Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,035 CVEs1,717 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026
17,157 results · page 323 of 344
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2004-0173 | Directory traversal vulnerability in Apache 1.3.29 and earlier, and Apache 2.0.48 and earlier, when running on Cygwin, allows remote attackers to read arbitrary files via a URL containing "..%5C" (dot dot encoded backslash) sequences. | EXPLOIT ✓MEDIUM 5.0EPSS 15.8% | 15 April 2004 |
| CVE-2004-0122 | Microsoft MSN Messenger 6.0 and 6.1 does not properly handle certain requests, which allows remote attackers to read arbitrary files. | MEDIUM 5.0EPSS 22.5% | 15 April 2004 |
| CVE-2004-0121 | Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as arguments when calling OUTLOOK.EXE, which allows remote attackers to use script code in the Local Machine zone and… | EXPLOIT ✓HIGH 7.5EPSS 47.7% | 15 April 2004 |
| CVE-2003-0905 | Unknown vulnerability in Windows Media Station Service and Windows Media Monitor Service components of Windows Media Services 4.1 allows remote attackers to cause a denial of service (disallowing new connections) via a certain sequence of TCP/IP packets. | MEDIUM 5.0EPSS 25.8% | 15 April 2004 |
| CVE-2004-1060 | Multiple TCP/IP and ICMP implementations, when using Path MTU (PMTU) discovery (PMTUD), allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via forged ICMP ("Fragmentation Needed and Don't Fragment was… | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 74.7% | 12 April 2004 |
| CVE-2004-1986 | Directory traversal vulnerability in modules.php in Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attackers with administrative privileges to read arbitrary files via a .. | EXPLOIT ✓MEDIUM 5.0EPSS 10.6% | 4 April 2004 |
| CVE-2004-0194 | Stack-based buffer overflow in the OutputDebugString function for Adobe Acrobat Reader 5.1 allows remote attackers to execute arbitrary code via a PDF document with XML Forms Data Format (XFDF) data. | EXPLOIT ✓HIGH 7.5EPSS 10.7% | 29 March 2004 |
| CVE-2004-0113 | Memory leak in ssl_engine_io.c for mod_ssl in Apache 2 before 2.0.49 allows remote attackers to cause a denial of service (memory consumption) via plain HTTP requests to the SSL port of an SSL-enabled server. | MEDIUM 5.0EPSS 11.0% | 29 March 2004 |
| CVE-2003-0993 | mod_access in Apache 1.3 before 1.3.30, when running big-endian 64-bit platforms, does not properly parse Allow/Deny rules using IP addresses without a netmask, which could allow remote attackers to bypass intended access restrictions. | HIGH 7.5EPSS 10.8% | 29 March 2004 |
| CVE-2004-1857 | Directory traversal vulnerability in setinfo.hts in HP Web Jetadmin 7.5.2546 allows remote authenticated attackers to read arbitrary files via a .. | EXPLOIT ×2 ✓LOW 2.1EPSS 86.8% | 24 March 2004 |
| CVE-2004-1856 | devices_update_printer_fw_upload.hts in HP Web JetAdmin 7.5.2546, when no password is set, allows remote attackers to upload arbitrary files to the printer directory. | EXPLOIT ✓MEDIUM 5.0EPSS 29.5% | 24 March 2004 |
| CVE-2004-0189 | The "%xx" URL decoding function in Squid 2.5STABLE4 and earlier allows remote attackers to bypass url_regex ACLs via a URL with a NULL ("%00") character, which causes Squid to use only a portion of the requested URL when comparing it against the access… | EXPLOIT ✓HIGH 7.5EPSS 13.8% | 15 March 2004 |
| CVE-2004-0110 | Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL. | EXPLOIT ✓HIGH 7.5EPSS 24.2% | 15 March 2004 |
| CVE-2004-1770 | The login page for cPanel 9.1.0, and possibly other versions, allows remote attackers to execute arbitrary code via shell metacharacters in the user parameter. | EXPLOIT ✓HIGH 10.0EPSS 10.2% | 11 March 2004 |
| CVE-2004-1769 | The "Allow cPanel users to reset their password via email" feature in cPanel 9.1.0 build 34 and earlier, including 8.x, allows remote attackers to execute arbitrary code via the user parameter to resetpass. | EXPLOIT ✓HIGH 10.0EPSS 34.8% | 11 March 2004 |
| CVE-2004-0104 | Multiple format string vulnerabilities in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code. | EXPLOIT ✓HIGH 7.5EPSS 26.2% | 3 March 2004 |
| CVE-2004-0097 | Multiple vulnerabilities in PWLib before 1.6.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol. | HIGH 10.0EPSS 10.3% | 3 March 2004 |
| CVE-2004-0084 | Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a… | EXPLOIT ✓HIGH 10.0EPSS 24.9% | 3 March 2004 |
| CVE-2004-0083 | Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary code via a font alias file (font.alias) with a long token, a different vulnerability than CVE-2004-0084 and… | EXPLOIT ✓HIGH 10.0EPSS 21.2% | 3 March 2004 |
| CVE-2004-0005 | Multiple buffer overflows in Gaim 0.75 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) octal encoding in yahoo_decode that causes a null byte to be written beyond the buffer, (2) octal encoding in… | CRITICAL 9.8EPSS 11.2% | 3 March 2004 |
| CVE-2003-0825 | The Windows Internet Naming Service (WINS) for Microsoft Windows Server 2003, and possibly Windows NT and Server 2000, does not properly validate the length of certain packets, which allows attackers to cause a denial of service and possibly execute… | HIGH 9.3EPSS 12.2% | 3 March 2004 |
| CVE-2003-0818 | Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microsoft executables and libraries on Windows NT 4.0, 2000, and XP, allow remote attackers to execute arbitrary code via ASN.1 BER… | EXPLOIT ×3 ✓HIGH 7.5EPSS 82.2% | 3 March 2004 |
| CVE-2004-0095 | McAfee ePolicy Orchestrator agent allows remote attackers to cause a denial of service (memory consumption and crash) and possibly execute arbitrary code via an HTTP POST request with an invalid Content-Length value, possibly triggering a buffer overflow. | EXPLOIT ✓MEDIUM 5.0EPSS 37.2% | 17 February 2004 |
| CVE-2003-1030 | Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long pre-authentication request to TCP port 6129. | EXPLOIT ×4 ✓HIGH 7.5EPSS 17.3% | 17 February 2004 |
| CVE-2003-0903 | Buffer overflow in a component of Microsoft Data Access Components (MDAC) 2.5 through 2.8 allows remote attackers to execute arbitrary code via a malformed UDP response to a broadcast request. | HIGH 10.0EPSS 37.5% | 17 February 2004 |
| CVE-2003-0819 | Buffer overflow in the H.323 filter of Microsoft Internet Security and Acceleration Server 2000 allows remote attackers to execute arbitrary code in the Microsoft Firewall Service via certain H.323 traffic, as demonstrated by the NISCC/OUSPG PROTOS test… | HIGH 10.0EPSS 40.9% | 17 February 2004 |
| CVE-2004-1244 | Windows Media Player 9 allows remote attackers to execute arbitrary code via a PNG file containing large (1) width or (2) height values, aka the "PNG Processing Vulnerability." | HIGH 7.5EPSS 33.2% | 8 February 2004 |
| CVE-2004-2090 | Microsoft Internet Explorer 5.0.1 through 6.0 allows remote attackers to determine the existence of arbitrary files via the VBScript LoadPicture method, which returns an error code if the file does not exist. | EXPLOIT ✓MEDIUM 5.0EPSS 16.0% | 7 February 2004 |
| CVE-2004-2086 | Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP POST request with a long query parameter. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 75.5% | 6 February 2004 |
| CVE-2003-0823 | Internet Explorer 6 SP1 and earlier allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by calling the window.moveBy method, aka HijackClick, a different vulnerability than CVE-2003-1027. | HIGH 7.5EPSS 26.0% | 3 February 2004 |
| CVE-2003-0817 | Internet Explorer 5.01 through 6 SP1 allows remote attackers to bypass zone restrictions and read arbitrary files via an XML object. | HIGH 7.5EPSS 18.0% | 3 February 2004 |
| CVE-2003-0816 | Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions by (1) using the NavigateAndFind method to load a file: URL containing Javascript, as demonstrated by NAFfileJPU, (2) using the window.open method to load a file:… | EXPLOIT ×2 ✓HIGH 7.5EPSS 48.4% | 3 February 2004 |
| CVE-2003-0815 | Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions and read arbitrary files by (1) modifying the createTextRange method and using CreateLink, as demonstrated using LinkillerSaveRef, LinkillerJPU, and Linkiller, or… | HIGH 7.5EPSS 18.7% | 3 February 2004 |
| CVE-2003-0814 | Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions and execute Javascript by setting the window's "href" to the malicious Javascript, then calling execCommand("Refresh") to refresh the page, aka BodyRefreshLoadsJPU… | HIGH 7.5EPSS 27.7% | 3 February 2004 |
| CVE-2003-1028 | The download function of Internet Explorer 6 SP1 allows remote attackers to obtain the cache directory name via an HTTP response with an invalid ContentType and a .htm file, which could allow remote attackers to bypass security mechanisms that rely on… | MEDIUM 5.0EPSS 19.1% | 20 January 2004 |
| CVE-2003-1027 | Internet Explorer 5.01 through 6 SP1 allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by using method caching (SaveRef) to access the window.moveBy method, which is otherwise inaccessible, as… | HIGH 10.0EPSS 38.1% | 20 January 2004 |
| CVE-2003-1026 | Internet Explorer 5.01 through 6 SP1 allows remote attackers to bypass zone restrictions via a javascript protocol URL in a sub-frame, which is added to the history list and executed in the top window's zone when the history.back (back) function is… | EXPLOIT ✓HIGH 9.3EPSS 39.2% | 20 January 2004 |
| CVE-2003-1025 | Internet Explorer 5.01 through 6 SP1 allows remote attackers to spoof the domain of a URL via a "%01" character before an @ sign in the user@domain portion of the URL, which hides the rest of the URL, including the real site, in the address bar, aka the… | EXPLOIT ×3 ✓MEDIUM 4.3EPSS 26.9% | 20 January 2004 |
| CVE-2003-0990 | The parseAddress code in (1) SquirrelMail 1.4.0 and (2) GPG Plugin 1.1 allows remote attackers to execute commands via shell metacharacters in the "To:" field. | EXPLOIT ✓HIGH 7.5EPSS 28.8% | 20 January 2004 |
| CVE-2003-0995 | Buffer overflow in the Microsoft Message Queue Manager (MSQM) allows remote attackers to cause a denial of service (RPC service crash) via a queue registration request. | HIGH 7.5EPSS 10.0% | 5 January 2004 |
| CVE-2003-0963 | Buffer overflows in (1) try_netscape_proxy and (2) try_squid_eplf for lftp 2.6.9 and earlier allow remote HTTP servers to execute arbitrary code via long directory names that are processed by the ls or rels commands. | EXPLOIT ✓HIGH 7.5EPSS 13.7% | 5 January 2004 |
| CVE-2003-1559 | Microsoft Internet Explorer 5.22, and other 5 through 6 SP1 versions, sends Referer headers containing https:// URLs in requests for http:// URLs, which allows remote attackers to obtain potentially sensitive information by reading Referer log data. | MEDIUM 5.0EPSS 15.8% | 31 December 2003 |
| CVE-2003-1544 | Unrestricted critical resource lock in Terminal Services for Windows 2000 before SP4 and Windows XP allows remote authenticated users to cause a denial of service (reboot) by obtaining a read lock on msgina.dll, which prevents msgina.dll from being… | MEDIUM 6.8EPSS 17.3% | 31 December 2003 |
| CVE-2003-1505 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (crash) by creating a web page or HTML e-mail with a textarea in a div element whose scrollbar-base-color is modified by a CSS style, which is then moved. | EXPLOIT ✓MEDIUM 4.3EPSS 12.9% | 31 December 2003 |
| CVE-2003-1484 | Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (crash) by creating a DHTML link that uses the AnchorClick "A" object with a blank href attribute. | MEDIUM 4.3EPSS 11.1% | 31 December 2003 |
| CVE-2003-1448 | Memory leak in the Windows 2000 kernel allows remote attackers to cause a denial of service (SMB request hang) via a NetBIOS continuation packet. | HIGH 7.8EPSS 15.4% | 31 December 2003 |
| CVE-2003-1425 | guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter. | EXPLOIT ×4 ✓HIGH 10.0EPSS 11.5% | 31 December 2003 |
| CVE-2003-1387 | Buffer overflow in Opera 6.05 and 6.06, and possibly other versions, allows remote attackers to execute arbitrary code via a URL with a long username. | EXPLOIT ✓HIGH 7.5EPSS 14.7% | 31 December 2003 |
| CVE-2003-1378 | Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs via an HTML email with the CODEBASE parameter set to the program, a vulnerability similar to CAN-2002-0077. | EXPLOIT ✓HIGH 8.8EPSS 15.6% | 31 December 2003 |
| CVE-2003-1339 | Stack-based buffer overflow in eZnet.exe, as used in eZ (a) eZphotoshare, (b) eZmeeting, (c) eZnetwork, and (d) eZshare allows remote attackers to cause a denial of service (crash) or execute arbitrary code, as demonstrated via (1) a long GET request… | EXPLOIT ×2 ✓HIGH 10.0EPSS 48.6% | 31 December 2003 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.