Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,015 CVEs1,717 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026
17,157 results · page 317 of 344
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2005-0511 | misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter. | EXPLOIT ×2 ✓HIGH 7.5EPSS 35.8% | 21 February 2005 |
| CVE-2005-0452 | Multiple cross-site scripting (XSS) vulnerabilities in Microsoft ASP.NET (.Net) 1.0 and 1.1 to SP1 allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal… | EXPLOIT ✓MEDIUM 4.3EPSS 23.4% | 16 February 2005 |
| CVE-2004-0978 | Heap-based buffer overflow in the Hrtbeat.ocx (Heartbeat) ActiveX control for Internet Explorer 5.01 through 6, when users who visit online gaming sites that are associated with MSN, allows remote attackers to execute arbitrary code via the SetupData… | HIGH 10.0EPSS 38.3% | 9 February 2005 |
| CVE-2004-0964 | Buffer overflow in Zinf 2.2.1 on Windows, and other older versions for Linux, allows remote attackers or local users to execute arbitrary code via certain values in a .pls file. | EXPLOIT ×6 ✓HIGH 10.0EPSS 62.7% | 9 February 2005 |
| CVE-2004-0963 | Buffer overflow in Microsoft Word 2002 (10.6612.6714) SP3, and possibly other versions, allows remote attackers to cause a denial of service (application exception) and possibly execute arbitrary code in winword.exe via certain unexpected values in a… | HIGH 10.0EPSS 32.4% | 9 February 2005 |
| CVE-2004-0942 | Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request with a MIME header containing multiple lines with a large number of space characters. | EXPLOIT ✓MEDIUM 5.0EPSS 55.1% | 9 February 2005 |
| CVE-2004-0941 | Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of… | HIGH 10.0EPSS 10.7% | 9 February 2005 |
| CVE-2004-0937 | Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the… | EXPLOIT ✓HIGH 7.5EPSS 14.8% | 9 February 2005 |
| CVE-2005-0249 | Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header. | HIGH 7.5EPSS 18.8% | 8 February 2005 |
| CVE-2005-0233 | The International Domain Name (IDN) support in Firefox 1.0, Camino .8.5, and Mozilla before 1.7.6 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses… | HIGH 7.5EPSS 20.4% | 8 February 2005 |
| CVE-2004-0848 | Buffer overflow in Microsoft Office XP allows remote attackers to execute arbitrary code via a link with a URL file location containing long inputs after (1) "%00 (null byte) in .doc filenames or (2) "%0a" (carriage return) in .rtf filenames. | HIGH 7.5EPSS 27.5% | 8 February 2005 |
| CVE-2005-0175 | Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache via an HTTP response splitting attack. | MEDIUM 5.0EPSS 40.7% | 7 February 2005 |
| CVE-2005-0174 | Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache or conduct certain attacks via headers that do not follow the HTTP specification, including (1) multiple Content-Length headers, (2) carriage return (CR) characters that are not… | MEDIUM 5.0EPSS 50.5% | 7 February 2005 |
| CVE-2005-0245 | Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute arbitrary code via a large number of arguments to a refcursor function (gram.y), which leads to a heap-based buffer overflow, a different vulnerability than… | EXPLOIT ✓HIGH 7.5EPSS 14.5% | 1 February 2005 |
| CVE-2005-0101 | Buffer overflow in the socket_getline function in Newspost 2.1.1 and earlier allows remote malicious NNTP servers to execute arbitrary code via a long string without a newline character. | EXPLOIT ×2 ✓HIGH 7.5EPSS 16.2% | 1 February 2005 |
| CVE-2004-0936 | RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. | EXPLOIT ✓HIGH 7.5EPSS 14.8% | 27 January 2005 |
| CVE-2004-0935 | Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target… | EXPLOIT ✓HIGH 7.5EPSS 15.3% | 27 January 2005 |
| CVE-2004-0934 | Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. | EXPLOIT ✓HIGH 7.5EPSS 14.8% | 27 January 2005 |
| CVE-2004-0933 | Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-Antivirus 6.1 through 6.3 allow… | EXPLOIT ✓HIGH 7.5EPSS 20.7% | 27 January 2005 |
| CVE-2004-0932 | McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which… | EXPLOIT ✓HIGH 7.5EPSS 65.8% | 27 January 2005 |
| CVE-2004-0918 | The asn_parse_header function (asn1.c) in the SNMP module for Squid Web Proxy Cache before 2.4.STABLE7 allows remote attackers to cause a denial of service (server restart) via certain SNMP packets with negative length fields that trigger a memory… | MEDIUM 5.0EPSS 16.0% | 27 January 2005 |
| CVE-2004-0902 | Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via (1) the "Send… | HIGH 10.0EPSS 10.1% | 27 January 2005 |
| CVE-2004-0892 | Microsoft Proxy Server 2.0 and Microsoft ISA Server 2000 (which is included in Small Business Server 2000 and Small Business Server 2003 Premium Edition) allows remote attackers to spoof trusted Internet content on a specially crafted webpage via… | HIGH 7.5EPSS 17.4% | 27 January 2005 |
| CVE-2004-0882 | Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via a TRANSACT2_QFILEPATHINFO request with a small "maximum data bytes" value. | HIGH 10.0EPSS 13.7% | 27 January 2005 |
| CVE-2005-0308 | Buffer overflow in the wsprintf function in W32Dasm 8.93 and earlier allows remote attackers to execute arbitrary code via a large import or export function name. | EXPLOIT ✓HIGH 7.5EPSS 68.9% | 24 January 2005 |
| CVE-2005-0566 | Buffer overflow in Golden FTP Server Pro (goldenftpd) 2.x allows remote attackers to execute arbitrary code via a long RNTO command. | EXPLOIT ✓HIGH 7.5EPSS 15.7% | 22 January 2005 |
| CVE-2005-0116 | AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl. | EXPLOIT ×4 ✓HIGH 7.5EPSS 74.9% | 18 January 2005 |
| CVE-2005-0095 | The WCCP message parsing code in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via malformed WCCP messages with source addresses that are spoofed to reference Squid's home router and invalid WCCP_I_SEE_YOU… | MEDIUM 5.0EPSS 68.8% | 15 January 2005 |
| CVE-2005-0097 | The NTLM component in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via a malformed NTLM type 3 message that triggers a NULL dereference. | MEDIUM 5.0EPSS 10.6% | 11 January 2005 |
| CVE-2004-0897 | The Indexing Service for Microsoft Windows XP and Server 2003 does not properly validate the length of a message, which allows remote attackers to execute arbitrary code via a buffer overflow attack. | HIGH 10.0EPSS 42.8% | 11 January 2005 |
| CVE-2004-1308 | Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via a TIFF file containing a TIFF_ASCII or TIFF_UNDEFINED directory entry with a -1 entry count, which leads to a… | HIGH 10.0EPSS 15.0% | 10 January 2005 |
| CVE-2004-1304 | Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF file. | EXPLOIT ✓HIGH 10.0EPSS 11.4% | 10 January 2005 |
| CVE-2004-1299 | Buffer overflow in the get_attr function in html.c for vilistextum 2.6.6 allows remote attackers to execute arbitrary code via a crafted web page. | EXPLOIT ✓HIGH 10.0EPSS 12.3% | 10 January 2005 |
| CVE-2004-1293 | Buffer overflow in the ReadFontTbl function in reader.c for rtf2latex2e 1.0fc2 allows remote attackers to execute arbitrary code via a crafted RTF file. | EXPLOIT ✓HIGH 10.0EPSS 13.7% | 10 January 2005 |
| CVE-2004-1292 | Buffer overflow in the parse_emelody function in parse_emelody.c for ringtonetools 2.22 allows remote attackers to execute arbitrary code via a crafted eMelody file. | EXPLOIT ✓HIGH 10.0EPSS 16.2% | 10 January 2005 |
| CVE-2004-1289 | Multiple buffer overflows in (1) the getline function in pcalutil.c and (2) the get_holiday function in readfile.c for pcal 4.7.1 allow remote attackers to execute arbitrary code via a crafted calendar file. | EXPLOIT ×2 ✓HIGH 10.0EPSS 14.7% | 10 January 2005 |
| CVE-2004-1288 | Buffer overflow in the parse_html function in o3read.c for o3read 0.0.3 allows remote attackers to execute arbitrary code via a crafted SXW file. | EXPLOIT ✓HIGH 10.0EPSS 10.4% | 10 January 2005 |
| CVE-2004-1287 | Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to execute arbitrary code via a crafted asm file, a different vulnerability than CVE-2005-1194. | EXPLOIT ✓HIGH 10.0EPSS 17.9% | 10 January 2005 |
| CVE-2004-1286 | Buffer overflow in the auto_filter_extern function in auto.c for NapShare 1.2, with the extern filter enabled, allows remote attackers to execute arbitrary code via a crafted gnutella response. | EXPLOIT ×2 ✓HIGH 10.0EPSS 12.4% | 10 January 2005 |
| CVE-2004-1284 | Buffer overflow in the find_next_file function in playlist.c for mpg123 0.59r allows remote attackers to execute arbitrary code via a crafted MP3 playlist. | EXPLOIT ✓HIGH 10.0EPSS 14.5% | 10 January 2005 |
| CVE-2004-1260 | Multiple buffer overflows in the (1) write_heading function in subs.cpp or (2) trim_title function in parse.cpp for abctab2ps 1.6.3 allow remote attackers to execute arbitrary code via crafted ABC files. | EXPLOIT ×2 ✓HIGH 10.0EPSS 11.2% | 10 January 2005 |
| CVE-2004-1256 | Multiple buffer overflows in the (1) event_text and (2) event_specific functions in abc2midi 2004.12.04 allow remote attackers to execute arbitrary code via crafted ABC files. | EXPLOIT ✓HIGH 10.0EPSS 10.4% | 10 January 2005 |
| CVE-2004-1254 | WinRAR 3.40, and possibly earlier versions, allows remote attackers to execute arbitrary code via a ZIP file containing a file with a long filename, possibly causing an integer overflow that leads to a buffer overflow. | EXPLOIT ✓HIGH 10.0EPSS 10.4% | 10 January 2005 |
| CVE-2004-1211 | Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via long arguments to the (1) EXAMINE, (2) SUBSCRIBE, (3) STATUS, (4)… | EXPLOIT ×7 ✓HIGH 10.0EPSS 72.5% | 10 January 2005 |
| CVE-2004-1192 | Format string vulnerability in the lprintf function in Citadel/UX 6.27 and earlier allows remote attackers to execute arbitrary code via format string specifiers sent to the server. | EXPLOIT ✓HIGH 10.0EPSS 11.7% | 10 January 2005 |
| CVE-2004-1172 | Stack-based buffer overflow in the Agent Browser in Veritas Backup Exec 8.x before 8.60.3878 Hotfix 68, and 9.x before 9.1.4691 Hotfix 40, allows remote attackers to execute arbitrary code via a registration request with a long hostname. | EXPLOIT ×2 ✓HIGH 10.0EPSS 81.8% | 10 January 2005 |
| CVE-2004-1170 | a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename. | EXPLOIT ✓HIGH 10.0EPSS 16.0% | 10 January 2005 |
| CVE-2004-1154 | Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of security… | HIGH 10.0EPSS 13.2% | 10 January 2005 |
| CVE-2004-1147 | phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters. | EXPLOIT ✓HIGH 10.0EPSS 11.6% | 10 January 2005 |
| CVE-2004-1137 | Multiple vulnerabilities in the IGMP functionality for Linux kernel 2.4.22 to 2.4.28, and 2.6.x to 2.6.9, allow local and remote attackers to cause a denial of service or execute arbitrary code via (1) the ip_mc_source function, which decrements a… | EXPLOIT ✓HIGH 10.0EPSS 20.8% | 10 January 2005 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.