SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,739 CVEs1,716 in CISA KEV17,392 with EPSS ≥ 10%25,049 with a public exploitUpdated 21 September 2026

25,049 results · page 67 of 501

CVESummaryPriorityPublished
CVE-2018-7182The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mode 6 packet with a ntpd instance from 4.2.8p6 through 4.2.8p10.EXPLOITHIGH 7.5EPSS 28.8%6 March 2018
CVE-2018-0491A use-after-free issue was discovered in Tor 0.3.2.x before 0.3.2.10.EXPLOITHIGH 7.5EPSS 14.8%5 March 2018
CVE-2018-1000115Memcached version 1.5.5 contains an Insufficient Control of Network Message Volume (Network Amplification, CWE-406) vulnerability in the UDP support of the memcached server that can result in denial of service via network flood (traffic amplification of…EXPLOIT ×2HIGH 7.5EPSS 88.1%5 March 2018
CVE-2018-7653In YzmCMS 3.6, index.php has XSS via the a, c, or m parameter.EXPLOITMEDIUM 6.1EPSS 7.85%4 March 2018
CVE-2018-7583Proxy.exe in DualDesk 20 allows Remote Denial Of Service (daemon crash) via a long string to TCP port 5500.EXPLOITHIGH 7.5EPSS 38.1%4 March 2018
CVE-2018-7449SEGGER FTP Server for Windows before 3.22a allows remote attackers to cause a denial of service (daemon crash) via an invalid LIST, STOR, or RETR command.EXPLOITHIGH 7.5EPSS 7.51%4 March 2018
CVE-2017-14798A race condition in the postgresql init script could be used by attackers able to access the postgresql account to escalate their privileges to root.EXPLOITHIGH 7.0EPSS 1.00%1 March 2018
CVE-2018-7584In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while parsing an HTTP response in the php_stream_url_wrap_http_ex function in ext/standard/http_fopen_wrapper.c.EXPLOITCRITICAL 9.8EPSS 87.3%1 March 2018
CVE-2018-7573A remote FTP server can send 400 characters of 'F' in conjunction with the FTP 220 response code to crash the application; after this overflow, one can run arbitrary code on the victim machine.EXPLOIT ×2CRITICAL 9.8EPSS 69.2%1 March 2018
CVE-2018-2380SAP Customer Relationship Management (CRM) Path Traversal VulnerabilityKEVEXPLOITMEDIUM 6.6EPSS 28.9%1 March 2018
CVE-2018-6947An uninitialised stack variable in the nxfuse component that is part of the Open Source DokanFS library shipped with NoMachine 6.0.66_2 and earlier allows a local low privileged user to gain elevation of privileges on Windows 7 (32 and 64bit), and…EXPLOIT ×2HIGH 7.8EPSS 3.09%28 February 2018
CVE-2015-5079Directory traversal vulnerability in widgets/logs.php in BlackCat CMS before 1.1.2 allows remote attackers to read arbitrary files via a ..EXPLOITHIGH 7.5EPSS 17.0%28 February 2018
CVE-2015-4117Vesta Control Panel before 0.9.8-14 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the backup parameter to list/backup/index.php.EXPLOITHIGH 8.8EPSS 10.6%28 February 2018
CVE-2015-3898Multiple open redirect vulnerabilities in Bonita BPM Portal before 6.5.3 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving the redirectUrl parameter to (1) bonita/login.jsp or (2)…EXPLOITMEDIUM 6.1EPSS 5.84%28 February 2018
CVE-2018-7264The Pictview image processing library embedded in the ActivePDF toolkit through 2018.1.0.18321 is prone to multiple out of bounds write and sign errors, allowing a remote attacker to execute arbitrary code on vulnerable applications using the ActivePDF…EXPLOITCRITICAL 9.8EPSS 12.3%28 February 2018
CVE-2018-7477SQL Injection exists in PHP Scripts Mall School Management Script 3.0.4 via the Username and Password fields to parents/Parent_module/parent_login.php.EXPLOITCRITICAL 9.8EPSS 2.65%28 February 2018
CVE-2018-6481A buffer overflow vulnerability in the control protocol of Disk Savvy Enterprise v10.4.18 allows remote attackers to execute arbitrary code by sending a crafted packet to TCP port 9124.EXPLOITCRITICAL 9.8EPSS 20.7%27 February 2018
CVE-2018-7490uWSGI before 2.0.17 mishandles a DOCUMENT_ROOT check during use of the --php-docroot option, allowing directory traversal.EXPLOITHIGH 7.5EPSS 69.4%26 February 2018
CVE-2018-7448Remote code execution vulnerability in /cmsms-2.1.6-install.php/index.php in CMS Made Simple version 2.1.6 allows remote attackers to inject arbitrary PHP code via the "timezone" parameter in step 4 of a fresh installation procedure.EXPLOITHIGH 7.5EPSS 12.8%26 February 2018
CVE-2017-18195An issue was discovered in tools/conversations/view_ajax.php in Concrete5 before 8.3.0.EXPLOITMEDIUM 5.3EPSS 11.1%26 February 2018
CVE-2018-7466install/installNewDB.php in TestLink through 1.9.16 allows remote attackers to conduct injection attacks by leveraging control over DB LOGIN NAMES data during installation to provide a long, crafted value.EXPLOITHIGH 7.5EPSS 6.12%25 February 2018
CVE-2018-7319SQL Injection exists in the OS Property Real Estate 3.12.7 component for Joomla! via the cooling_system1, heating_system1, or laundry parameter.EXPLOITCRITICAL 9.8EPSS 1.98%22 February 2018
CVE-2018-7318SQL Injection exists in the CheckList 1.1.1 component for Joomla! via the title_search, tag_search, name_search, description_search, or filter_order parameter.EXPLOITCRITICAL 9.8EPSS 8.65%22 February 2018
CVE-2018-7317Backup Download exists in the Proclaim 9.1.1 component for Joomla! via a direct request for a .sql file under backup/.EXPLOITHIGH 7.5EPSS 7.92%22 February 2018
CVE-2018-7316Arbitrary File Upload exists in the Proclaim 9.1.1 component for Joomla! via a mediafileform action.EXPLOITCRITICAL 9.8EPSS 8.06%22 February 2018
CVE-2018-7315SQL Injection exists in the Ek Rishta 2.9 component for Joomla! via the gender, age1, age2, religion, mothertounge, caste, or country parameter.EXPLOITCRITICAL 9.8EPSS 2.65%22 February 2018
CVE-2018-7314SQL Injection exists in the PrayerCenter 3.0.2 component for Joomla! via the sessionid parameter, a different vulnerability than CVE-2008-6429.EXPLOITCRITICAL 9.8EPSS 57.8%22 February 2018
CVE-2018-7312SQL Injection exists in the Alexandria Book Library 3.1.2 component for Joomla! via the letter parameter.EXPLOITCRITICAL 9.8EPSS 2.65%22 February 2018
CVE-2018-7300Directory Traversal / Arbitrary File Write / Remote Code Execution in the User.setLanguage method in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to write arbitrary files to the device's filesystem.EXPLOITCRITICAL 9.8EPSS 30.6%22 February 2018
CVE-2018-7297Remote Code Execution in the TCL script interpreter in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to obtain read/write access and execute system commands on the device.EXPLOITCRITICAL 9.8EPSS 64.3%22 February 2018
CVE-2018-7313SQL Injection exists in the CW Tags 2.0.6 component for Joomla! via the searchtext array parameter.EXPLOITCRITICAL 9.8EPSS 19.1%22 February 2018
CVE-2018-7286An issue was discovered in Asterisk through 13.19.1, 14.x through 14.7.5, and 15.x through 15.2.1, and Certified Asterisk through 13.18-cert2. res_pjsip allows remote authenticated users to crash Asterisk (segmentation fault) by sending a number of SIP…EXPLOITMEDIUM 6.5EPSS 38.3%22 February 2018
CVE-2018-7284A Buffer Overflow issue was discovered in Asterisk through 13.19.1, 14.x through 14.7.5, and 15.x through 15.2.1, and Certified Asterisk through 13.18-cert2.EXPLOITHIGH 7.5EPSS 57.7%22 February 2018
CVE-2018-6936Cross Site Scripting (XSS) exists on the D-Link DIR-600M C1 3.01 via the SSID or the name of a user account.EXPLOITMEDIUM 5.4EPSS 2.15%21 February 2018
CVE-2018-7289Malware with filenames containing pure UTF-16 characters can bypass detection.EXPLOITLOW 3.3EPSS 1.72%21 February 2018
CVE-2018-7273An attacker can read this information from dmesg and use the addresses to find the locations of kernel code and data and bypass kernel security protections such as KASLR.EXPLOITMEDIUM 5.5EPSS 1.76%21 February 2018
CVE-2017-6193Buffer overflow in APNGDis 2.8 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted image containing a malformed image size descriptor in the IHDR chunk.EXPLOITMEDIUM 5.5EPSS 7.55%20 February 2018
CVE-2017-6192Buffer overflow in APNGDis 2.8 and earlier allows a remote attackers to cause denial of service and possibly execute arbitrary code via a crafted image containing a malformed chunk size descriptor.EXPLOITMEDIUM 5.5EPSS 6.87%20 February 2018
CVE-2018-6941A /shell?cmd= CSRF issue exists in the HTTPD component of NAT32 v2.2 Build 22284 devices that can be exploited for Remote Code Execution in conjunction with XSS.EXPLOITHIGH 8.8EPSS 3.48%20 February 2018
CVE-2018-6940A /shell?cmd= XSS issue exists in the HTTPD component of NAT32 v2.2 Build 22284 devices that can be exploited for Remote Code Execution in conjunction with CSRF.EXPLOITMEDIUM 6.1EPSS 2.77%20 February 2018
CVE-2017-16356Reflected XSS in Kubik-Rubik SIGE (aka Simple Image Gallery Extended) before 3.3.0 allows attackers to execute JavaScript in a victim's browser by having them visit a plugins/content/sige/plugin_sige/print.php link with a crafted img, name, or caption…EXPLOITMEDIUM 6.1EPSS 2.19%20 February 2018
CVE-2016-6272XPath injection vulnerability in Epic MyChart allows remote attackers to access contents of an XML document containing static display strings, such as field labels, via the topic parameter to help.asp.EXPLOITHIGH 7.5EPSS 20.9%20 February 2018
CVE-2018-7254The ParseCaffHeaderConfig function of the cli/caff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (global buffer over-read), or possibly trigger a buffer overflow or incorrect memory allocation, via a maliciously crafted…EXPLOITHIGH 7.8EPSS 9.72%19 February 2018
CVE-2018-7251The error log is exposed at an errors.log URI, and contains MySQL credentials if a MySQL error (such as "Too many connections") has occurred.EXPLOITCRITICAL 9.8EPSS 71.8%19 February 2018
CVE-2018-6024SQL Injection exists in the Project Log 1.5.3 component for Joomla! via the search parameter.EXPLOITCRITICAL 9.8EPSS 3.05%18 February 2018
CVE-2018-7216Cross-site request forgery (CSRF) vulnerability in esop/toolkit/profile/regData.do in Bravo Tejari Procurement Portal allows remote authenticated users to hijack the authentication of application users for requests that modify their personal data by…EXPLOITHIGH 8.0EPSS 2.86%18 February 2018
CVE-2018-7198October CMS through 1.0.431 allows XSS by entering HTML on the Add Posts page.EXPLOITMEDIUM 6.1EPSS 2.35%18 February 2018
CVE-2018-7180SQL Injection exists in the Saxum Astro 4.0.14 component for Joomla! via the publicid parameter.EXPLOITCRITICAL 9.8EPSS 2.71%17 February 2018
CVE-2018-7179SQL Injection exists in the SquadManagement 1.0.3 component for Joomla! via the id parameter.EXPLOITCRITICAL 9.8EPSS 2.65%17 February 2018
CVE-2018-7178SQL Injection exists in the Saxum Picker 3.2.10 component for Joomla! via the publicid parameter.EXPLOITCRITICAL 9.8EPSS 3.88%17 February 2018

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.