Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,541 CVEs1,721 in CISA KEV17,395 with EPSS ≥ 10%25,049 with a public exploitUpdated 23 September 2026
25,049 results · page 178 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2011-1020 | The proc filesystem implementation in the Linux kernel 2.6.37 and earlier does not restrict access to the /proc directory tree of a process after this process performs an exec of a setuid program, which allows local users to obtain sensitive information… | EXPLOITMEDIUM 4.6EPSS 0.92% | 28 February 2011 |
| CVE-2011-1018 | logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log file name, as demonstrated via a crafted username to a Samba server. | EXPLOIT ✓HIGH 10.0EPSS 18.3% | 25 February 2011 |
| CVE-2010-4227 | The xdrDecodeString function in XNFS.NLM in Novell Netware 6.5 before SP8 allows remote attackers to cause a denial of service (abend) or execute arbitrary code via a crafted, signed value in a NFS RPC request to port UDP 1234, leading to a stack-based… | EXPLOIT ✓HIGH 10.0EPSS 16.8% | 25 February 2011 |
| CVE-2011-1100 | Multiple SQL injection vulnerabilities in admin/index.php in Pixelpost 1.7.3 allow remote authenticated users to execute arbitrary SQL commands via the (1) findfid, (2) id, (3) selectfcat, (4) selectfmon, or (5) selectftag parameter in an images action. | EXPLOITMEDIUM 6.5EPSS 1.30% | 25 February 2011 |
| CVE-2011-1062 | Multiple cross-site scripting (XSS) vulnerabilities in include/html/header.php in TaskFreak! | EXPLOIT ×4 ✓MEDIUM 4.3EPSS 1.75% | 23 February 2011 |
| CVE-2011-1060 | SQL injection vulnerability in the member function in classes/member.php in WSN Guest 1.24 allows remote attackers to execute arbitrary SQL commands via the wsnuser cookie to index.php. | EXPLOIT ✓HIGH 7.5EPSS 2.27% | 23 February 2011 |
| CVE-2011-1038 | Multiple cross-site scripting (XSS) vulnerabilities in stconf.nsf in the server in IBM Lotus Sametime 8.0.1 allow remote attackers to inject arbitrary web script or HTML via (1) the messageString parameter in a WebMessage action or (2) the PATH_INFO. | EXPLOIT ✓MEDIUM 4.3EPSS 3.05% | 22 February 2011 |
| CVE-2011-1055 | SQL injection vulnerability in api/ice_media.cfc in Lingxia I.C.E CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the session.user_id parameter to media.cfm. | EXPLOIT ✓HIGH 7.5EPSS 1.15% | 21 February 2011 |
| CVE-2011-1048 | SQL injection vulnerability in product.php in MihanTools 1.33 allows remote attackers to execute arbitrary SQL commands via the id parameter. | EXPLOIT ✓HIGH 7.5EPSS 0.99% | 21 February 2011 |
| CVE-2011-1047 | Multiple SQL injection vulnerabilities in VastHTML Forum Server (aka ForumPress) plugin 1.6.1 and 1.6.5 for WordPress allow remote attackers to execute arbitrary SQL commands via the (1) search_max parameter in a search action to index.php, which is not… | EXPLOITHIGH 7.5EPSS 5.02% | 21 February 2011 |
| CVE-2011-0420 | The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependent attackers to cause a denial of service (crash) via an invalid size argument, which triggers a NULL pointer dereference. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 14.4% | 19 February 2011 |
| CVE-2011-0364 | The Management Console (webagent.exe) in Cisco Security Agent 5.1, 5.2, and 6.0 before 6.0.2.145 allows remote attackers to create arbitrary files and execute arbitrary code via unspecified parameters in a crafted st_upload request. | EXPLOIT ✓HIGH 10.0EPSS 19.6% | 19 February 2011 |
| CVE-2010-4328 | Multiple stack-based buffer overflows in opt/novell/iprint/bin/ipsmd in Novell iPrint for Linux Open Enterprise Server 2 SP2 and SP3 allow remote attackers to execute arbitrary code via unspecified LPR opcodes. | EXPLOIT ✓HIGH 7.5EPSS 15.2% | 19 February 2011 |
| CVE-2010-4323 | Heap-based buffer overflow in novell-tftp.exe in Novell ZENworks Configuration Manager (ZCM) 10.3.1, 10.3.2, and 11.0, and earlier versions, allows remote attackers to execute arbitrary code via a long TFTP request. | EXPLOIT ✓HIGH 7.5EPSS 8.08% | 19 February 2011 |
| CVE-2010-4742 | Stack-based buffer overflow in a certain ActiveX control in MediaDBPlayback.DLL 2.2.0.5 in the Moxa ActiveX SDK allows remote attackers to execute arbitrary code via a long PlayFileName property value. | EXPLOIT ✓HIGH 10.0EPSS 56.4% | 18 February 2011 |
| CVE-2010-4741 | Stack-based buffer overflow in MDMUtil.dll in MDMTool.exe in MDM Tool before 2.3 in Moxa Device Manager allows remote MDM Gateways to execute arbitrary code via crafted data in a session on TCP port 54321. | EXPLOIT ✓HIGH 9.3EPSS 27.8% | 18 February 2011 |
| CVE-2010-4476 | The Double.parseDouble method in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and earlier, and 1.4.2_29 and earlier, as used in OpenJDK, Apache, JBossweb, and other products, allows remote… | EXPLOIT ✓MEDIUM 5.0EPSS 23.5% | 17 February 2011 |
| CVE-2010-4452 | Unspecified vulnerability in the Deployment component in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect… | EXPLOIT ✓HIGH 10.0EPSS 82.8% | 17 February 2011 |
| CVE-2010-3274 | Multiple cross-site scripting (XSS) vulnerabilities in EmployeeSearch.cc in the Employee Search Engine in ZOHO ManageEngine ADSelfService Plus before 4.5 Build 4500 allow remote attackers to inject arbitrary web script or HTML via the searchString… | EXPLOIT ✓MEDIUM 4.3EPSS 21.0% | 17 February 2011 |
| CVE-2010-3272 | accounts/ValidateAnswers in the security-questions implementation in ZOHO ManageEngine ADSelfService Plus before 4.5 Build 4500 makes it easier for remote attackers to reset user passwords, and consequently obtain access to arbitrary user accounts, via… | EXPLOIT ✓MEDIUM 4.3EPSS 4.02% | 17 February 2011 |
| CVE-2010-4740 | Stack-based buffer overflow in WTclient.dll in SCADA Engine BACnet OPC Client before 1.0.25 allows user-assisted remote attackers to execute arbitrary code via a crafted .csv file, related to a status log message. | EXPLOIT ✓HIGH 9.3EPSS 41.6% | 16 February 2011 |
| CVE-2010-4738 | Multiple SQL injection vulnerabilities in Rae Media INC Real Estate Single and Multi Agent System 3.0 allow remote attackers to execute arbitrary SQL commands via the probe parameter to (1) multi/city.asp in the Multi Agent System and (2) resulttype.asp… | EXPLOIT ×2 ✓HIGH 7.5EPSS 1.80% | 16 February 2011 |
| CVE-2010-4737 | SQL injection vulnerability in resorts.asp in HotWebScripts HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the PropResort parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.02% | 16 February 2011 |
| CVE-2010-4736 | SQL injection vulnerability in ECO.asp in GateSoft DocuSafe 4.1.0 and 4.1.2 allows remote attackers to execute arbitrary SQL commands via the ECO_ID parameter. | EXPLOIT ✓HIGH 7.5EPSS 1.02% | 16 February 2011 |
| CVE-2010-4735 | SQL injection vulnerability in shoppingcart.asp in Ecommercemax Solutions Digital-goods seller (DGS) 1.5 allows remote attackers to execute arbitrary SQL commands via the d parameter. | EXPLOIT ✓HIGH 7.5EPSS 0.99% | 16 February 2011 |
| CVE-2010-4734 | Multiple cross-site scripting (XSS) vulnerabilities in the comment feature in Skeletonz CMS 1.0, when the Blog plugin is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) Website, and (3) Email parameters. | EXPLOITLOW 2.6EPSS 1.78% | 16 February 2011 |
| CVE-2011-0654 | Integer underflow in the BowserWriteErrorLogEntry function in the Common Internet File System (CIFS) browser service in Mrxsmb.sys or bowser.sys in Active Directory in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2,… | EXPLOIT ✓HIGH 10.0EPSS 68.1% | 16 February 2011 |
| CVE-2011-0978 | Stack-based buffer overflow in Microsoft Excel 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 allows remote attackers to execute arbitrary code… | EXPLOIT ✓HIGH 9.3EPSS 42.6% | 10 February 2011 |
| CVE-2011-0647 | The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows remote attackers to execute arbitrary commands via the RunProgram function to TCP port 6542. | EXPLOIT ✓HIGH 10.0EPSS 63.7% | 10 February 2011 |
| CVE-2011-0923 | The client in HP Data Protector does not properly validate EXEC_CMD arguments, which allows remote attackers to execute arbitrary Perl code via a crafted command, related to the "local bin directory." | EXPLOIT ×5 ✓HIGH 10.0EPSS 81.1% | 9 February 2011 |
| CVE-2011-0922 | The client in HP Data Protector allows remote attackers to execute arbitrary programs via an EXEC_SETUP command that references a UNC share pathname. | EXPLOIT ×3 ✓HIGH 10.0EPSS 64.2% | 9 February 2011 |
| CVE-2011-0045 | The Trace Events functionality in the kernel in Microsoft Windows XP SP3 does not properly perform type conversion, which causes integer truncation and insufficient memory allocation and triggers a buffer overflow, which allows local users to gain… | EXPLOIT ✓HIGH 7.2EPSS 3.80% | 9 February 2011 |
| CVE-2011-0920 | The Remote Console in IBM Lotus Domino, when a certain unsupported configuration involving UNC share pathnames is used, allows remote attackers to bypass authentication and execute arbitrary code via unspecified vectors, aka SPR PRAD89WGRS. | EXPLOIT ✓HIGH 9.3EPSS 10.2% | 8 February 2011 |
| CVE-2011-0917 | Buffer overflow in nLDAP.exe in IBM Lotus Domino allows remote attackers to execute arbitrary code via a long string in an LDAP Bind operation, aka SPR KLYH87LMVX. | EXPLOIT ✓HIGH 10.0EPSS 14.3% | 8 February 2011 |
| CVE-2011-0887 | The web management portal on the SMC SMCD3G-CCR (aka Comcast Business Gateway) with firmware before 1.4.0.49.2 uses predictable session IDs based on time values, which makes it easier for remote attackers to hijack sessions via a brute-force attack on… | EXPLOIT ✓MEDIUM 4.3EPSS 4.67% | 8 February 2011 |
| CVE-2011-0886 | Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface on the SMC SMCD3G-CCR (aka Comcast Business Gateway) with firmware before 1.4.0.49.2 allow remote attackers to (1) hijack the intranet connectivity of arbitrary users for… | EXPLOIT ✓MEDIUM 6.8EPSS 2.61% | 8 February 2011 |
| CVE-2011-0885 | A certain Comcast Business Gateway configuration of the SMC SMCD3G-CCR with firmware before 1.4.0.49.2 has a default password of D0nt4g3tme for the mso account, which makes it easier for remote attackers to obtain administrative access via the (1) web… | EXPLOIT ✓HIGH 10.0EPSS 10.1% | 8 February 2011 |
| CVE-2011-0538 | Wireshark 1.2.0 through 1.2.14, 1.4.0 through 1.4.3, and 1.5.0 frees an uninitialized pointer during processing of a .pcap file in the pcap-ng format, which allows remote attackers to cause a denial of service (memory corruption) or possibly have… | EXPLOIT ✓MEDIUM 6.8EPSS 7.51% | 8 February 2011 |
| CVE-2011-0535 | Cross-site request forgery (CSRF) vulnerability in the Users module in Zikula before 1.2.5 allows remote attackers to hijack the authentication of administrators for requests that change account privileges via an edit access_permissions action to… | EXPLOIT ✓MEDIUM 6.8EPSS 1.43% | 8 February 2011 |
| CVE-2011-0903 | Multiple directory traversal vulnerabilities in AR Web Content Manager (AWCM) 2.2 allow remote attackers to read arbitrary files and possibly have other unspecified impact via a .. | EXPLOIT ✓MEDIUM 6.8EPSS 1.94% | 7 February 2011 |
| CVE-2011-0902 | Multiple untrusted search path vulnerabilities in the Java Service in Sun Microsystems SunScreen Firewall on SunOS 5.9 allow local users to execute arbitrary code via a modified (1) PATH or (2) LD_LIBRARY_PATH environment variable. | EXPLOITMEDIUM 6.9EPSS 1.52% | 7 February 2011 |
| CVE-2011-0901 | Multiple stack-based buffer overflows in the tsc_launch_remote function (src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly other versions, allow user-assisted remote attackers to execute arbitrary code via a .RDP file with a long… | EXPLOIT ✓MEDIUM 6.8EPSS 4.52% | 7 February 2011 |
| CVE-2011-0900 | Stack-based buffer overflow in the tsc_launch_remote function (src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a .RDP file with a long hostname… | EXPLOIT ✓MEDIUM 6.8EPSS 5.21% | 7 February 2011 |
| CVE-2011-0531 | demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory… | EXPLOIT ✓HIGH 9.3EPSS 41.9% | 7 February 2011 |
| CVE-2011-0522 | The StripTags function in (1) the USF decoder (modules/codec/subtitles/subsdec.c) and (2) the Text decoder (modules/codec/subtitles/subsusf.c) in VideoLAN VLC Media Player 1.1 before 1.1.6-rc allows remote attackers to execute arbitrary code via a… | EXPLOITMEDIUM 6.8EPSS 51.5% | 7 February 2011 |
| CVE-2011-0773 | Cross-site scripting (XSS) vulnerability in pivotx/modules/module_image.php in PivotX before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the image parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 2.36% | 4 February 2011 |
| CVE-2011-0772 | Multiple cross-site scripting (XSS) vulnerabilities in PivotX 2.2.0, and possibly other versions before 2.2.2, allow remote attackers to inject arbitrary web script or HTML via the (1) color parameter to includes/blogroll.php or (2) src parameter to… | EXPLOIT ×2 ✓MEDIUM 4.3EPSS 2.52% | 4 February 2011 |
| CVE-2011-0049 | Directory traversal vulnerability in the _list_file_get function in lib/Majordomo.pm in Majordomo 2 before 20110131 allows remote attackers to read arbitrary files via .. | EXPLOIT ✓MEDIUM 5.0EPSS 95.4% | 4 February 2011 |
| CVE-2011-0354 | The default configuration of Cisco Tandberg C Series Endpoints, and Tandberg E and EX Personal Video units, with software before TC4.0.0 has a blank password for the root account, which makes it easier for remote attackers to obtain access via an… | EXPLOIT ✓HIGH 10.0EPSS 14.0% | 3 February 2011 |
| CVE-2011-0740 | Cross-site scripting (XSS) vulnerability in magpie/scripts/magpie_slashbox.php in RSS Feed Reader 0.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the rss_url parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 4.66% | 2 February 2011 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.