Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
3,462 exploits
Metasploit200
Hummingbird Connectivity 10 SP5 LPD Buffer Overflow
CVE-2005-181527 May 2005
Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of s
50RISK
open
Metasploit200
Berlios GPSD Format String Vulnerability
CVE-2004-138825 May 2005
Format string vulnerability in the gpsd_report function for BerliOS GPD daemon (gpsd, formerly pygps) 1.9.0 through 2.7
50RISK
open
Metasploit400
Novell ZENworks 6.5 Desktop/Server Management Overflow
CVE-2005-154319 May 2005
Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENwor
50RISK
open
Metasploit500
GlobalSCAPE Secure FTP Server Input Overflow
CVE-2005-141501 May 2005
Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a
50RISK
open
Metasploit500
NetTerm NetFTPD USER Buffer Overflow
CVE-2005-132326 Apr 2005
Buffer overflow in NetFtpd for NetTerm 5.1.1 and earlier allows remote attackers to execute arbitrary code via a long US
50RISK
open
Metasploit400
MaxDB WebDBM GET Buffer Overflow
CVE-2005-068426 Apr 2005
Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary
50RISK
open
Metasploit500
MailEnable Authorization Header Buffer Overflow
CVE-2005-134824 Apr 2005
Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote at
60RISK
open
Metasploit300
Oracle DB SQL Injection via SYS.DBMS_CDC_SUBSCRIBE.ACTIVATE_SUBSCRIPTION
CVE-2005-483218 Apr 2005
SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL
50RISK
open
Metasploit400
MS05-017 Microsoft Message Queueing Service Path Overflow
CVE-2005-005912 Apr 2005
Buffer overflow in the Message Queuing component of Microsoft Windows 2000 and Windows XP SP1 allows remote attackers to
60RISK
open
Metasploit400
GLD (Greylisting Daemon) Postfix Buffer Overflow
CVE-2005-109912 Apr 2005
Multiple buffer overflows in the HandleChild function in server.c in Greylisting daemon (GLD) 1.3 and 1.4, when GLD is l
50RISK
open
Metasploit200
CA BrightStor Universal Agent Overflow
CVE-2005-101811 Apr 2005
Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticate
50RISK
open
Metasploit200
BakBone NetVault Remote Heap Overflow
CVE-2005-100901 Apr 2005
Multiple buffer overflows in BakBone NetVault 6.x and 7.x allow (1) remote attackers to execute arbitrary code via a mod
50RISK
open
Metasploit200
GoodTech Telnet Server Buffer Overflow
CVE-2005-076815 Mar 2005
Buffer overflow in the administration web server for GoodTech Telnet Server 4.0 and 5.0, and possibly all versions befor
50RISK
open
Metasploit200
SentinelLM UDP Buffer Overflow
CVE-2005-035307 Mar 2005
Buffer overflow in the Sentinel LM (Lservnt) service in the Sentinel License Manager 7.2.0.2 allows remote attackers to
60RISK
open
Metasploit200
CA BrightStor ARCserve License Service GCR NETWORK Buffer Overflow
CVE-2005-058102 Mar 2005
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RISK
open
Metasploit200
Computer Associates License Client GETCONFIG Overflow
CVE-2005-058102 Mar 2005
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RISK
open
Metasploit300
Computer Associates License Server GETCONFIG Overflow
CVE-2005-058102 Mar 2005
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RISK
open
Metasploit300
RealNetworks RealPlayer SMIL Buffer Overflow
CVE-2005-045501 Mar 2005
Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlaye
50RISK
open
Metasploit600
vBulletin misc.php Template Name Arbitrary Code Execution
CVE-2005-051125 Feb 2005
misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers
50RISK
open
Metasploit400
Arkeia Backup Client Type 77 Overflow (Win32)
CVE-2005-049118 Feb 2005
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RISK
open
Metasploit200
TrackerCam PHP Argument Buffer Overflow
CVE-2005-047818 Feb 2005
Multiple buffer overflows in TrackerCam 5.12 and earlier allow remote attackers to cause a denial of service and possibl
50RISK
open
Metasploit200
Arkeia Backup Client Type 77 Overflow (Mac OS X)
CVE-2005-049118 Feb 2005
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RISK
open
Metasploit200
CA BrightStor Discovery Service TCP Overflow
CVE-2005-253514 Feb 2005
Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execu
60RISK
open
Metasploit400
URSoft W32Dasm Disassembler Function Buffer Overflow
CVE-2005-030824 Jan 2005
Buffer overflow in the wsprintf function in W32Dasm 8.93 and earlier allows remote attackers to execute arbitrary code v
50RISK
open
Metasploit600
Cacti graph_view.php Remote Command Execution
CVE-2005-10004HIGH15 Jan 2005
Cacti graph_view.php RCE via graph_start Parameter Injection
36RISK
open
Metasploit600
AWStats configdir Remote Command Execution
CVE-2005-011615 Jan 2005
AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacte
60RISK
open
Metasploit300
Apple ITunes 4.7 Playlist Buffer Overflow
CVE-2005-004311 Jan 2005
Buffer overflow in Apple iTunes 4.7 allows remote attackers to execute arbitrary code via a long URL in (1) .m3u or (2)
50RISK
open
Metasploit500
Blue Coat WinProxy Host Header Overflow
CVE-2005-408505 Jan 2005
Buffer overflow in BlueCoat (a) WinProxy before 6.1a and (b) the web console access functionality in ProxyAV before 2.4.
50RISK
open
Metasploit200
3Com 3CDaemon 2.0 FTP Username Overflow
CVE-2005-027704 Jan 2005
Buffer overflow in the FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to cause a denial of service
50RISK
open
Metasploit300
Serv-U FTP Server Buffer Overflow
CVE-2004-211131 Dec 2004
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute
60RISK
open
previouspage 102 / 116next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.