SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,914 CVEs1,717 in CISA KEV17,392 with EPSS ≥ 10%25,049 with a public exploitUpdated 21 September 2026

25,049 results · page 85 of 501

CVESummaryPriorityPublished
CVE-2017-9412The unpack_read_samples function in frontend/get_audio.c in LAME 3.99.5 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted wav file.EXPLOITMEDIUM 5.5EPSS 3.97%27 July 2017
CVE-2017-9411Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.EXPLOITUnscoredEPSS —27 July 2017
CVE-2017-9410Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.EXPLOITUnscoredEPSS —27 July 2017
CVE-2017-9260The TDStretchSSE::calcCrossCorr function in source/SoundTouch/sse_optimized.cpp in SoundTouch 1.9.2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted wav file.EXPLOITMEDIUM 5.5EPSS 3.92%27 July 2017
CVE-2017-9259The TDStretch::acceptNewOverlapLength function in source/SoundTouch/TDStretch.cpp in SoundTouch 1.9.2 allows remote attackers to cause a denial of service (memory allocation error and application crash) via a crafted wav file.EXPLOITMEDIUM 5.5EPSS 6.15%27 July 2017
CVE-2017-9258The TDStretch::processSamples function in source/SoundTouch/TDStretch.cpp in SoundTouch 1.9.2 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted wav file.EXPLOITMEDIUM 5.5EPSS 4.24%27 July 2017
CVE-2017-9413Multiple cross-site request forgery (CSRF) vulnerabilities in the Podcast feature in Subsonic 6.1.1 allow remote attackers to hijack the authentication of users for requests that (1) subscribe to a podcast via the add parameter to…EXPLOITHIGH 8.8EPSS 1.78%25 July 2017
CVE-2016-10401ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access if a non-root account password is known (or a non-root default account exists within an ISP's deployment of these devices).EXPLOITHIGH 8.8EPSS 12.1%25 July 2017
CVE-2015-5594The sanitize_string function in ZenPhoto before 1.4.9 utilized the html_entity_decode function after input sanitation, which might allow remote attackers to perform a cross-site scripting (XSS) via a crafted string.EXPLOITMEDIUM 6.1EPSS 1.87%25 July 2017
CVE-2015-2798SQL injection vulnerability in Joomla!EXPLOITCRITICAL 9.8EPSS 3.26%25 July 2017
CVE-2015-2280snwrite.cgi in AirLink101 SkyIPCam1620W Wireless N MPEG4 3GPP network camera with firmware FW_AIC1620W_1.1.0-12_20120709_r1192.pck allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the mac parameter.EXPLOITHIGH 8.8EPSS 17.0%25 July 2017
CVE-2015-2279cgi_test.cgi in AirLive BU-2015 with firmware 1.03.18, BU-3026 with firmware 1.43, and MD-3025 with firmware 1.81 allows remote attackers to execute arbitrary OS commands via shell metacharacters after an "&" (ampersand) in the write_mac write_pid,…EXPLOITCRITICAL 9.8EPSS 17.6%25 July 2017
CVE-2017-9554An information exposure vulnerability in forget_passwd.cgi in Synology DiskStation Manager (DSM) before 6.1.3-15152 allows remote attackers to enumerate valid usernames via unspecified vectors.EXPLOITMEDIUM 5.3EPSS 76.7%24 July 2017
CVE-2017-11517Stack-based buffer overflow in GCoreServer.exe in the server in Geutebrueck Gcore 1.3.8.42 and 1.4.2.37 allows remote attackers to execute arbitrary code via a long URI in a GET request.EXPLOITCRITICAL 9.8EPSS 29.1%21 July 2017
CVE-2017-9415Cross-site request forgery (CSRF) vulnerability in subsonic 6.1.1 allows remote attackers with knowledge of the target username to hijack the authentication of users for requests that change passwords via a crafted request to userSettings.view.EXPLOITHIGH 7.5EPSS 2.48%21 July 2017
CVE-2017-11502Technicolor DPC3928AD DOCSIS devices allow remote attackers to read arbitrary files via a request starting with "GET /../" on TCP port 4321.EXPLOITCRITICAL 9.8EPSS 7.12%20 July 2017
CVE-2017-7064It allows attackers to bypass intended memory-read restrictions via a crafted app.EXPLOITMEDIUM 5.5EPSS 4.12%20 July 2017
CVE-2017-7061It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 7.95%20 July 2017
CVE-2017-7056It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 8.06%20 July 2017
CVE-2017-7049It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 6.22%20 July 2017
CVE-2017-7048It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 7.25%20 July 2017
CVE-2017-7047It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 8.8EPSS 6.73%20 July 2017
CVE-2017-7046It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 7.21%20 July 2017
CVE-2017-7043It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 6.31%20 July 2017
CVE-2017-7042It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 8.88%20 July 2017
CVE-2017-7041It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 9.50%20 July 2017
CVE-2017-7040It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 6.31%20 July 2017
CVE-2017-7039It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 6.31%20 July 2017
CVE-2017-7037It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 7.52%20 July 2017
CVE-2017-7018It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 7.04%20 July 2017
CVE-2017-9822DotNetNuke (DNN) Remote Code Execution VulnerabilityKEVEXPLOITHIGH 8.8EPSS 94.8%20 July 2017
CVE-2017-6316Citrix Multiple Products Remote Code Execution VulnerabilityKEVEXPLOIT ×2CRITICAL 9.8EPSS 73.0%20 July 2017
CVE-2017-11471IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatIfGadget/getmetrics.php via the element parameter.EXPLOITCRITICAL 9.8EPSS 1.47%20 July 2017
CVE-2017-11470IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatifGadget/getxenmetrics.php via the element parameter.EXPLOITCRITICAL 9.8EPSS 1.47%20 July 2017
CVE-2017-11469get2post.php in IDERA Uptime Monitor 7.8 has directory traversal in the file_name parameter.EXPLOITHIGH 7.5EPSS 4.93%20 July 2017
CVE-2017-11467OrientDB through 2.2.22 does not enforce privilege requirements during "where" or "fetchplan" or "order by" use, which allows remote attackers to execute arbitrary OS commands via a crafted request.EXPLOITCRITICAL 9.8EPSS 73.1%20 July 2017
CVE-2017-11456Geneko GWR routers allow directory traversal sequences starting with a /../ substring, as demonstrated by unauthenticated read access to the configuration file.EXPLOITHIGH 7.5EPSS 8.81%19 July 2017
CVE-2017-11435The Humax Wi-Fi Router model HG100R-* 2.0.6 is prone to an authentication bypass vulnerability via specially crafted requests to the management console.EXPLOITCRITICAL 9.8EPSS 10.1%19 July 2017
CVE-2017-6320A remote command injection vulnerability exists in the Barracuda Load Balancer product line (confirmed on v5.4.0.004 (2015-11-26) and v6.0.1.006 (2016-08-19); fixed in 6.1.0.003 (2017-01-17)) in which an authenticated user can execute arbitrary shell…EXPLOITHIGH 8.8EPSS 11.1%18 July 2017
CVE-2017-9813In Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 (version 8.0.4.312), the scriptName parameter of the licenseKeyInfo action method is vulnerable to cross-site scripting (XSS).EXPLOITMEDIUM 6.1EPSS 2.62%17 July 2017
CVE-2017-9812The reportId parameter of the getReportStatus action method can be abused in the web interface in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 (version 8.0.4.312) to read arbitrary files with kluser privileges.EXPLOITHIGH 7.5EPSS 11.3%17 July 2017
CVE-2017-9811The kluser is able to interact with the kav4fs-control binary in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 (version 8.0.4.312).EXPLOITCRITICAL 9.8EPSS 10.5%17 July 2017
CVE-2017-9810There are no Anti-CSRF tokens in any forms on the web interface in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 (version 8.0.4.312).EXPLOITHIGH 8.8EPSS 1.93%17 July 2017
CVE-2017-6736Cisco IOS and IOS XE Software SNMP Remote Code Execution VulnerabilityKEVEXPLOITHIGH 8.8EPSS 70.4%17 July 2017
CVE-2017-11346Zoho ManageEngine Desktop Central before build 100092 allows remote attackers to execute arbitrary code via vectors involving the upload of help desk videos.EXPLOITCRITICAL 9.8EPSS 43.3%17 July 2017
CVE-2017-1000028Oracle, GlassFish Server Open Source Edition 4.1 is vulnerable to both authenticated and unauthenticated Directory Traversal vulnerability, that can be exploited by issuing a specially crafted HTTP GET request.EXPLOIT ×3HIGH 7.5EPSS 99.5%17 July 2017
CVE-2017-11165dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI.EXPLOITCRITICAL 9.8EPSS 64.1%12 July 2017
CVE-2017-11176During a user-space close of a Netlink socket, it allows attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact.EXPLOITHIGH 7.8EPSS 3.60%11 July 2017
CVE-2017-8618Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 Internet Explorer in the way affected Microsoft…EXPLOITHIGH 7.5EPSS 58.1%11 July 2017
CVE-2017-8601Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allow an attacker to execute arbitrary code in the context of the current user when the JavaScript engine fails to render when handling objects in memory in…EXPLOITHIGH 7.5EPSS 66.9%11 July 2017

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.