SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,947 CVEs1,717 in CISA KEV17,392 with EPSS ≥ 10%25,049 with a public exploitUpdated 21 September 2026

25,049 results · page 88 of 501

CVESummaryPriorityPublished
CVE-2017-9516Craft CMS before 2.6.2982 allows for a potential XSS attack vector by uploading a malicious SVG file.EXPLOITMEDIUM 5.4EPSS 2.80%8 June 2017
CVE-2017-4901The drag-and-drop (DnD) function in VMware Workstation 12.x before version 12.5.4 and Fusion 8.x before version 8.5.5 has an out-of-bounds memory access vulnerability.EXPLOITCRITICAL 9.9EPSS 19.9%8 June 2017
CVE-2017-7180Net Monitor for Employees Pro through 5.3.4 has an unquoted service path, which allows a Security Feature Bypass of its documented "Block applications" design goal.EXPLOITHIGH 7.3EPSS 1.05%8 June 2017
CVE-2015-7346SQL injection vulnerability in ZCMS 1.1.EXPLOITCRITICAL 9.8EPSS 3.70%7 June 2017
CVE-2017-9355XML external entity (XXE) vulnerability in the import playlist feature in Subsonic 6.1.1 might allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted XSPF playlist file.EXPLOITHIGH 7.4EPSS 26.9%7 June 2017
CVE-2017-4905This issue may lead to an information leak.EXPLOITMEDIUM 5.5EPSS 1.20%7 June 2017
CVE-2017-4914VMware vSphere Data Protection (VDP) 6.1.x, 6.0.x, 5.8.x, and 5.5.x contains a deserialization issue.EXPLOITCRITICAL 9.8EPSS 8.83%7 June 2017
CVE-2017-7314An issue was discovered in Personify360 e-Business 7.5.2 through 7.6.1.EXPLOITHIGH 7.5EPSS 3.33%7 June 2017
CVE-2017-7312An issue was discovered in Personify360 e-Business 7.5.2 through 7.6.1.EXPLOITCRITICAL 9.8EPSS 2.97%7 June 2017
CVE-2016-9834An XSS vulnerability allows remote attackers to execute arbitrary client side script on vulnerable installations of Sophos Cyberoam firewall devices with firmware through 10.6.4.EXPLOITMEDIUM 6.1EPSS 1.99%7 June 2017
CVE-2017-8841Arbitrary file deletion exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093.EXPLOITHIGH 8.1EPSS 3.71%5 June 2017
CVE-2017-8840Debug information disclosure exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093.EXPLOITMEDIUM 5.3EPSS 3.57%5 June 2017
CVE-2017-8839XSS via orig_url exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093.EXPLOITMEDIUM 6.1EPSS 1.76%5 June 2017
CVE-2017-8838XSS via syncid exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093.EXPLOITMEDIUM 6.1EPSS 1.79%5 June 2017
CVE-2017-8837In case one of these devices is compromised, the attacker can gain access to passwords and abuse them to compromise further systems.EXPLOITCRITICAL 9.8EPSS 4.94%5 June 2017
CVE-2017-8836CSRF exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093.EXPLOITHIGH 8.8EPSS 1.87%5 June 2017
CVE-2017-8835SQL injection exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093.EXPLOITCRITICAL 9.8EPSS 61.6%5 June 2017
CVE-2017-1000367Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting in information disclosure and command execution.EXPLOITMEDIUM 6.4EPSS 7.95%5 June 2017
CVE-2017-9430Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a command line with a long name argument that is mishandled in a strcpy call for argv[0].EXPLOIT ×2CRITICAL 9.8EPSS 11.3%5 June 2017
CVE-2017-9417Broadcom BCM43xx Wi-Fi chips allow remote attackers to execute arbitrary code via unspecified vectors, aka the "Broadpwn" issue.EXPLOITCRITICAL 9.8EPSS 64.0%4 June 2017
CVE-2017-9380OpenEMR 5.0.0 and prior allows low-privilege users to upload files of dangerous types which can result in arbitrary code execution within the context of the vulnerable application.EXPLOITHIGH 8.8EPSS 15.2%2 June 2017
CVE-2017-9353In Wireshark 2.2.0 to 2.2.6, the IPv6 dissector could crash.EXPLOITHIGH 7.5EPSS 14.0%2 June 2017
CVE-2017-9347In Wireshark 2.2.0 to 2.2.6, the ROS dissector could crash with a NULL pointer dereference.EXPLOITHIGH 7.5EPSS 14.2%2 June 2017
CVE-2015-0936Ceragon FibeAir IP-10 have a default SSH public key in the authorized_keys file for the mateidu user, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key.EXPLOITCRITICAL 9.8EPSS 78.1%1 June 2017
CVE-2017-7494Samba Remote Code Execution VulnerabilityKEVEXPLOIT ×2CRITICAL 9.8EPSS 99.4%30 May 2017
CVE-2017-9232Juju before 1.25.12, 2.0.x before 2.0.4, and 2.1.x before 2.1.3 uses a UNIX domain socket without setting appropriate permissions, allowing privilege escalation by users on the system to root.EXPLOITCRITICAL 9.8EPSS 48.5%28 May 2017
CVE-2017-8541The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and…EXPLOITHIGH 7.8EPSS 48.1%26 May 2017
CVE-2017-8540Microsoft Malware Protection Engine Improper Restriction of Operations VulnerabilityKEVEXPLOITHIGH 7.8EPSS 71.9%26 May 2017
CVE-2017-8538The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and…EXPLOITHIGH 7.8EPSS 50.0%26 May 2017
CVE-2017-8537The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and…EXPLOITMEDIUM 5.5EPSS 16.8%26 May 2017
CVE-2017-8536The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and…EXPLOITMEDIUM 5.5EPSS 16.8%26 May 2017
CVE-2017-8535The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and…EXPLOITMEDIUM 5.5EPSS 16.8%26 May 2017
CVE-2016-6256SAP Business One for Android 1.2.3 allows remote attackers to conduct XML External Entity (XXE) attacks via crafted XML data in a request to…EXPLOITCRITICAL 9.6EPSS 7.88%26 May 2017
CVE-2017-2800A specially crafted x509 certificate can cause a single out of bounds byte overwrite in wolfSSL through 3.10.2 resulting in potential certificate validation vulnerabilities, denial of service and possible remote code execution.EXPLOITCRITICAL 9.8EPSS 8.53%24 May 2017
CVE-2017-8311Potential heap based buffer overflow in ParseJSS in VideoLAN VLC before 2.2.5 due to skipping NULL terminator in an input string allows attackers to execute arbitrary code via a crafted subtitles file.EXPLOITHIGH 7.8EPSS 8.84%23 May 2017
CVE-2016-10073The from method in library/core/class.email.php in Vanilla Forums before 2.3.1 allows remote attackers to spoof the email domain in sent messages and potentially obtain sensitive information via a crafted HTTP Host header, as demonstrated by a password…EXPLOITHIGH 7.5EPSS 83.6%23 May 2017
CVE-2015-5468Directory traversal vulnerability in the WP e-Commerce Shop Styling plugin before 2.6 for WordPress allows remote attackers to read arbitrary files via a ..EXPLOITHIGH 7.5EPSS 24.1%23 May 2017
CVE-2015-4455Unrestricted file upload vulnerability in includes/upload.php in the Aviary Image Editor Add-on For Gravity Forms plugin 3.0 beta for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then…EXPLOITCRITICAL 9.8EPSS 40.6%23 May 2017
CVE-2017-9150The do_check function in kernel/bpf/verifier.c in the Linux kernel before 4.11.1 does not make the allow_ptr_leaks value available for restricting the output of the print_bpf_insn function, which allows local users to obtain sensitive address…EXPLOITMEDIUM 5.5EPSS 1.26%22 May 2017
CVE-2017-1092IBM Informix Open Admin Tool 11.5, 11.7, and 12.1 could allow an unauthorized user to execute arbitrary code as system admin on Windows servers.EXPLOIT ×2CRITICAL 9.8EPSS 75.8%22 May 2017
CVE-2017-9147LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash) via a crafted TIFF file.EXPLOITMEDIUM 6.5EPSS 7.00%22 May 2017
CVE-2017-4916VMware Workstation Pro/Player contains a NULL pointer dereference vulnerability that exists in the vstor2 driver.EXPLOITMEDIUM 6.5EPSS 4.95%22 May 2017
CVE-2017-4915VMware Workstation Pro/Player contains an insecure library loading vulnerability via ALSA sound driver configuration files.EXPLOIT ×2HIGH 7.8EPSS 5.41%22 May 2017
CVE-2017-6999It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 4.67%22 May 2017
CVE-2017-6998It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 4.22%22 May 2017
CVE-2017-6997It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 4.67%22 May 2017
CVE-2017-6996It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 4.22%22 May 2017
CVE-2017-6995It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 4.22%22 May 2017
CVE-2017-6994It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 4.22%22 May 2017
CVE-2017-6989It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 3.91%22 May 2017

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.