Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,961cataloged exploits
36,896CVEs with public exploitation
24,695lab-tested
24,475 exploits
Exploit-DBVexDay Proof
WordPress Plugin Site Editor 1.1.1 - Local File Inclusion
CVE-2018-7422webappsphp23 Mar 2018
A Local File Inclusion vulnerability in the Site Editor plugin through 1.1.1 for WordPress allows remote attackers to re
50RISK
open
Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
CVE-2017-13260dosandroid23 Mar 2018
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open
Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
CVE-2017-13258dosandroid23 Mar 2018
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open
Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
CVE-2017-13261dosandroid23 Mar 2018
In bnep_process_control_packet of bnep_utils.cc, there is a possible out of bounds read due to a missing bounds check. T
23RISK
open
Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
CVE-2017-13262dosandroid23 Mar 2018
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length decrement operation. Th
23RISK
open
Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
CVE-2017-13261dosandroid23 Mar 2018
In bnep_process_control_packet of bnep_utils.cc, there is a possible out of bounds read due to a missing bounds check. T
23RISK
open
Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
CVE-2017-13260dosandroid23 Mar 2018
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open
Exploit-DBVexDay Proof
Dell EMC NetWorker - Denial of Service
CVE-2018-1218doslinux23 Mar 2018
In Dell EMC NetWorker versions prior to 9.2.1.1, versions prior to 9.1.1.6, 9.0.x, and versions prior to 8.2.4.11, the '
28RISK
open
Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
CVE-2017-13262dosandroid23 Mar 2018
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length decrement operation. Th
23RISK
open
Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
CVE-2017-13258dosandroid23 Mar 2018
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open
Exploit-DB
Linux Kernel < 4.15.4 - 'show_floppy' KASLR Address Leak
CVE-2018-7273locallinux22 Mar 2018
In the Linux kernel through 4.15.4, the floppy driver reveals the addresses of kernel functions and global variables usi
23RISK
open
Exploit-DB
Intelbras Telefone IP TIP200 LITE - Local File Disclosure
CVE-2018-9010webappshardware20 Mar 2018
Intelbras TELEFONE IP TIP200/200 LITE 60.0.75.29 devices allow remote authenticated admins to read arbitrary files via t
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Desktop Bridge Virtual Registry NtLoadKey Arbitrary File Read/Write Privilege Escalation
CVE-2018-0882localwindows20 Mar 2018
The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an el
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Desktop Bridge VFS Privilege Escalation
CVE-2018-0877localwindows_x86-6420 Mar 2018
The Desktop Bridge Virtual File System (VFS) in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server,
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'NtQueryVirtualMemory(MemoryMappedFilenameInformation)' 64-bit Pool Memory Disclosure
CVE-2018-0894doswindows_x86-6420 Mar 2018
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Serve
23RISK
open
Exploit-DBVexDay Proof
Internet Explorer - 'RegExp.lastMatch' Memory Disclosure
CVE-2018-0891doswindows20 Mar 2018
ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Desktop Bridge Virtual Registry Arbitrary File Read/Write Privilege Escalation
CVE-2018-0880localwindows20 Mar 2018
The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an el
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'nt!NtWaitForDebugEvent' 64-bit Stack Memory Disclosure
CVE-2018-0901doswindows_x86-6420 Mar 2018
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Serve
23RISK
open
Exploit-DB
Coship RT3052 Wireless Router - Persistent Cross-Site Scripting
CVE-2018-8772webappshardware20 Mar 2018
Coship RT3052 4.0.0.48 devices allow XSS via a crafted SSID field on the "Wireless Setting - Basic" screen.
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'NtQueryInformationThread(ThreadBasicInformation)' 64-bit Stack Memory Disclosure
CVE-2018-0895doswindows_x86-6420 Mar 2018
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Serve
23RISK
open
Exploit-DB
Vehicle Sales Management System - Multiple Vulnerabilities
CVE-2017-1000474webappsphp20 Mar 2018
Soyket Chowdhury Vehicle Sales Management System version 2017-07-30 is vulnerable to multiple SQL Injecting in login/veh
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'nt!KiDispatchException' 64-bit Stack Memory Disclosure
CVE-2018-0897doswindows_x86-6420 Mar 2018
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Serve
23RISK
open
Exploit-DBVexDay Proof
Google Software Updater macOS - Unsafe use of Distributed Objects Privilege Escalation
CVE-2018-6084localmacos20 Mar 2018
Insufficiently sanitized distributed objects in Updater in Google Chrome on macOS prior to 66.0.3359.117 allowed a local
23RISK
open
Exploit-DB
Cisco node-jos < 0.11.0 - Re-sign Tokens
CVE-2018-0114webappsmultiple20 Mar 2018
A vulnerability in the Cisco node-jose open source library before 0.11.0 could allow an unauthenticated, remote attacker
35RISK
open
Exploit-DBVexDay Proof
Firefox 46.0.1 - ASM.JS JIT-Spray Remote Code Execution
CVE-2016-2819remotewindows16 Mar 2018
Heap-based buffer overflow in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to ex
28RISK
open
Exploit-DB
Unitrends UEB 10.0 - Root Remote Code Execution
CVE-2018-6328remotelinux16 Mar 2018
It was discovered that the Unitrends Backup (UB) before 10.1.0 user interface was exposed to an authentication bypass, w
50RISK
open
Exploit-DBVexDay Proof
Firefox 44.0.2 - ASM.JS JIT-Spray Remote Code Execution
CVE-2016-1960remotewindows16 Mar 2018
Integer underflow in the nsHtml5TreeBuilder class in the HTML5 string parser in Mozilla Firefox before 45.0 and Firefox
35RISK
open
Exploit-DB
Linux Kernel < 4.4.0-116 (Ubuntu 16.04.4) - Local Privilege Escalation
CVE-2017-16995locallinux16 Mar 2018
The check_alu_op function in kernel/bpf/verifier.c in the Linux kernel through 4.4 allows local users to cause a denial
50RISK
open
Exploit-DBVexDay Proof
Firefox 44.0.2 - ASM.JS JIT-Spray Remote Code Execution
CVE-2017-5375remotewindows16 Mar 2018
JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. T
35RISK
open
Exploit-DB
Unitrends UEB 10.0 - Root Remote Code Execution
CVE-2018-6329remotelinux16 Mar 2018
It was discovered that the Unitrends Backup (UB) before 10.1.0 libbpext.so authentication could be bypassed with a SQL i
50RISK
open
previouspage 105 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.