.x before 1.4.12 and 1.6.x before 1.6.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed packet. | EXPLOIT ✓LOW 3.3EPSS 11.2% | 11 April 2012 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.