CVE Vulnerability Lookup
Search CVEs, Understand Threats, Assess Risk, Take Action
Enter any CVE ID below to pull real-time vulnerability intelligence directly from MITRE. Instantly access severity ratings, impacted systems, and vendor-backed remediation steps so you can evaluate threats and deploy fixes with confidence.
Understanding CVE Severity Scores
CVEs are ranked using the Common Vulnerability Scoring System (CVSS), a standardized framework maintained by FIRST. Scores range from 0.0 to 10.0 and are grouped into four risk levels:
- Low (0.1–3.9): Minimal impact. Usually requires specific conditions or user interaction to exploit.
- Medium (4.0–6.9): Moderate impact. May affect system stability or data access under certain circumstances.
- High (7.0–8.9): Significant impact. Often allows remote exploitation or compromises core system functions.
- Critical (9.0–10.0): Severe impact. Typically exploitable with little to no user interaction and can lead to full system compromise.
Note: CVSS scores are based on publicly available data and represent baseline risk. Your organization’s actual risk may vary based on exposure, mitigations, and environment.
How to Use This Data
- CVE ID is a unique identifier (e.g.,
CVE-2024-5678). It does not include patches or fixes. - Affected Products/Configurations help you cross-reference your asset inventory.
- References link to vendor advisories, security bulletins, and technical write-ups.
- Status indicates whether the CVE is
Assigned,Reserved, orModified.
Important Notes
CVEs are naming conventions, not remediation guides. Always follow vendor-specific updates, apply patches through trusted channels, and combine CVE data with your internal vulnerability management workflow. For real-time threat context, pair this lookup with feeds from CISA, vendor security centers, or your SIEM/VM platform.