Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
395,674 CVEs1,716 in CISA KEV17,392 with EPSS ≥ 10%25,049 with a public exploitUpdated 21 September 2026
17,392 results · page 248 of 348
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2012-0011 | Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "HTML Layout Remote Code Execution Vulnerability." | HIGH 9.3EPSS 27.4% | 14 February 2012 |
| CVE-2012-0010 | Microsoft Internet Explorer 6 through 9 does not properly perform copy-and-paste operations, which allows user-assisted remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Copy and Paste Information… | MEDIUM 4.3EPSS 14.1% | 14 February 2012 |
| CVE-2012-0840 | tables/apr_hash.c in the Apache Portable Runtime (APR) library through 1.4.5 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU… | EXPLOIT ✓MEDIUM 5.0EPSS 43.3% | 10 February 2012 |
| CVE-2012-1033 | The resolver in ISC BIND 9 through 9.8.1-P1 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names… | MEDIUM 5.0EPSS 13.5% | 8 February 2012 |
| CVE-2012-1008 | OfficeSIP Server 3.1 allows remote attackers to cause a denial of service (daemon crash) via a crafted To header in a SIP INVITE message. | EXPLOIT ✓MEDIUM 5.0EPSS 11.8% | 8 February 2012 |
| CVE-2012-0991 | Multiple directory traversal vulnerabilities in OpenEMR 4.1.0 allow remote authenticated users to read arbitrary files via a .. | EXPLOIT ×3 ✓LOW 3.5EPSS 11.3% | 7 February 2012 |
| CVE-2012-1007 | Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 1.3.10 allow remote attackers to inject arbitrary web script or HTML via (1) the name parameter to struts-examples/upload/upload-submit.do, or the message parameter to (2)… | EXPLOITMEDIUM 4.3EPSS 33.9% | 7 February 2012 |
| CVE-2012-1006 | Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 2.0.14 and 2.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) lastName parameter to struts2-showcase/person/editPerson.action, or the (3)… | EXPLOITMEDIUM 4.3EPSS 58.5% | 7 February 2012 |
| CVE-2012-0830 | The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code via a request containing a large number of variables, related to improper handling of array variables. | EXPLOIT ✓HIGH 7.5EPSS 30.1% | 6 February 2012 |
| CVE-2011-4041 | webvrpcs.exe in Advantech/BroadWin WebAccess allows remote attackers to execute arbitrary code or obtain a security-code value via a long string in an RPC request to TCP port 4592. | EXPLOIT ✓HIGH 10.0EPSS 17.9% | 6 February 2012 |
| CVE-2011-4879 | miniweb.exe in the HMI web server in Siemens WinCC flexible 2004, 2005, 2007, and 2008 before SP3; WinCC V11 (aka TIA portal) before SP2 Update 1; the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panels; WinCC V11 Runtime Advanced; and… | EXPLOIT ✓HIGH 8.5EPSS 12.1% | 3 February 2012 |
| CVE-2011-4878 | Directory traversal vulnerability in miniweb.exe in the HMI web server in Siemens WinCC flexible 2004, 2005, 2007, and 2008 before SP3; WinCC V11 (aka TIA portal) before SP2 Update 1; the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panels;… | EXPLOIT ✓HIGH 7.8EPSS 11.1% | 3 February 2012 |
| CVE-2011-4875 | Stack-based buffer overflow in HmiLoad in the runtime loader in Siemens WinCC flexible 2004, 2005, 2007, and 2008; WinCC V11 (aka TIA portal); the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panels; WinCC V11 Runtime Advanced; and WinCC… | EXPLOIT ✓HIGH 9.3EPSS 13.8% | 3 February 2012 |
| CVE-2010-4562 | Microsoft Windows 2008, 7, Vista, 2003, 2000, and XP, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo Reply is sent, as… | MEDIUM 4.3EPSS 14.4% | 2 February 2012 |
| CVE-2011-3659 | Use-after-free vulnerability in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 might allow remote attackers to execute arbitrary code via vectors related to incorrect… | EXPLOIT ✓HIGH 9.3EPSS 36.8% | 1 February 2012 |
| CVE-2011-3833 | Unrestricted file upload vulnerability in ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in an… | EXPLOIT ✓MEDIUM 6.0EPSS 19.1% | 29 January 2012 |
| CVE-2011-3829 | ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message. | EXPLOIT ✓MEDIUM 4.0EPSS 17.3% | 29 January 2012 |
| CVE-2012-0053 | protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header information during construction of Bad Request (aka 400) error documents, which allows remote attackers to obtain the values of HTTPOnly cookies via vectors… | EXPLOIT ✓MEDIUM 4.3EPSS 82.2% | 28 January 2012 |
| CVE-2012-0021 | The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server 2.2.17 through 2.2.21, when a threaded MPM is used, does not properly handle a %{}C format string, which allows remote attackers to cause a denial of… | LOW 2.6EPSS 29.8% | 28 January 2012 |
| CVE-2012-0056 | The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper. | EXPLOIT ×2 ✓MEDIUM 6.9EPSS 10.8% | 27 January 2012 |
| CVE-2011-3874 | Stack-based buffer overflow in libsysutils in Android 2.2.x through 2.2.2 and 2.3.x through 2.3.6 allows user-assisted remote attackers to execute arbitrary code via an application that calls the FrameworkListener::dispatchCommand method with the wrong… | HIGH 9.3EPSS 10.6% | 27 January 2012 |
| CVE-2011-3478 | The host-services component in Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), does not properly filter login and authentication data, which allows remote attackers to execute… | EXPLOIT ×2 ✓HIGH 10.0EPSS 39.5% | 25 January 2012 |
| CVE-2012-0897 | Stack-based buffer overflow in the JPEG2000 plugin in IrfanView PlugIns before 4.33 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment. | EXPLOIT ✓MEDIUM 6.8EPSS 52.2% | 20 January 2012 |
| CVE-2012-0896 | Absolute path traversal vulnerability in download.php in the Count Per Day module before 3.1.1 for WordPress allows remote attackers to read arbitrary files via the f parameter. | EXPLOIT ✓MEDIUM 5.0EPSS 22.7% | 20 January 2012 |
| CVE-2012-0050 | OpenSSL 0.9.8s and 1.0.0f does not properly support DTLS applications, which allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an out-of-bounds read. | MEDIUM 5.0EPSS 13.7% | 19 January 2012 |
| CVE-2011-4135 | Multiple directory traversal vulnerabilities in lmgrd in Flexera FlexNet Publisher 11.10 (aka FlexNet License Server Manager) allow remote attackers to execute arbitrary code via vectors related to save, rename, and load operations on log files. | HIGH 10.0EPSS 30.2% | 19 January 2012 |
| CVE-2012-0022 | Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consumption) via a request that contains many parameters… | MEDIUM 5.0EPSS 10.5% | 19 January 2012 |
| CVE-2012-0781 | The tidy_diagnose function in PHP 5.3.8 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted input to an application that attempts to perform Tidy::diagnose operations on invalid objects,… | EXPLOITMEDIUM 5.0EPSS 10.4% | 18 January 2012 |
| CVE-2011-4153 | PHP 5.3.8 does not always check the return value of the zend_strndup function, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted input to an application that performs strndup… | EXPLOITMEDIUM 5.0EPSS 11.8% | 18 January 2012 |
| CVE-2010-5082 | Untrusted search path vulnerability in colorcpl.exe 6.0.6000.16386 in the Color Control Panel in Microsoft Windows Server 2008 SP2, R2, and R2 SP1 allows local users to gain privileges via a Trojan horse sti.dll file in the current working directory, as… | HIGH 9.3EPSS 14.9% | 17 January 2012 |
| CVE-2012-0267 | The StopModule method in the NTR ActiveX control before 2.0.4.8 allows remote attackers to execute arbitrary code via a crafted lModule parameter that triggers use of an arbitrary memory address as a function pointer. | EXPLOIT ✓HIGH 9.3EPSS 38.5% | 15 January 2012 |
| CVE-2012-0266 | Multiple stack-based buffer overflows in the NTR ActiveX control before 2.0.4.8 allow remote attackers to execute arbitrary code via (1) a long bstrUrl parameter to the StartModule method, (2) a long bstrParams parameter to the Check method, a long… | EXPLOIT ✓HIGH 9.3EPSS 42.3% | 15 January 2012 |
| CVE-2011-3597 | Eval injection vulnerability in the Digest module before 1.17 for Perl allows context-dependent attackers to execute arbitrary commands via the new constructor. | EXPLOIT ✓HIGH 7.5EPSS 13.1% | 13 January 2012 |
| CVE-2011-4789 | Stack-based buffer overflow in magentservice.exe in the server in HP LoadRunner 11.00 before patch 4 allows remote attackers to execute arbitrary code via a crafted size value in a packet. | EXPLOIT ✓HIGH 10.0EPSS 64.4% | 13 January 2012 |
| CVE-2011-4786 | A certain ActiveX control in HPTicketMgr.dll in HP Easy Printer Care Software 2.5 and earlier allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via unspecified vectors, a different vulnerability… | EXPLOIT ✓HIGH 9.3EPSS 39.2% | 12 January 2012 |
| CVE-2012-0013 | Incomplete blacklist vulnerability in the Windows Packager configuration in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote attackers to… | EXPLOIT ×2 ✓HIGH 9.3EPSS 73.9% | 10 January 2012 |
| CVE-2012-0009 | Untrusted search path vulnerability in the Windows Object Packager configuration in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a Trojan horse executable file in the current working directory, as… | HIGH 9.3EPSS 17.5% | 10 January 2012 |
| CVE-2012-0007 | The Microsoft Anti-Cross Site Scripting (AntiXSS) Library 3.x and 4.0 does not properly evaluate characters after the detection of a Cascading Style Sheets (CSS) escaped character, which allows remote attackers to conduct cross-site scripting (XSS)… | EXPLOIT ✓MEDIUM 4.3EPSS 18.6% | 10 January 2012 |
| CVE-2012-0004 | Unspecified vulnerability in DirectShow in DirectX in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote attackers to execute arbitrary code via… | HIGH 9.3EPSS 22.3% | 10 January 2012 |
| CVE-2012-0003 | Unspecified vulnerability in winmm.dll in Windows Multimedia Library in Windows Media Player (WMP) in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows remote attackers to execute arbitrary code via a crafted MIDI… | EXPLOIT ✓HIGH 8.1EPSS 69.6% | 10 January 2012 |
| CVE-2011-4373 | Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-4370 and… | CRITICAL 9.8EPSS 30.3% | 10 January 2012 |
| CVE-2011-4372 | Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-4370 and… | CRITICAL 9.8EPSS 12.6% | 10 January 2012 |
| CVE-2011-5057 | Apache Struts 2.3.1.2 and earlier, 2.3.19-2.3.23, provides interfaces that do not properly restrict access to collections such as the session and request collections, which might allow remote attackers to modify run-time data values via a crafted… | EXPLOIT ✓MEDIUM 5.0EPSS 27.2% | 8 January 2012 |
| CVE-2012-0394 | The DebuggingInterceptor component in Apache Struts before 2.3.1.1, when developer mode is used, allows remote attackers to execute arbitrary commands via unspecified vectors. | EXPLOIT ×2 ✓MEDIUM 6.8EPSS 72.9% | 8 January 2012 |
| CVE-2012-0393 | The ParameterInterceptor component in Apache Struts before 2.3.1.1 does not prevent access to public constructors, which allows remote attackers to create or overwrite arbitrary files via a crafted parameter that triggers the creation of a Java object. | EXPLOIT ✓MEDIUM 6.4EPSS 36.3% | 8 January 2012 |
| CVE-2012-0392 | The CookieInterceptor component in Apache Struts before 2.3.1.1 does not use the parameter-name whitelist, which allows remote attackers to execute arbitrary commands via a crafted HTTP Cookie header that triggers Java code execution through a static… | EXPLOIT ✓MEDIUM 6.8EPSS 97.5% | 8 January 2012 |
| CVE-2012-0391 | Apache Struts 2 Improper Input Validation Vulnerability | KEVEXPLOIT ×2 ✓CRITICAL 9.8EPSS 75.6% | 8 January 2012 |
| CVE-2011-4619 | The Server Gated Cryptography (SGC) implementation in OpenSSL before 0.9.8s and 1.x before 1.0.0f does not properly handle handshake restarts, which allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors. | MEDIUM 5.0EPSS 17.8% | 6 January 2012 |
| CVE-2011-4576 | The SSL 3.0 implementation in OpenSSL before 0.9.8s and 1.x before 1.0.0f does not properly initialize data structures for block cipher padding, which might allow remote attackers to obtain sensitive information by decrypting the padding data sent by an… | MEDIUM 5.0EPSS 15.6% | 6 January 2012 |
| CVE-2011-4109 | Double free vulnerability in OpenSSL 0.9.8 before 0.9.8s, when X509_V_FLAG_POLICY_CHECK is enabled, allows remote attackers to have an unspecified impact by triggering failure of a policy check. | HIGH 9.3EPSS 16.9% | 6 January 2012 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.