CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
398,987 CVEs
1,728 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-29
25,086 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2014-100015 EXP | Directory traversal vulnerability in pdmwService.exe in SolidWorks Workgroup PDM 2014 allows remote attackers to write to arbitrary files via a .. (do… | Patch early | 6.4 medium | 57.4% | 2015-01-13 |
| CVE-2005-1218 EXP | The Microsoft Windows kernel in Microsoft Windows 2000 Server, Windows XP, and Windows Server 2003 allows remote attackers to cause a denial of servic… | Patch early | 5.0 medium | 57.3% | 2005-08-10 |
| CVE-2017-0089 EXP | Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to execute arbitrary code via… | Patch early | 8.8 high | 57.3% | 2017-03-17 |
| CVE-2020-15922 EXP | There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) pr… | Patch early | 9.8 critical | 57.3% | 2020-07-24 |
| CVE-2006-3440 EXP | Buffer overflow in the Winsock API in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary cod… | Patch early | 10.0 high | 57.3% | 2006-08-09 |
| CVE-2006-4364 EXP | Multiple heap-based buffer overflows in the POP3 server in Alt-N Technologies MDaemon before 9.0.6 allow remote attackers to cause a denial of service… | Patch early | 5.0 medium | 57.3% | 2006-08-27 |
| CVE-2010-1899 EXP | Stack consumption vulnerability in the ASP implementation in Microsoft Internet Information Services (IIS) 5.1, 6.0, 7.0, and 7.5 allows remote attack… | Patch early | 4.3 medium | 57.2% | 2010-09-15 |
| CVE-2016-0100 EXP | Microsoft Windows Vista SP2 and Server 2008 SP2 mishandle library loading, which allows local users to gain privileges via a crafted application, aka… | Patch early | 8.4 high | 57.2% | 2016-03-09 |
| CVE-2019-5029 EXP | An exploitable command injection vulnerability exists in the Config editor of the Exhibitor Web UI versions 1.0.9 to 1.7.1. Arbitrary shell commands s… | Patch early | 9.8 critical | 57.2% | 2019-11-13 |
| CVE-2008-0532 EXP | Multiple buffer overflows in securecgi-bin/CSuserCGI.exe in User-Changeable Password (UCP) before 4.2 in Cisco Secure Access Control Server (ACS) for… | Patch early | 10.0 high | 57.1% | 2008-03-14 |
| CVE-2013-3632 EXP | The Cron service in rpc.php in OpenMediaVault allows remote authenticated users to execute cron jobs as arbitrary users and execute arbitrary commands… | Patch early | 8.8 high | 57.1% | 2014-09-29 |
| CVE-2011-3497 EXP | service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary DLL functions via the XF function, possibly related… | Patch early | 10.0 high | 57.1% | 2011-09-16 |
| CVE-2008-1083 EXP | Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and S… | Patch early | 8.1 high | 57.1% | 2008-04-08 |
| CVE-2019-12276 EXP | A Path Traversal vulnerability in Controllers/LetsEncryptController.cs in LetsEncryptController in GrandNode 4.40 allows remote, unauthenticated attac… | Patch early | 7.5 high | 57.1% | 2019-06-05 |
| CVE-2008-1358 EXP | Stack-based buffer overflow in the IMAP server in Alt-N Technologies MDaemon 9.6.4 allows remote authenticated users to execute arbitrary code via a F… | Patch early | 6.5 medium | 57.1% | 2008-03-17 |
| CVE-2019-5434 EXP | An attacker could send a specifically crafted payload to the XML-RPC invocation script and trigger the unserialize() call on the "what" parameter in t… | Patch early | 9.8 critical | 57% | 2019-05-06 |
| CVE-2005-1009 EXP | Multiple buffer overflows in BakBone NetVault 6.x and 7.x allow (1) remote attackers to execute arbitrary code via a modified computer name and length… | Patch early | 10.0 high | 57% | 2005-05-02 |
| CVE-2015-2997 EXP | SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAgentLogFil… | Patch early | 5.0 medium | 57% | 2015-06-08 |
| CVE-2021-45428 EXP | TLR-2005KSH is affected by an incorrect access control vulnerability. THe PUT method is enabled so an attacker can upload arbitrary files including HT… | Patch early | 9.8 critical | 56.9% | 2022-01-03 |
| CVE-2022-28080 EXP | Royal Event Management System v1.0 was discovered to contain a SQL injection vulnerability via the todate parameter. | Patch early | 8.8 high | 56.9% | 2022-05-05 |
| CVE-2008-0320 EXP | Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and possibly… | Patch early | 9.3 high | 56.9% | 2008-04-17 |
| CVE-2017-6361 EXP | QNAP QTS before 4.2.4 Build 20170313 allows attackers to execute arbitrary commands via unspecified vectors. | Patch early | 9.8 critical | 56.8% | 2017-03-23 |
| CVE-2005-2287 EXP | SoftiaCom wMailServer 1.0 and 2.0 allows remote attackers to cause a denial of service (application crash) via a large TCP packet with a leading space… | Patch early | 5.0 medium | 56.8% | 2005-07-18 |
| CVE-2016-3222 EXP | Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microso… | Patch early | 8.8 high | 56.8% | 2016-06-16 |
| CVE-2001-0731 EXP | Apache 1.3.20 with Multiviews enabled allows remote attackers to view directory contents and bypass the index page via a URL containing the "M=D" quer… | Patch early | 5.0 medium | 56.8% | 2001-10-01 |
| CVE-2015-4553 EXP | A file upload issue exists in DeDeCMS before 5.7-sp1, which allows malicious users getshell. | Patch early | 8.8 high | 56.7% | 2020-01-06 |
| CVE-2014-0782 EXP | Stack-based buffer overflow in BKESimmgr.exe in the Expanded Test Functions package in Yokogawa CENTUM CS 1000, CENTUM CS 3000 Entry Class R3.09.50 an… | Patch early | 8.3 high | 56.7% | 2014-05-16 |
| CVE-2015-1397 EXP | SQL injection vulnerability in the getCsvFile function in the Mage_Adminhtml_Block_Widget_Grid class in Magento Community Edition (CE) 1.9.1.0 and Ent… | Patch early | 6.5 medium | 56.7% | 2015-04-29 |
| CVE-2017-6527 EXP | An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to a NUL-terminated directory traversal attack allowing an unauthenticate… | Patch early | 7.5 high | 56.6% | 2017-03-09 |
| CVE-2004-0842 EXP | Internet Explorer 6.0 SP1 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (application crash from "memo… | Patch early | 7.5 high | 56.6% | 2004-12-23 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt