Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
395,540 CVEs1,716 in CISA KEV17,386 with EPSS ≥ 10%Updated 19 September 2026
17,386 results · page 165 of 348
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2017-11839 | Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to take control of an affected system, due to how the scripting engine handles objects in memory, aka "Scripting Engine… | HIGH 7.5EPSS 62.4% | 15 November 2017 |
| CVE-2017-11834 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an… | MEDIUM 5.3EPSS 12.7% | 15 November 2017 |
| CVE-2017-12636 | This allows an admin user in Apache CouchDB before 1.7.0 and 2.x before 2.1.1 to execute arbitrary shell commands as the CouchDB user, including downloading and executing scripts from the public internet. | HIGH 7.2EPSS 89.7% | 14 November 2017 |
| CVE-2017-12635 | In combination with CVE-2017-12636 (Remote Code Execution), this can be used to give non-admin users access to arbitrary shell commands on the server as the database system user. | CRITICAL 9.8EPSS 99.8% | 14 November 2017 |
| CVE-2016-8610 | A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processing of ALERT packets during a connection handshake. | HIGH 7.5EPSS 39.7% | 13 November 2017 |
| CVE-2017-16806 | The Process function in RemoteTaskServer/WebServer/HttpServer.cs in Ulterius before 1.9.5.0 allows HTTP server directory traversal. | HIGH 7.5EPSS 91.5% | 13 November 2017 |
| CVE-2017-16562 | The UserPro plugin before 4.9.17.1 for WordPress, when used on a site with the "admin" username, allows remote attackers to bypass authentication and obtain administrative access via a "true" value for the up_auto_log parameter in the QUERY_STRING to… | CRITICAL 9.8EPSS 27.4% | 10 November 2017 |
| CVE-2017-16249 | The Debut embedded http server contains a remotely exploitable denial of service where a single malformed HTTP POST request can cause the server to hang until eventually replying (~300 seconds) with an HTTP 500 error. | HIGH 7.5EPSS 59.4% | 10 November 2017 |
| CVE-2017-12969 | Buffer overflow in the ViewerCtrlLib.ViewerCtrl ActiveX control in Avaya IP Office Contact Center before 10.1.1 allows remote attackers to cause a denial of service (heap corruption and crash) or execute arbitrary code via a long string to the open… | HIGH 8.8EPSS 10.1% | 10 November 2017 |
| CVE-2015-7501 | Red Hat JBoss A-MQ 6.x; BPM Suite (BPMS) 6.x; BRMS 6.x and 5.x; Data Grid (JDG) 6.x; Data Virtualization (JDV) 6.x and 5.x; Enterprise Application Platform 6.x, 5.x, and 4.3.x; Fuse 6.x; Fuse Service Works (FSW) 6.x; Operations Network (JBoss ON) 3.x;… | CRITICAL 9.8EPSS 85.6% | 9 November 2017 |
| CVE-2017-16651 | Roundcube Webmail File Disclosure Vulnerability | KEVHIGH 7.8EPSS 36.7% | 9 November 2017 |
| CVE-2017-11512 | The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. | HIGH 7.5EPSS 79.6% | 8 November 2017 |
| CVE-2017-16642 | In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the… | HIGH 7.5EPSS 26.4% | 7 November 2017 |
| CVE-2017-2894 | An exploitable stack buffer overflow vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. | CRITICAL 9.8EPSS 31.0% | 7 November 2017 |
| CVE-2017-2893 | An exploitable NULL pointer dereference vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. | HIGH 7.5EPSS 24.9% | 7 November 2017 |
| CVE-2017-14016 | A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. | MEDIUM 6.3EPSS 16.0% | 6 November 2017 |
| CVE-2017-16524 | Web Viewer 1.0.0.193 on Samsung SRN-1670D devices suffers from an Unrestricted file upload vulnerability: 'network_ssl_upload.php' allows remote authenticated attackers to upload and execute arbitrary PHP code via a filename with a .php extension, which… | HIGH 8.8EPSS 30.3% | 6 November 2017 |
| CVE-2017-3736 | The amount of resources required for such an attack would be very significant and likely only accessible to a limited number of attackers. | MEDIUM 6.5EPSS 10.1% | 2 November 2017 |
| CVE-2017-12243 | A vulnerability in the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to obtain root shell privileges on… | HIGH 7.8EPSS 77.1% | 2 November 2017 |
| CVE-2017-16353 | GraphicsMagick 1.3.26 is vulnerable to a memory information disclosure vulnerability found in the DescribeImage function of the magick/describe.c file, because of a heap-based buffer over-read. | MEDIUM 6.5EPSS 13.7% | 1 November 2017 |
| CVE-2017-16352 | GraphicsMagick 1.3.26 is vulnerable to a heap-based buffer overflow vulnerability found in the "Display visual image directory" feature of the DescribeImage() function of the magick/describe.c file. | HIGH 8.8EPSS 14.5% | 1 November 2017 |
| CVE-2012-0881 | Apache Xerces2 Java Parser before 2.12.0 allows remote attackers to cause a denial of service (CPU consumption) via a crafted message to an XML service, which triggers hash table collisions. | HIGH 7.5EPSS 17.0% | 30 October 2017 |
| CVE-2017-7411 | The vulnerability exists because the User::getRecentElements() method is using the unserialize() function with a preference value that can be arbitrarily manipulated by malicious users through the REST API interface, and this can be exploited to inject… | HIGH 8.8EPSS 66.6% | 30 October 2017 |
| CVE-2015-0224 | qpidd in Apache Qpid 0.30 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted protocol sequence set. | HIGH 7.5EPSS 15.1% | 30 October 2017 |
| CVE-2012-5357 | Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data. | CRITICAL 9.8EPSS 67.8% | 30 October 2017 |
| CVE-2017-16227 | The aspath_put function in bgpd/bgp_aspath.c in Quagga before 1.2.2 allows remote attackers to cause a denial of service (session drop) via BGP UPDATE messages, because AS_PATH size calculation for long paths counts certain bytes twice and consequently… | HIGH 7.5EPSS 18.8% | 29 October 2017 |
| CVE-2017-13090 | As fd_read() takes an int argument, the high 32 bits of the chunk length are discarded, leaving fd_read() with a completely attacker controlled length argument. | HIGH 8.8EPSS 36.6% | 27 October 2017 |
| CVE-2017-13089 | As fd_read() takes an int argument, the high 32 bits of the chunk length are discarded, leaving fd_read() with a completely attacker controlled length argument. | HIGH 8.8EPSS 79.9% | 27 October 2017 |
| CVE-2016-5003 | The Apache XML-RPC (aka ws-xmlrpc) library 3.1.3, as used in Apache Archiva, allows remote attackers to execute arbitrary code via a crafted serialized Java object in an <ex:serializable> element. | CRITICAL 9.8EPSS 14.9% | 27 October 2017 |
| CVE-2017-5116 | Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. | HIGH 8.8EPSS 12.7% | 27 October 2017 |
| CVE-2017-5115 | Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. | HIGH 8.8EPSS 26.3% | 27 October 2017 |
| CVE-2017-5098 | A use after free in V8 in Google Chrome prior to 60.0.3112.78 for Mac, Windows, Linux, and Android allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. | HIGH 8.8EPSS 15.5% | 27 October 2017 |
| CVE-2017-5070 | Google Chromium V8 Type Confusion Vulnerability | KEVHIGH 8.8EPSS 31.2% | 27 October 2017 |
| CVE-2017-15908 | In systemd 223 through 235, a remote DNS server can respond with a custom crafted DNS NSEC resource record to trigger an infinite loop in the dns_packet_read_type_window() function of the 'systemd-resolved' service and cause a DoS of the affected service. | HIGH 7.5EPSS 23.6% | 26 October 2017 |
| CVE-2017-15222 | Buffer Overflow vulnerability in Ayukov NFTPD 2.0 and earlier allows remote attackers to execute arbitrary code. | CRITICAL 9.8EPSS 60.3% | 24 October 2017 |
| CVE-2014-1203 | The get_login_ip_config_file function in Eyou Mail System before 3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in the domain parameter to admin/domain/ip_login_set/d_ip_login_get.php. | CRITICAL 9.8EPSS 15.6% | 24 October 2017 |
| CVE-2017-13772 | Multiple stack-based buffer overflows in TP-Link WR940N WiFi routers with hardware version 4 allow remote authenticated users to execute arbitrary code via the (1) ping_addr parameter to PingIframeRpm.htm or (2) dnsserver2 parameter to… | HIGH 8.8EPSS 51.4% | 23 October 2017 |
| CVE-2014-3744 | Directory traversal vulnerability in the st module before 0.2.5 for Node.js allows remote attackers to read arbitrary files via a %2e%2e (encoded dot dot) in an unspecified path. | HIGH 7.5EPSS 34.0% | 23 October 2017 |
| CVE-2017-9946 | A vulnerability has been identified in Siemens APOGEE PXC and TALON TC BACnet Automation Controllers in all versions <V3.5. | HIGH 7.5EPSS 25.0% | 23 October 2017 |
| CVE-2017-15580 | An attacker can leverage this vulnerability to upload arbitrary files on the web application having malicious content. | CRITICAL 9.8EPSS 15.6% | 23 October 2017 |
| CVE-2017-7117 | It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. | HIGH 8.8EPSS 10.2% | 23 October 2017 |
| CVE-2017-11292 | Adobe Flash Player Type Confusion Vulnerability | KEVHIGH 8.8EPSS 11.9% | 22 October 2017 |
| CVE-2017-15647 | On FiberHome routers, Directory Traversal exists in /cgi-bin/webproc via the getpage parameter in conjunction with a crafted var:page value. | HIGH 7.5EPSS 26.6% | 19 October 2017 |
| CVE-2015-6668 | The Job Manager plugin before 0.7.25 allows remote attackers to read arbitrary CV files via a brute force attack to the WordPress upload directory structure, related to an insecure direct object reference. | HIGH 7.5EPSS 10.0% | 19 October 2017 |
| CVE-2017-10366 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools component of Oracle PeopleSoft Products (subcomponent: Performance Monitor). | CRITICAL 9.8EPSS 43.5% | 19 October 2017 |
| CVE-2017-10355 | Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). | MEDIUM 5.3EPSS 16.2% | 19 October 2017 |
| CVE-2017-10271 | Oracle Corporation WebLogic Server Remote Code Execution Vulnerability | KEVHIGH 7.5EPSS 100.0% | 19 October 2017 |
| CVE-2017-12285 | A vulnerability in the web interface of Cisco Network Analysis Module Software could allow an unauthenticated, remote attacker to delete arbitrary files from an affected system, aka Directory Traversal. | MEDIUM 5.3EPSS 37.2% | 19 October 2017 |
| CVE-2017-14322 | The function in charge to check whether the user is already logged in init.php in Interspire Email Marketer (IEM) prior to 6.1.6 allows remote attackers to bypass authentication and obtain administrative access by using the IEM_CookieLogin cookie with a… | CRITICAL 9.8EPSS 36.5% | 18 October 2017 |
| CVE-2014-9118 | The web administrative portal in Zhone zNID GPON 2426A before S3.0.501 allows remote attackers to execute arbitrary commands via shell metacharacters in the ipAddr parameter to zhnping.cmd. | HIGH 8.8EPSS 53.4% | 17 October 2017 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. Patch KEV entries first, then anything with an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS and the CISA KEV catalogue. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.