Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,477 CVEs1,721 in CISA KEV17,395 with EPSS ≥ 10%25,049 with a public exploitUpdated 23 September 2026
25,049 results · page 166 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2012-0781 | The tidy_diagnose function in PHP 5.3.8 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted input to an application that attempts to perform Tidy::diagnose operations on invalid objects,… | EXPLOITMEDIUM 5.0EPSS 10.4% | 18 January 2012 |
| CVE-2012-0031 | scoreboard.c in the Apache HTTP Server 2.2.21 and earlier might allow local users to cause a denial of service (daemon crash during shutdown) or possibly have unspecified other impact by modifying a certain type field within a scoreboard shared memory… | EXPLOITMEDIUM 4.6EPSS 2.80% | 18 January 2012 |
| CVE-2011-4153 | PHP 5.3.8 does not always check the return value of the zend_strndup function, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted input to an application that performs strndup… | EXPLOITMEDIUM 5.0EPSS 11.8% | 18 January 2012 |
| CVE-2012-0267 | The StopModule method in the NTR ActiveX control before 2.0.4.8 allows remote attackers to execute arbitrary code via a crafted lModule parameter that triggers use of an arbitrary memory address as a function pointer. | EXPLOIT ✓HIGH 9.3EPSS 38.5% | 15 January 2012 |
| CVE-2012-0266 | Multiple stack-based buffer overflows in the NTR ActiveX control before 2.0.4.8 allow remote attackers to execute arbitrary code via (1) a long bstrUrl parameter to the StartModule method, (2) a long bstrParams parameter to the Check method, a long… | EXPLOIT ✓HIGH 9.3EPSS 42.3% | 15 January 2012 |
| CVE-2011-3597 | Eval injection vulnerability in the Digest module before 1.17 for Perl allows context-dependent attackers to execute arbitrary commands via the new constructor. | EXPLOIT ✓HIGH 7.5EPSS 13.1% | 13 January 2012 |
| CVE-2011-4789 | Stack-based buffer overflow in magentservice.exe in the server in HP LoadRunner 11.00 before patch 4 allows remote attackers to execute arbitrary code via a crafted size value in a packet. | EXPLOIT ✓HIGH 10.0EPSS 64.4% | 13 January 2012 |
| CVE-2011-4786 | A certain ActiveX control in HPTicketMgr.dll in HP Easy Printer Care Software 2.5 and earlier allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via unspecified vectors, a different vulnerability… | EXPLOIT ✓HIGH 9.3EPSS 39.2% | 12 January 2012 |
| CVE-2012-0013 | Incomplete blacklist vulnerability in the Windows Packager configuration in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote attackers to… | EXPLOIT ×2 ✓HIGH 9.3EPSS 73.9% | 10 January 2012 |
| CVE-2012-0007 | The Microsoft Anti-Cross Site Scripting (AntiXSS) Library 3.x and 4.0 does not properly evaluate characters after the detection of a Cascading Style Sheets (CSS) escaped character, which allows remote attackers to conduct cross-site scripting (XSS)… | EXPLOIT ✓MEDIUM 4.3EPSS 18.6% | 10 January 2012 |
| CVE-2012-0003 | Unspecified vulnerability in winmm.dll in Windows Multimedia Library in Windows Media Player (WMP) in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows remote attackers to execute arbitrary code via a crafted MIDI… | EXPLOIT ✓HIGH 8.1EPSS 69.6% | 10 January 2012 |
| CVE-2011-4532 | Absolute path traversal vulnerability in the ALMListView.ALMListCtrl ActiveX control in almaxcx.dll in the graphical user interface in Siemens Automation License Manager (ALM) 2.0 through 5.1+SP1+Upd2 allows remote attackers to overwrite arbitrary files… | EXPLOIT ✓MEDIUM 5.0EPSS 3.21% | 8 January 2012 |
| CVE-2011-4531 | Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via crafted content in a (1) get_target_ocx_param or (2) send_target_ocx_param command. | EXPLOIT ✓MEDIUM 5.0EPSS 8.41% | 8 January 2012 |
| CVE-2011-4530 | Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 does not properly copy fields obtained from clients, which allows remote attackers to cause a denial of service (exception and daemon crash) via long fields, as demonstrated by fields to… | EXPLOIT ✓MEDIUM 5.0EPSS 4.08% | 8 January 2012 |
| CVE-2011-4529 | Multiple buffer overflows in Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 allow remote attackers to execute arbitrary code via a long serialid field in an _licensekey command, as demonstrated by the (1) check_licensekey or (2)… | EXPLOIT ✓HIGH 7.5EPSS 6.86% | 8 January 2012 |
| CVE-2011-5057 | Apache Struts 2.3.1.2 and earlier, 2.3.19-2.3.23, provides interfaces that do not properly restrict access to collections such as the session and request collections, which might allow remote attackers to modify run-time data values via a crafted… | EXPLOIT ✓MEDIUM 5.0EPSS 27.2% | 8 January 2012 |
| CVE-2012-0394 | The DebuggingInterceptor component in Apache Struts before 2.3.1.1, when developer mode is used, allows remote attackers to execute arbitrary commands via unspecified vectors. | EXPLOIT ×2 ✓MEDIUM 6.8EPSS 72.9% | 8 January 2012 |
| CVE-2012-0393 | The ParameterInterceptor component in Apache Struts before 2.3.1.1 does not prevent access to public constructors, which allows remote attackers to create or overwrite arbitrary files via a crafted parameter that triggers the creation of a Java object. | EXPLOIT ✓MEDIUM 6.4EPSS 36.3% | 8 January 2012 |
| CVE-2012-0392 | The CookieInterceptor component in Apache Struts before 2.3.1.1 does not use the parameter-name whitelist, which allows remote attackers to execute arbitrary commands via a crafted HTTP Cookie header that triggers Java code execution through a static… | EXPLOIT ✓MEDIUM 6.8EPSS 97.5% | 8 January 2012 |
| CVE-2012-0391 | Apache Struts 2 Improper Input Validation Vulnerability | KEVEXPLOIT ×2 ✓CRITICAL 9.8EPSS 75.6% | 8 January 2012 |
| CVE-2011-5053 | The Wi-Fi Protected Setup (WPS) protocol, when the "external registrar" authentication method is used, does not properly inform clients about failed PIN authentication, which makes it easier for remote attackers to discover the PIN value, and… | EXPLOITMEDIUM 5.8EPSS 3.27% | 6 January 2012 |
| CVE-2011-4858 | Apache Tomcat before 5.5.35, 6.x before 6.0.35, and 7.x before 7.0.23 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU… | EXPLOIT ✓MEDIUM 5.0EPSS 79.7% | 5 January 2012 |
| CVE-2011-5019 | Cross-site scripting (XSS) vulnerability in setup/index.php in Textpattern CMS 4.4.1, when the product is incompletely installed, allows remote attackers to inject arbitrary web script or HTML via the ddb parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 1.46% | 5 January 2012 |
| CVE-2011-5052 | Stack-based buffer overflow in CoCSoft Stream Down 6.8.0 allows remote web servers to execute arbitrary code via a long response to a download request. | EXPLOIT ✓MEDIUM 6.8EPSS 29.7% | 4 January 2012 |
| CVE-2011-5050 | SQL injection vulnerability in corporate/Controller in Elitecore Technologies Cyberoam UTM before 10.01.2 build 059 allows remote authenticated administrators to execute arbitrary SQL commands via the tableid parameter. | EXPLOIT ✓MEDIUM 6.0EPSS 0.84% | 4 January 2012 |
| CVE-2011-5049 | MySQL 5.5.8, when running on Windows, allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted packet to TCP port 3306. | EXPLOITMEDIUM 4.3EPSS 4.28% | 4 January 2012 |
| CVE-2011-4644 | Splunk 4.2.5 and earlier, when a Free license is selected, enables potentially undesirable functionality within an environment that intentionally does not support authentication, which allows remote attackers to (1) read arbitrary files via a… | EXPLOIT ✓HIGH 9.3EPSS 7.51% | 3 January 2012 |
| CVE-2011-4643 | Multiple directory traversal vulnerabilities in Splunk 4.x before 4.2.5 allow remote authenticated users to read arbitrary files via a .. | EXPLOIT ✓MEDIUM 4.0EPSS 7.73% | 3 January 2012 |
| CVE-2011-4642 | mappy.py in Splunk Web in Splunk 4.2.x before 4.2.5 does not properly restrict use of the mappy command to access Python classes, which allows remote authenticated administrators to execute arbitrary code by leveraging the sys module in a request to the… | EXPLOIT ✓MEDIUM 4.6EPSS 28.6% | 3 January 2012 |
| CVE-2011-4620 | Buffer overflow in the ulSetError function in util/ulError.cxx in PLIB 1.8.5, as used in TORCS 1.3.1 and other products, allows user-assisted remote attackers to execute arbitrary code via vectors involving a long error message, as demonstrated by a… | EXPLOIT ✓HIGH 9.3EPSS 12.6% | 31 December 2011 |
| CVE-2011-5046 | The Graphics Device Interface (GDI) in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly validate… | EXPLOIT ✓HIGH 9.3EPSS 45.3% | 30 December 2011 |
| CVE-2011-5045 | Cross-site scripting (XSS) vulnerability in details_view.php in PHP Booking Calendar 10e allows remote attackers to inject arbitrary web script or HTML via the page_info_message parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 1.48% | 30 December 2011 |
| CVE-2011-5044 | SopCast 3.4.7.45585 uses weak permissions (Everyone:Full Control) for Diagnose.exe, which allows local users to execute arbitrary code by replacing Diagnose.exe with a Trojan horse program. | EXPLOITHIGH 7.2EPSS 1.09% | 30 December 2011 |
| CVE-2011-5043 | TomatoSoft Free Mp3 Player 1.0 allows remote attackers to cause a denial of service (application crash) via a long string in an MP3 file, possibly a buffer overflow. | EXPLOITMEDIUM 4.3EPSS 1.94% | 30 December 2011 |
| CVE-2011-5041 | Multiple cross-site scripting (XSS) vulnerabilities in Pulse Pro CMS 1.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) d parameter in a blocks action and (2) post_id parameter in an edit-post action to index.php. | EXPLOIT ✓MEDIUM 4.3EPSS 1.49% | 30 December 2011 |
| CVE-2011-5040 | Multiple cross-site scripting (XSS) vulnerabilities in Infoproject Biznis Heroj allow remote attackers to inject arbitrary web script or HTML via the config parameter to (1) nalozi_naslov.php and (2) widget.dokumenti_lista.php. | EXPLOITMEDIUM 4.3EPSS 3.01% | 30 December 2011 |
| CVE-2011-5039 | Multiple SQL injection vulnerabilities in Infoproject Biznis Heroj allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters to login.php, (3) the filter parameter to widget.dokumenti_lista.php, and (4)… | EXPLOITHIGH 7.5EPSS 1.01% | 30 December 2011 |
| CVE-2011-5035 | Oracle Glassfish 2.1.1, 3.0.1, and 3.1.1, as used in Communications Server 2.0, Sun Java System Application Server 8.1 and 8.2, and possibly other products, computes hash values for form parameters without restricting the ability to trigger hash… | EXPLOIT ✓MEDIUM 5.0EPSS 67.9% | 30 December 2011 |
| CVE-2011-5034 | Apache Geronimo 2.2.1 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted… | EXPLOIT ✓HIGH 7.8EPSS 80.6% | 30 December 2011 |
| CVE-2011-4885 | PHP before 5.3.9 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters. | EXPLOIT ×3 ✓MEDIUM 5.0EPSS 83.4% | 30 December 2011 |
| CVE-2011-4084 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. | EXPLOIT ✓UnscoredEPSS — | 30 December 2011 |
| CVE-2011-5033 | Stack-based buffer overflow in CFS.c in ConfigServer Security & Firewall (CSF) before 5.43, when running on a DirectAdmin server, allows local users to cause a denial of service (crash) via a long string in an admin.list file. | EXPLOITMEDIUM 4.4EPSS 0.68% | 29 December 2011 |
| CVE-2011-5031 | Multiple SQL injection vulnerabilities in servlet/capexweb.parentvalidatepassword in cApexWEB 1.1 allow remote attackers to execute arbitrary SQL commands via the (1) dfuserid and (2) dfpassword parameters. | EXPLOIT ✓HIGH 7.5EPSS 1.09% | 29 December 2011 |
| CVE-2011-5028 | Directory traversal vulnerability in novelllogmanager/FileDownload in Novell Sentinel Log Manager 1.2.0.1_938 and earlier, as used in Novell Sentinel before 7.0.1.0, allows remote authenticated users to read arbitrary files via a .. | EXPLOITMEDIUM 4.0EPSS 3.23% | 29 December 2011 |
| CVE-2011-5025 | Multiple cross-site scripting (XSS) vulnerabilities in the wiki application in Yaws 1.88 allow remote attackers to inject arbitrary web script or HTML via (1) the tag parameter to editTag.yaws, (2) the index parameter to showOldPage.yaws, (3) the node… | EXPLOIT ×2 ✓MEDIUM 4.3EPSS 2.66% | 29 December 2011 |
| CVE-2011-5023 | Cross-site scripting (XSS) vulnerability in Pligg CMS 1.1.4 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the search program, a different vulnerability than CVE-2011-3986. | EXPLOIT ✓MEDIUM 4.3EPSS 1.48% | 29 December 2011 |
| CVE-2011-5022 | SQL injection vulnerability in search.php in Pligg CMS 1.1.2 allows remote attackers to execute arbitrary SQL commands via the status parameter. | EXPLOIT ✓HIGH 7.5EPSS 0.93% | 29 December 2011 |
| CVE-2011-5026 | Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook before 2.4.8d allows remote attackers to inject arbitrary web script or HTML via the name parameter to index.php. | EXPLOIT ✓MEDIUM 4.3EPSS 1.60% | 29 December 2011 |
| CVE-2011-4166 | Directory traversal vulnerability in the MPAUploader.Uploader.1.UploadFiles method in HP Managed Printing Administration before 2.6.4 allows remote attackers to create arbitrary files via crafted form data. | EXPLOIT ✓HIGH 7.5EPSS 58.3% | 27 December 2011 |
| CVE-2011-5012 | Heap-based buffer overflow in the Reflection FTP Client (rftpcom.dll 7.2.0.106 and possibly other versions), as used in Attachmate Reflection 2008, Reflection 2011 R1 before 15.3.2.569 and R1 SP1 before, Reflection 2011 R2 before 15.4.1.327, Reflection… | EXPLOITHIGH 10.0EPSS 7.75% | 25 December 2011 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.