Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

state:in-the-wild — CVE vulnerabilities tagged 396

396 CVE security advisories tagged "state:in-the-wild" with AI Chinese analysis, CVSS, references and POCs.

The tag "state:in-the-wild" signifies that a disclosed vulnerability has been actively exploited by attackers in real-world environments, rather than remaining theoretical or limited to controlled laboratory testing. This classification is critical because it indicates an immediate and tangible threat to public infrastructure, demanding urgent mitigation strategies from administrators and developers. Typically, these vulnerabilities involve remote code execution, authentication bypasses, or critical logic flaws that allow adversaries to compromise systems without physical access. The presence of this tag implies that exploit code is likely circulating in the wild, increasing the risk of widespread data breaches, service disruptions, or lateral movement within networks. Consequently, organizations must prioritize patching these specific CVEs to prevent active intrusion, as the window between disclosure and exploitation has effectively closed, leaving systems exposed to sophisticated threat actors seeking immediate gain.

CVE IDTitleCVSSSeverityPublished
CVE-2011-5148 Joomla! Simple File Upload模块多个不完整黑名单漏洞 — n/a 9.8 -2012-08-31
CVE-2012-4681 Oracle Java 任意代码执行漏洞 — n/a 7.8 -2012-08-28
CVE-2012-1535 Adobe Flash Player 任意代码执行漏洞 — n/a 8.8 -2012-08-15
CVE-2012-1854 Microsoft Visual Basic for Applications 不安全库加载漏洞 — n/a 7.8 -2012-07-10
CVE-2012-2376 PHP ‘com_print_typeinfo’函数缓冲区溢出漏洞 — n/a 9.8 -2012-05-21
CVE-2012-0779 Adobe Flash Player 任意代码执行漏洞 — n/a 8.8 -2012-05-04
CVE-2012-0158 Microsoft Office安全漏洞 — n/a 8.8 -2012-04-10
CVE-2012-1795 WebGlimpse ‘webglimpse.cgi’ 任意命令执行漏洞 — n/a 9.8 -2012-03-20
CVE-2012-1557 Parallels Plesk Panel SQL注入漏洞 — n/a 9.8 -2012-03-12
CVE-2012-0767 Adobe Flash Player跨站脚本漏洞 — n/a 6.1 -2012-02-16
CVE-2012-1071 TYPO3 Kitchen recipe Extension 未明SQL注入漏洞 — n/a 9.8 -2012-02-14
CVE-2011-4862 FreeBSD ‘telnetd’ 缓冲区错误漏洞 — n/a 9.8 -2011-12-25
CVE-2011-4369 Adobe PRC组件拒绝服务漏洞 — n/a 9.8 -2011-12-16
CVE-2011-2462 Adobe Acrobat /Reader远程内存破坏漏洞 — n/a 9.8 -2011-12-07
CVE-2011-3402 Microsoft Windows 任意代码执行漏洞 — n/a 9.8 -2011-11-04
CVE-2011-4075 phpLDAPadmin ‘lib/functions.php’ 任意代码执行漏洞 — n/a 9.8 -2011-11-02
CVE-2011-3354 Quassel ’core/ctcpparser.cpp‘ 资源管理错误漏洞 — n/a 7.5 -2011-10-04
CVE-2011-2444 Adobe Flash Player跨站脚本攻击漏洞 — n/a 6.1 -2011-09-22
CVE-2011-3192 Apache HTTP Server拒绝服务漏洞 — n/a 7.5 -2011-08-29
CVE-2011-1968 Microsoft Windows Remote Desktop Protocol拒绝服务漏洞 — n/a 7.5 -2011-08-10
CVE-2011-2900 Valenok Mongoose HTTP PUT请求处理漏洞 — n/a 9.8 -2011-08-05
CVE-2011-0226 FreeType psaux/t1decode.c Type 1字体解析漏洞 — n/a 8.8 -2011-07-19
CVE-2011-1331 JustSystems Ichitaro文档解析漏洞 — n/a 9.8 -2011-07-18
CVE-2011-2110 Adobe Flash Player远程内存破坏漏洞 — n/a 8.8 -2011-06-16
CVE-2009-5076 CRE Loaded授权问题漏洞 — n/a 9.8 -2011-06-08
CVE-2011-1752 Apache Subversion mod_dav_svn空指针解引用漏洞 — n/a 7.5 -2011-06-06
CVE-2011-1950 Plone plone.app.users权限许可和访问控制漏洞 — n/a 8.1 -2011-06-06
CVE-2011-0627 Adobe Flash Player远程内存破坏漏洞 — n/a 8.8 -2011-05-13
CVE-2011-1722 TYPO3 WEC Discussion Forum多个SQL注入漏洞 — n/a 9.8 -2011-04-19
CVE-2011-0611 Adobe Flash Player对象处理远程代码执行漏洞 — n/a 8.8 -2011-04-13

Vulnerabilities classified as state:in-the-wild represent 396 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.