SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

394,136 CVEs1,713 in CISA KEV17,386 with EPSS ≥ 10%Updated 17 September 2026

17,386 results · page 100 of 348

CVESummaryPriorityPublished
CVE-2020-28976The Canto plugin 1.3.0 for WordPress contains a blind SSRF vulnerability.MEDIUM 5.3EPSS 27.8%30 November 2020
CVE-2020-13942It is possible to inject malicious OGNL or MVEL scripts into the /context.json public endpoint.CRITICAL 9.8EPSS 68.4%24 November 2020
CVE-2020-4000The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3, 3.4.x prior to 3.4.4, and 4.0.x prior to 4.0.1 allows for executing files through directory traversal.HIGH 8.8EPSS 43.0%24 November 2020
CVE-2020-3984The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3 and 3.4.x prior to 3.4.4 does not apply correct input validation which allows for SQL-injection.MEDIUM 6.5EPSS 22.4%24 November 2020
CVE-2020-4006Multiple VMware Products Command Injection VulnerabilityKEVCRITICAL 9.1EPSS 17.3%23 November 2020
CVE-2020-13671Drupal core Un-restricted Upload of FileKEVHIGH 8.8EPSS 35.4%20 November 2020
CVE-2020-28949PEAR Archive_Tar Deserialization of Untrusted Data VulnerabilityKEVHIGH 7.8EPSS 84.6%19 November 2020
CVE-2020-28948Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked.HIGH 7.8EPSS 47.5%19 November 2020
CVE-2019-20933InfluxDB before 1.7.6 has an authentication bypass vulnerability in the authenticate function in services/httpd/handler.go because a JWT token may have an empty SharedSecret (aka shared secret).CRITICAL 9.8EPSS 30.9%19 November 2020
CVE-2020-8277A Node.js application that allows an attacker to trigger a DNS request for a host of their choice could trigger a Denial of Service in versions < 15.2.1, < 14.15.1, and < 12.19.1 by getting the application to resolve a DNS record with a larger number of…HIGH 7.5EPSS 54.2%19 November 2020
CVE-2020-28581A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated…HIGH 7.2EPSS 45.0%18 November 2020
CVE-2020-28580A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated…HIGH 7.2EPSS 45.0%18 November 2020
CVE-2020-28579A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges.HIGH 8.8EPSS 50.7%18 November 2020
CVE-2020-28578A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an unauthenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges.CRITICAL 9.8EPSS 73.2%18 November 2020
CVE-2020-28688The add artwork functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files.HIGH 8.8EPSS 12.0%17 November 2020
CVE-2020-28687The edit profile functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files.HIGH 8.8EPSS 12.0%17 November 2020
CVE-2020-7774The package y18n before 3.2.2, 4.0.1 and 5.0.5, is vulnerable to Prototype Pollution.CRITICAL 9.8EPSS 69.4%17 November 2020
CVE-2020-27131Multiple vulnerabilities in the Java deserialization function that is used by Cisco Security Manager could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device.CRITICAL 9.8EPSS 87.7%17 November 2020
CVE-2020-27130A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to gain access to sensitive information.CRITICAL 9.1EPSS 65.9%17 November 2020
CVE-2020-26217XStream before version 1.4.14 is vulnerable to Remote Code Execution.The vulnerability may allow a remote attacker to run arbitrary shell commands only by manipulating the processed input stream.HIGH 8.8EPSS 85.0%16 November 2020
CVE-2020-27991Nagios XI before 5.7.5 is vulnerable to XSS in Account Information (Email field).MEDIUM 5.4EPSS 34.4%16 November 2020
CVE-2020-27990Nagios XI before 5.7.5 is vulnerable to XSS in the Deployment tool (add agent).MEDIUM 5.4EPSS 34.4%16 November 2020
CVE-2020-27989Nagios XI before 5.7.5 is vulnerable to XSS in Dashboard Tools (Edit Dashboard).MEDIUM 5.4EPSS 34.4%16 November 2020
CVE-2020-27988Nagios XI before 5.7.5 is vulnerable to XSS in Manage Users (Username field).MEDIUM 5.4EPSS 91.3%16 November 2020
CVE-2020-8271Unauthenticated remote code execution with root privileges in Citrix SD-WAN Center versions before 11.2.2, 11.1.2b and 10.2.8CRITICAL 9.8EPSS 11.1%16 November 2020
CVE-2020-25695An attacker having permission to create non-temporary objects in at least one schema can execute arbitrary SQL functions under the identity of a superuser.HIGH 8.8EPSS 46.4%16 November 2020
CVE-2020-13638lib/crud/userprocess.php in rConfig 3.9.x before 3.9.7 has an authentication bypass, leading to administrator account creation.CRITICAL 9.8EPSS 76.6%13 November 2020
CVE-2020-24719Exposed Erlang Cookie could lead to Remote Command Execution (RCE) attack.CRITICAL 9.8EPSS 23.3%12 November 2020
CVE-2020-27386An unrestricted file upload issue in FlexDotnetCMS before v1.5.9 allows an authenticated remote attacker to upload and execute arbitrary files by using the FileManager to upload malicious code (e.g., ASP code) in the form of a safe file type (e.g., a…HIGH 8.8EPSS 72.9%12 November 2020
CVE-2019-17566Apache Batik is vulnerable to server-side request forgery, caused by improper input validation by the "xlink:href" attributes.HIGH 7.5EPSS 10.9%12 November 2020
CVE-2020-27481An unauthenticated SQL Injection vulnerability in Good Layers LMS Plugin <= 2.1.4 exists due to the usage of "wp_ajax_nopriv" call in WordPress, which allows any unauthenticated user to get access to the function "gdlr_lms_cancel_booking" where POST…CRITICAL 9.8EPSS 10.0%12 November 2020
CVE-2020-13954This webpage is vulnerable to a reflected Cross-Site Scripting (XSS) attack via the styleSheetPath, which allows a malicious actor to inject javascript into the web page.MEDIUM 6.1EPSS 40.9%12 November 2020
CVE-2020-1599Windows Spoofing VulnerabilityMEDIUM 5.5EPSS 19.1%11 November 2020
CVE-2020-17083Microsoft Exchange Server Remote Code Execution VulnerabilityMEDIUM 5.5EPSS 12.0%11 November 2020
CVE-2020-17051Windows Network File System Remote Code Execution VulnerabilityCRITICAL 9.8EPSS 10.6%11 November 2020
CVE-2020-17049A security feature bypass vulnerability exists in the way Key Distribution Center (KDC) determines if a service ticket can be used for delegation via Kerberos Constrained Delegation (KCD).MEDIUM 6.6EPSS 13.7%11 November 2020
CVE-2020-17047Windows Network File System Denial of Service VulnerabilityHIGH 7.5EPSS 27.1%11 November 2020
CVE-2020-13927Apache Airflow's Experimental API Authentication BypassKEVCRITICAL 9.8EPSS 99.8%10 November 2020
CVE-2020-27019Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to an information disclosure vulnerability which could allow an attacker to access a specific database and key.MEDIUM 5.5EPSS 18.1%9 November 2020
CVE-2020-28351The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object…MEDIUM 6.1EPSS 16.0%9 November 2020
CVE-2020-28347tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter.CRITICAL 9.8EPSS 76.6%8 November 2020
CVE-2020-28328SuiteCRM before 7.11.17 is vulnerable to remote code execution via the system settings Log File Name setting.HIGH 8.8EPSS 63.3%6 November 2020
CVE-2020-27128A vulnerability in the application data endpoints of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to write arbitrary files to an affected system.MEDIUM 6.5EPSS 60.8%6 November 2020
CVE-2020-26214In Alerta before version 8.1.0, users may be able to bypass LDAP authentication if they provide an empty password when Alerta server is configure to use LDAP as the authorization provider.CRITICAL 9.8EPSS 65.9%6 November 2020
CVE-2020-25592In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens.CRITICAL 9.8EPSS 57.7%6 November 2020
CVE-2020-16846SaltStack Salt Shell Injection VulnerabilityKEVCRITICAL 9.8EPSS 99.6%6 November 2020
CVE-2020-24437Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution…HIGH 7.8EPSS 46.5%5 November 2020
CVE-2020-24436Acrobat Pro DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by an out-of-bounds write vulnerability that could result in writing past the end of an allocated memory structure.HIGH 7.8EPSS 17.0%5 November 2020
CVE-2020-24435Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a heap-based buffer overflow vulnerability in the submitForm function, potentially resulting in arbitrary code…HIGH 7.8EPSS 52.7%5 November 2020
CVE-2020-24433Adobe Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a local privilege escalation vulnerability that could enable a user without administrator privileges to delete…HIGH 7.8EPSS 15.9%5 November 2020

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. Patch KEV entries first, then anything with an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS and the CISA KEV catalogue. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.