CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
CVE-2017-0897 HIGH
ExpressionEngine version 2.x < 2.11.8 and version 3.x < 3.5.5 create an object signing token with weak entropy. Successfully guessing the token can lead to rem…
CVSS 7.5 EPSS 4.04% Jun 22, 2017
CVE-2014-5387 MEDIUM
Multiple SQL injection vulnerabilities in EllisLab ExpressionEngine before 2.9.1 allow remote authenticated users to execute arbitrary SQL commands via the (1)…
CVSS 6.5 EPSS 1.65% Nov 4, 2014
Showing 1 to 2 CVEs · page 1