SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,739 CVEs1,716 in CISA KEV17,392 with EPSS ≥ 10%25,049 with a public exploitUpdated 21 September 2026

25,049 results · page 66 of 501

CVESummaryPriorityPublished
CVE-2018-6223A missing authentication for appliance registration vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to manipulate the registration process of the product to reset configuration parameters.EXPLOITCRITICAL 9.8EPSS 10.0%15 March 2018
CVE-2018-6222Arbitrary logs location in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to change location of log files and be manipulated to execute arbitrary commands and attain command execution on a vulnerable system.EXPLOITHIGH 7.8EPSS 1.25%15 March 2018
CVE-2018-6221An unvalidated software update vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a man-in-the-middle attacker to tamper with an update file and inject their own.EXPLOITHIGH 8.1EPSS 6.09%15 March 2018
CVE-2018-6220An arbitrary file write vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to inject arbitrary data, which may lead to gaining code execution on vulnerable systems.EXPLOITCRITICAL 9.8EPSS 9.85%15 March 2018
CVE-2018-6219An Insecure Update via HTTP vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to eavesdrop and tamper with certain types of update data.EXPLOITMEDIUM 6.5EPSS 3.88%15 March 2018
CVE-2018-8729Multiple cross-site scripting (XSS) vulnerabilities in the Activity Log plugin before 2.4.1 for WordPress allow remote attackers to inject arbitrary JavaScript or HTML via a title that is not escaped.EXPLOIT ×2MEDIUM 6.1EPSS 5.33%15 March 2018
CVE-2018-7886An unauthenticated local attacker that can connect to the "CloudMe Sync" client application listening on 127.0.0.1 port 8888 can send a malicious payload causing a buffer overflow condition.EXPLOITHIGH 7.8EPSS 1.95%15 March 2018
CVE-2018-7756RunExeFile.exe in the installer for DEWESoft X3 SP1 (64-bit) devices does not require authentication for sessions on TCP port 1999, which allows remote attackers to execute arbitrary code or access internal commands, as demonstrated by a RUN command…EXPLOITCRITICAL 9.8EPSS 60.7%15 March 2018
CVE-2018-7707Cross-site scripting (XSS) vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote attackers to inject arbitrary web script or HTML via an HTML-formatted e-mail message.EXPLOITMEDIUM 6.1EPSS 2.59%15 March 2018
CVE-2018-7706Directory traversal vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read arbitrary e-mail messages via a ..EXPLOITMEDIUM 6.5EPSS 6.71%15 March 2018
CVE-2018-7705Directory traversal vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read e-mail messages to arbitrary recipients via a ..EXPLOITHIGH 8.1EPSS 5.99%15 March 2018
CVE-2018-7704SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read arbitrary e-mail messages via the option1 parameter in a reply action to secmail/getmessage.exe.EXPLOITMEDIUM 6.5EPSS 4.62%15 March 2018
CVE-2018-7703Cross-site scripting (XSS) vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote attackers to inject arbitrary web script or HTML via the mailboxid parameter to secmail/getmessage.exe.EXPLOITMEDIUM 6.1EPSS 3.94%15 March 2018
CVE-2018-7702SecurEnvoy SecurMail before 9.2.501 allows remote attackers to spoof transmission of arbitrary e-mail messages, resend e-mail messages to arbitrary recipients, or modify arbitrary message bodies and attachments by leveraging missing authentication and…EXPLOITCRITICAL 9.1EPSS 14.0%15 March 2018
CVE-2018-7701Multiple cross-site request forgery (CSRF) vulnerabilities in SecurEnvoy SecurMail before 9.2.501 allow remote attackers to hijack the authentication of arbitrary users for requests that (1) delete e-mail messages via a delete action in a request to…EXPLOITMEDIUM 6.5EPSS 2.90%15 March 2018
CVE-2018-6329It was discovered that the Unitrends Backup (UB) before 10.1.0 libbpext.so authentication could be bypassed with a SQL injection, allowing a remote attacker to place a privilege escalation exploit on the target system and subsequently execute arbitrary…EXPLOIT ×2CRITICAL 9.8EPSS 61.2%14 March 2018
CVE-2018-6328It was discovered that the Unitrends Backup (UB) before 10.1.0 user interface was exposed to an authentication bypass, which then could allow an unauthenticated user to inject arbitrary commands into its /api/hosts parameters using backquotes.EXPLOIT ×2CRITICAL 9.8EPSS 64.4%14 March 2018
CVE-2018-0935Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to how the…EXPLOITHIGH 7.5EPSS 55.6%14 March 2018
CVE-2018-0934ChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to how the Chakra scripting engine handles objects in memory, aka "Chakra Scripting Engine Memory Corruption Vulnerability".EXPLOIT ×2HIGH 7.5EPSS 66.2%14 March 2018
CVE-2018-0933ChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to how the Chakra scripting engine handles objects in memory, aka "Chakra Scripting Engine Memory Corruption Vulnerability".EXPLOITHIGH 7.5EPSS 66.3%14 March 2018
CVE-2018-0901The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an…EXPLOITMEDIUM 4.7EPSS 2.36%14 March 2018
CVE-2018-0897The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an…EXPLOITMEDIUM 4.7EPSS 2.34%14 March 2018
CVE-2018-0895The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an…EXPLOITMEDIUM 4.7EPSS 2.76%14 March 2018
CVE-2018-0894The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an…EXPLOITMEDIUM 4.7EPSS 2.34%14 March 2018
CVE-2018-0891ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows…EXPLOITMEDIUM 4.3EPSS 14.2%14 March 2018
CVE-2018-0886The Credential Security Support Provider protocol (CredSSP) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709 Windows Server 2016 and Windows…EXPLOITHIGH 7.0EPSS 82.0%14 March 2018
CVE-2018-0882The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how the virtual registry is managed, aka "Windows Desktop Bridge Elevation of Privilege…EXPLOITHIGH 7.0EPSS 2.81%14 March 2018
CVE-2018-0880The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how the virtual registry is managed, aka "Windows Desktop Bridge Elevation of Privilege…EXPLOITHIGH 7.0EPSS 3.06%14 March 2018
CVE-2018-0878Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an…EXPLOITLOW 3.1EPSS 21.1%14 March 2018
CVE-2018-0877The Desktop Bridge Virtual File System (VFS) in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how file paths are managed, aka "Windows Desktop Bridge VFS…EXPLOITHIGH 7.8EPSS 3.35%14 March 2018
CVE-2018-5782A vulnerability in the conferencing component of Mitel Connect ONSITE, versions R1711-PREM and earlier, and Mitel ST 14.2, release GA28 and earlier, could allow an unauthenticated attacker to inject PHP code using specially crafted requests to the…EXPLOITCRITICAL 9.8EPSS 18.7%14 March 2018
CVE-2018-7474It is possible to inject SQL code in the variable "qty" on the page index.php.EXPLOITCRITICAL 9.8EPSS 6.24%14 March 2018
CVE-2018-8096Datalust Seq before 4.2.605 is vulnerable to Authentication Bypass (with the attacker obtaining admin access) via '"Name":"isauthenticationenabled","Value":false' in an api/settings/setting-isauthenticationenabled PUT request.EXPLOITCRITICAL 9.8EPSS 48.2%14 March 2018
CVE-2018-7750transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x before 2.1.5, 2.2.x before 2.2.3, 2.3.x before 2.3.2, and 2.4.x before 2.4.1 does not properly check whether authentication is…EXPLOITCRITICAL 9.8EPSS 27.1%13 March 2018
CVE-2018-1000094CMS Made Simple version 2.2.5 contains a Remote Code Execution vulnerability in File Manager that can result in Allows an authenticated admin that has access to the file manager to execute code on the server.EXPLOITHIGH 7.2EPSS 38.8%13 March 2018
CVE-2018-7538A SQL injection vulnerability in the tracker functionality of Enalean Tuleap software engineering platform before 9.18 allows attackers to execute arbitrary SQL commands.EXPLOITCRITICAL 9.8EPSS 4.22%12 March 2018
CVE-2017-2619Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a malicious client using a symlink race to allow access to areas of the server file system not exported under the share definition.EXPLOITHIGH 7.5EPSS 11.1%12 March 2018
CVE-2018-8065An issue was discovered in the web server in Flexense SyncBreeze Enterprise 10.6.24.EXPLOITHIGH 7.5EPSS 75.9%12 March 2018
CVE-2018-8057A SQL Injection vulnerability exists in Western Bridge Cobub Razor 0.8.0 via the channel_name or platform parameter in a /index.php?/manage/channel/addchannel request, related to /application/controllers/manage/channel.php.EXPLOITCRITICAL 9.8EPSS 21.8%11 March 2018
CVE-2018-8056Physical path Leakage exists in Western Bridge Cobub Razor 0.8.0 via an invalid channel_name parameter to /index.php?/manage/channel/addchannel or a direct request to /export.php.EXPLOITHIGH 7.5EPSS 12.7%11 March 2018
CVE-2018-7582WebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a long HTTP Accept Header to TCP port 9991.EXPLOITHIGH 7.5EPSS 36.4%9 March 2018
CVE-2018-7581\ProgramData\WebLog Expert\WebServer\WebServer.cfg in WebLog Expert Web Server Enterprise 9.4 has weak permissions (BUILTIN\Users:(ID)C), which allows local users to set a cleartext password and login as admin.EXPLOITHIGH 7.8EPSS 1.08%9 March 2018
CVE-2018-8002In PoDoFo 0.9.5, there exists an infinite loop vulnerability in PdfParserObject::ParseFileComplete() in PdfParserObject.cpp which may result in stack overflow.EXPLOITHIGH 8.8EPSS 8.01%9 March 2018
CVE-2018-7890A remote code execution issue was discovered in Zoho ManageEngine Applications Manager before 13.6 (build 13640).EXPLOITCRITICAL 9.8EPSS 78.8%8 March 2018
CVE-2017-15367Bacula-web before 8.0.0-rc2 is affected by multiple SQL Injection vulnerabilities that could allow an attacker to access the Bacula database and, depending on configuration, escalate privileges on the server.EXPLOITCRITICAL 9.8EPSS 23.1%7 March 2018
CVE-2018-7746For example, with a crafted channel name, stored XSS is triggered during a later /index.php?/manage/channel request by an admin.EXPLOITHIGH 8.8EPSS 3.13%7 March 2018
CVE-2018-7745An issue was discovered in Western Bridge Cobub Razor 0.7.2.EXPLOITHIGH 7.5EPSS 12.0%7 March 2018
CVE-2018-7739antsle antman before 0.9.1a allows remote attackers to bypass authentication via invalid characters in the username and password parameters, as demonstrated by a username=>&password=%0a string to the /login URI.EXPLOIT ×2CRITICAL 9.8EPSS 53.2%7 March 2018
CVE-2018-7737In Z-BlogPHP 1.5.1.1740, there is Web Site physical path leakage, as demonstrated by admin_footer.php or admin_footer.php.EXPLOITMEDIUM 5.3EPSS 8.48%6 March 2018
CVE-2018-7736In Z-BlogPHP 1.5.1.1740, cmd.php has XSS via the ZC_BLOG_SUBNAME parameter or ZC_UPLOAD_FILETYPE parameter.EXPLOITMEDIUM 6.1EPSS 3.26%6 March 2018

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.