Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,886cataloged exploits
32,153CVEs with public exploitation
1,932lab-tested
22,786 exploits
Exploit-DB
Microsoft Internet Explorer 11 (Windows 7 x86) - 'mshtml.dll' Remote Code Execution (MS17-007)
CVE-2017-0037HIGHunder attack17 Oct 2017
Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilde
93RISK
open
Exploit-DB
Microsoft Internet Explorer 11 (Windows 7 x86) - 'mshtml.dll' Remote Code Execution (MS17-007)
CVE-2017-0059MEDIUMunder attack17 Oct 2017
Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information from process memory via
75RISK
open
Exploit-DB
3CX Phone System 15.5.3554.1 - Directory Traversal
CVE-2017-1535916 Oct 2017
In the 3CX Phone System 15.5.3554.1, the Management Console typically listens to port 5001 and is prone to a directory t
23RISK
open
Exploit-DB
Linux Kernel < 3.16.39 (Debian 8 x64) - 'inotfiy' Local Privilege Escalation
CVE-2017-753316 Oct 2017
Race condition in the fsnotify implementation in the Linux kernel through 4.12.4 allows local users to gain privileges o
23RISK
open
Exploit-DB
Ikraus Anti Virus 2.16.7 - Remote Code Execution
CVE-2017-1564316 Oct 2017
An active network attacker (MiTM) can achieve remote code execution on a machine that runs IKARUS Anti Virus 2.16.7. IKA
23RISK
open
Exploit-DB
Webmin 1.850 - Multiple Vulnerabilities
CVE-2017-1564415 Oct 2017
SSRF exists in Webmin 1.850 via the PATH_INFO to tunnel/link.cgi, as demonstrated by a GET request for tunnel/link.cgi/h
23RISK
open
Exploit-DB
Webmin 1.850 - Multiple Vulnerabilities
CVE-2017-1564615 Oct 2017
Webmin before 1.860 has XSS with resultant remote code execution. Under the 'Others/File Manager' menu, there is a 'Down
23RISK
open
Exploit-DB
Webmin 1.850 - Multiple Vulnerabilities
CVE-2017-1564515 Oct 2017
CSRF exists in Webmin 1.850. By sending a GET request to at/create_job.cgi containing dir=/&cmd= in the URI, an attacker
23RISK
open
Exploit-DB
Logitech Media Server - Cross-Site Scripting
CVE-2017-1568714 Oct 2017
DOM Based Cross Site Scripting (XSS) exists in Logitech Media Server 7.7.1, 7.7.2, 7.7.3, 7.7.5, 7.7.6, 7.9.0, and 7.9.1
23RISK
open
Exploit-DB
phpMyFAQ 2.9.8 - Cross-Site Scripting (2)
CVE-2017-1461913 Oct 2017
Cross-site scripting (XSS) vulnerability in phpMyFAQ through 2.9.8 allows remote attackers to inject arbitrary web scrip
23RISK
open
Exploit-DB
FiberHome - Directory Traversal
CVE-2017-1564713 Oct 2017
On FiberHome routers, Directory Traversal exists in /cgi-bin/webproc via the getpage parameter in conjunction with a cra
43RISK
open
Exploit-DB
AlienVault Unified Security Management (USM) 5.4.2 - Cross-Site Request Forgery
CVE-2017-1495613 Oct 2017
AlienVault USM v5.4.2 and earlier offers authenticated users the functionality of exporting generated reports via the "/
23RISK
open
Exploit-DB
Dreambox Plugin BouquetEditor - Cross-Site Scripting
CVE-2017-1528712 Oct 2017
There is XSS in the BouquetEditor WebPlugin for Dream Multimedia Dreambox devices, as demonstrated by the "Name des Bouq
38RISK
open
Exploit-DB
TP-Link TL-MR3220 - Cross-Site Scripting
CVE-2017-1529112 Oct 2017
Cross-site scripting (XSS) vulnerability in the Wireless MAC Filtering page in TP-LINK TL-MR3220 wireless routers allows
23RISK
open
Exploit-DB
OctoberCMS 1.0.425 (Build 425) - Cross-Site Scripting
CVE-2017-1528412 Oct 2017
Cross-Site Scripting exists in OctoberCMS 1.0.425 (aka Build 425), allowing a least privileged user to upload an SVG fil
23RISK
open
Exploit-DB
ASX to MP3 3.1.3.7 - '.m3u' Local Buffer Overflow
CVE-2017-1522111 Oct 2017
ASX to MP3 converter 3.1.3.7.2010.11.05 has a buffer overflow via a crafted M3U file, a related issue to CVE-2009-1324.
23RISK
open
Exploit-DB
Trend Micro OfficeScan 11.0/XG (12.0) - Remote Code Execution (Metasploit)
CVE-2017-1139411 Oct 2017
Proxy command injection vulnerability in Trend Micro OfficeScan 11 and XG (12) allows remote attackers to execute arbitr
50RISK
open
Exploit-DB
binutils 2.29.51.20170921 - 'read_1_byte' Heap Buffer Overflow
CVE-2017-1493910 Oct 2017
decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.
23RISK
open
Exploit-DB
QNAP HelpDesk < 1.1.12 - SQL Injection
CVE-2017-1306809 Oct 2017
QNAP has already patched this vulnerability. This security concern allows a remote attacker to perform an SQL injection
23RISK
open
Exploit-DB
PHP Melody 2.7.3 - Multiple Vulnerabilities
CVE-2017-1557809 Oct 2017
In PHPSUGAR PHP Melody before 2.7.3, SQL Injection exists via the image parameter to admin/edit_category.php.
23RISK
open
Exploit-DB
VX Search Enterprise 10.1.12 - Remote Buffer Overflow
CVE-2017-1522009 Oct 2017
Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginni
23RISK
open
Exploit-DB
Apache Tomcat < 9.0.1 (Beta) / < 8.5.23 / < 8.0.47 / < 7.0.8 - JSP Upload Bypass / Remote Code Execution (2)
CVE-2017-12617HIGHunder attack09 Oct 2017
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTT
100RISK
open
Exploit-DB
PHP Melody 2.7.3 - Multiple Vulnerabilities
CVE-2017-1557909 Oct 2017
In PHPSUGAR PHP Melody before 2.7.3, SQL Injection exists via an aa_pages_per_page cookie in a playlist action to watch.
23RISK
open
Exploit-DB
PyroBatchFTP 3.17 - Buffer Overflow (SEH)
CVE-2017-1503507 Oct 2017
EmTec PyroBatchFTP before 3.18 allows remote servers to cause a denial of service (application crash).
23RISK
open
Exploit-DB
Microsoft Windows 10 RS2 (x64) - 'win32kfull!bFill' Pool Overflow
CVE-2016-3309HIGHunder attackransomware06 Oct 2017
The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1;
76RISK
open
Exploit-DB
WebKit JSC - 'BytecodeGenerator::emitGetByVal' Incorrect Optimization (2)
CVE-2017-711704 Oct 2017
An issue was discovered in certain Apple products. iOS before 11 is affected. Safari before 11 is affected. iCloud befor
28RISK
open
Exploit-DB
Webkit (Safari) - Universal Cross-site Scripting
CVE-2017-708903 Oct 2017
An issue was discovered in certain Apple products. iOS before 11 is affected. Safari before 11 is affected. iCloud befor
23RISK
open
Exploit-DB
EPESI 1.8.2 rev20170830 - Cross-Site Scripting
CVE-2017-1471703 Oct 2017
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Description parameter.
23RISK
open
Exploit-DB
EPESI 1.8.2 rev20170830 - Cross-Site Scripting
CVE-2017-1471203 Oct 2017
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Phonecall Notes Title parameter.
23RISK
open
Exploit-DB
Webkit (Chome < 61) - 'MHTML' Universal Cross-site Scripting
CVE-2017-512403 Oct 2017
Incorrect application of sandboxing in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to inject
23RISK
open
previouspage 121 / 760next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.