Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,967GitHub PoC 13,264VulnCheck XDB 8,156Nuclei 4,201Metasploit 3,462✓ verified onlyrecentpopularrisk
3,462 exploits
Metasploit200
Hummingbird Connectivity 10 SP5 LPD Buffer Overflow
Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of s
50RISK
open ↗Metasploit200
Berlios GPSD Format String Vulnerability
Format string vulnerability in the gpsd_report function for BerliOS GPD daemon (gpsd, formerly pygps) 1.9.0 through 2.7
50RISK
open ↗Metasploit400
Novell ZENworks 6.5 Desktop/Server Management Overflow
Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENwor
50RISK
open ↗Metasploit500
GlobalSCAPE Secure FTP Server Input Overflow
Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a
50RISK
open ↗Metasploit500
NetTerm NetFTPD USER Buffer Overflow
Buffer overflow in NetFtpd for NetTerm 5.1.1 and earlier allows remote attackers to execute arbitrary code via a long US
50RISK
open ↗Metasploit400
MaxDB WebDBM GET Buffer Overflow
Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary
50RISK
open ↗Metasploit500
MailEnable Authorization Header Buffer Overflow
Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote at
60RISK
open ↗Metasploit300
Oracle DB SQL Injection via SYS.DBMS_CDC_SUBSCRIBE.ACTIVATE_SUBSCRIPTION
SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL
50RISK
open ↗Metasploit400
MS05-017 Microsoft Message Queueing Service Path Overflow
Buffer overflow in the Message Queuing component of Microsoft Windows 2000 and Windows XP SP1 allows remote attackers to
60RISK
open ↗Metasploit400
GLD (Greylisting Daemon) Postfix Buffer Overflow
Multiple buffer overflows in the HandleChild function in server.c in Greylisting daemon (GLD) 1.3 and 1.4, when GLD is l
50RISK
open ↗Metasploit200
CA BrightStor Universal Agent Overflow
Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticate
50RISK
open ↗Metasploit200
BakBone NetVault Remote Heap Overflow
Multiple buffer overflows in BakBone NetVault 6.x and 7.x allow (1) remote attackers to execute arbitrary code via a mod
50RISK
open ↗Metasploit200
GoodTech Telnet Server Buffer Overflow
Buffer overflow in the administration web server for GoodTech Telnet Server 4.0 and 5.0, and possibly all versions befor
50RISK
open ↗Metasploit200
SentinelLM UDP Buffer Overflow
Buffer overflow in the Sentinel LM (Lservnt) service in the Sentinel License Manager 7.2.0.2 allows remote attackers to
60RISK
open ↗Metasploit200
CA BrightStor ARCserve License Service GCR NETWORK Buffer Overflow
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RISK
open ↗Metasploit200
Computer Associates License Client GETCONFIG Overflow
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RISK
open ↗Metasploit300
Computer Associates License Server GETCONFIG Overflow
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RISK
open ↗Metasploit300
RealNetworks RealPlayer SMIL Buffer Overflow
Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlaye
50RISK
open ↗Metasploit600
vBulletin misc.php Template Name Arbitrary Code Execution
misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers
50RISK
open ↗Metasploit400
Arkeia Backup Client Type 77 Overflow (Win32)
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RISK
open ↗Metasploit200
TrackerCam PHP Argument Buffer Overflow
Multiple buffer overflows in TrackerCam 5.12 and earlier allow remote attackers to cause a denial of service and possibl
50RISK
open ↗Metasploit200
Arkeia Backup Client Type 77 Overflow (Mac OS X)
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RISK
open ↗Metasploit200
CA BrightStor Discovery Service TCP Overflow
Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execu
60RISK
open ↗Metasploit400
URSoft W32Dasm Disassembler Function Buffer Overflow
Buffer overflow in the wsprintf function in W32Dasm 8.93 and earlier allows remote attackers to execute arbitrary code v
50RISK
open ↗Metasploit600
Cacti graph_view.php Remote Command Execution
Cacti graph_view.php RCE via graph_start Parameter Injection
36RISK
open ↗Metasploit600
AWStats configdir Remote Command Execution
AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacte
60RISK
open ↗Metasploit300
Apple ITunes 4.7 Playlist Buffer Overflow
Buffer overflow in Apple iTunes 4.7 allows remote attackers to execute arbitrary code via a long URL in (1) .m3u or (2)
50RISK
open ↗Metasploit500
Blue Coat WinProxy Host Header Overflow
Buffer overflow in BlueCoat (a) WinProxy before 6.1a and (b) the web console access functionality in ProxyAV before 2.4.
50RISK
open ↗Metasploit200
3Com 3CDaemon 2.0 FTP Username Overflow
Buffer overflow in the FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to cause a denial of service
50RISK
open ↗Metasploit300
Serv-U FTP Server Buffer Overflow
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute
60RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.