Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,980cataloged exploits
36,899CVEs with public exploitation
24,695lab-tested
24,476 exploits
Exploit-DB
gps-server.net GPS Tracking Software < 3.1 - Multiple Vulnerabilities
CVE-2017-17097webappsphp05 Jan 2018
gps-server.net GPS Tracking Software (self hosted) 2.x has a password reset procedure that immediately resets passwords
23RISK
open
Exploit-DB
Gespage 7.4.8 - SQL Injection
CVE-2017-7997webappsjsp05 Jan 2018
Multiple SQL injection vulnerabilities in Gespage before 7.4.9 allow remote attackers to execute arbitrary SQL commands
28RISK
open
Exploit-DB
Cisco IOS - Remote Code Execution
CVE-2017-6736HIGHunder attackremotehardware05 Jan 2018
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti
93RISK
open
Exploit-DBVexDay Proof
Ayukov NFTP FTP Client 2.0 - Remote Buffer Overflow (Metasploit)
CVE-2017-15222remotewindows05 Jan 2018
Buffer Overflow vulnerability in Ayukov NFTPD 2.0 and earlier allows remote attackers to execute arbitrary code.
50RISK
open
Exploit-DBVexDay Proof
Microsoft Windows win32k - Using SetClassLong to Switch Between CS_CLASSDC and CS_OWNDC Corrupts DC Cache
CVE-2018-0744doswindows05 Jan 2018
The Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Wi
28RISK
open
Exploit-DB
Linksys WVBR0-25 - User-Agent Command Execution (Metasploit)
CVE-2017-17411remotehardware04 Jan 2018
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Linksys WVBR0. Authe
60RISK
open
Exploit-DBVexDay Proof
Xplico - Remote Code Execution (Metasploit)
CVE-2017-16666remotelinux04 Jan 2018
Xplico before 1.2.1 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the name
60RISK
open
Exploit-DB
Multiple CPUs - 'Spectre' Information Disclosure
CVE-2017-5753MEDIUMlocalmultiple03 Jan 2018
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of
55RISK
open
Exploit-DBVexDay Proof
WordPress Plugin Smart Google Code Inserter < 3.5 - Authentication Bypass / SQL Injection
CVE-2018-3810webappsphp03 Jan 2018
Authentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unau
60RISK
open
Exploit-DB
EMC xPression 4.5SP1 Patch 13 - 'model.jobHistoryId' SQL Injection
CVE-2017-14960webappsmultiple03 Jan 2018
xDashboard in OpenText Document Sciences xPression (formerly EMC Document Sciences xPression) v4.5SP1 Patch 13 has SQL I
23RISK
open
Exploit-DBVexDay Proof
WordPress Plugin Smart Google Code Inserter < 3.5 - Authentication Bypass / SQL Injection
CVE-2018-3811webappsphp03 Jan 2018
SQL Injection vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthentica
35RISK
open
Exploit-DB
Multiple CPUs - 'Spectre' Information Disclosure
CVE-2017-5715MEDIUMlocalmultiple03 Jan 2018
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized discl
55RISK
open
Exploit-DBVexDay Proof
Oracle WebLogic < 10.3.6 - 'wls-wsat' Component Deserialisation Remote Command Execution
CVE-2017-10271HIGHunder attackransomwareremotemultiple03 Jan 2018
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). Supporte
100RISK
open
Exploit-DBVexDay Proof
Cambium ePMP1000 - 'get_chart' Shell via Command Injection (Metasploit)
CVE-2017-5255remotecgi01 Jan 2018
In version 3.5 and prior of Cambium Networks ePMP firmware, a lack of input sanitation for certain parameters on the web
60RISK
open
Exploit-DBVexDay Proof
HP Mercury LoadRunner Agent magentproc.exe - Remote Command Execution (Metasploit)
CVE-2010-1549remotewindows01 Jan 2018
Unspecified vulnerability in the Agent in HP LoadRunner before 9.50 and HP Performance Center before 9.50 allows remote
60RISK
open
Exploit-DB
PHP Melody 2.7.1 - 'playlist' SQL Injection
CVE-2018-5211webappsphp31 Dec 2017
PHP Melody version 2.7.1 suffer from SQL Injection Time-based attack on the page ajax.php with the parameter playlist.
23RISK
open
Exploit-DB
NetTransport 2.96L - Remote Buffer Overflow (DEP Bypass)
CVE-2017-17968remotewindows29 Dec 2017
A buffer overflow vulnerability in NetTransport.exe in NetTransport Download Manager 2.96L and earlier could allow remot
50RISK
open
Exploit-DB
ALLMediaServer 0.95 - Remote Buffer Overflow (Metasploit)
CVE-2017-17932remotewindows28 Dec 2017
A buffer overflow vulnerability exists in MediaServer.exe in ALLPlayer ALLMediaServer 0.95 and earlier that could allow
50RISK
open
Exploit-DBVexDay Proof
SysGauge Server 3.6.18 - Denial of Service
CVE-2017-15667doswindows27 Dec 2017
In Flexense SysGauge Server 3.6.18, the Control Protocol suffers from a denial of service. The attack vector is a crafte
23RISK
open
Exploit-DB
ALLMediaServer 0.95 - Buffer Overflow (PoC)
CVE-2017-17932doswindows27 Dec 2017
A buffer overflow vulnerability exists in MediaServer.exe in ALLPlayer ALLMediaServer 0.95 and earlier that could allow
50RISK
open
Exploit-DB
Joomla! Component JEXTN FAQ Pro 4.0.0 - 'id' SQL Injection
CVE-2017-17875webappsphp26 Dec 2017
The JEXTN FAQ Pro extension 4.0.0 for Joomla! has SQL Injection via the id parameter in a view=category action.
23RISK
open
Exploit-DB
GetGo Download Manager 5.3.0.2712 - Buffer Overflow
CVE-2017-17849doswindows26 Dec 2017
A buffer overflow vulnerability in GetGo Download Manager 5.3.0.2712 and earlier could allow remote HTTP servers to exec
28RISK
open
Exploit-DB
Trustwave SWG 11.8.0.27 - SSH Unauthorized Access
CVE-2017-18001remotelinux26 Dec 2017
Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the de
28RISK
open
Exploit-DB
Biometric Shift Employee Management System 3.0 - Local File Disclosure
CVE-2017-17876webappsphp26 Dec 2017
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a u
23RISK
open
Exploit-DB
Oracle WebLogic Server 10.3.6.0.0 / 12.x - Remote Command Execution
CVE-2017-10271HIGHunder attackransomwareremotemultiple26 Dec 2017
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). Supporte
100RISK
open
Exploit-DB
Ubiquiti UniFi Video 3.7.3 - Local Privilege Escalation
CVE-2016-6914localwindows26 Dec 2017
Ubiquiti UniFi Video before 3.8.0 for Windows uses weak permissions for the installation directory, which allows local u
23RISK
open
Exploit-DB
Huawei Router HG532 - Arbitrary Command Execution
CVE-2017-17215webappshardware25 Dec 2017
Huawei HG532 with some customized versions has a remote code execution vulnerability. An authenticated attacker could se
45RISK
open
Exploit-DB
Iopsys Router - 'dhcp' Remote Code Execution
CVE-2017-17867remotehardware23 Dec 2017
Inteno iopsys 2.0-3.14 and 4.0 devices allow remote authenticated users to execute arbitrary OS commands by modifying th
28RISK
open
Exploit-DB
BEIMS ContractorWeb 5.18.0.0 - SQL Injection
CVE-2017-17721webappswindows20 Dec 2017
CWEBNET/WOSummary/List in ZUUSE BEIMS ContractorWeb .NET 5.18.0.0 allows SQL injection via the tradestatus, assetno, ass
23RISK
open
Exploit-DB
Ability Mail Server 3.3.2 - Cross-Site Scripting
CVE-2017-17752webappsmultiple20 Dec 2017
Ability Mail Server 3.3.2 has Cross Site Scripting (XSS) via the body of an e-mail message, with JavaScript code execute
23RISK
open
previouspage 116 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.