Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,957cataloged exploits
32,195CVEs with public exploitation
1,932lab-tested
22,786 exploits
Exploit-DB
Linux Kernel 4.4 (Ubuntu 16.04) - 'BPF' Local Privilege Escalation (Metasploit)
CVE-2016-455714 Nov 2016
The replace_map_fd_with_map_ptr function in kernel/bpf/verifier.c in the Linux kernel before 4.5.5 does not properly mai
43RISK
open
Exploit-DB
Microsoft Internet Explorer 11 - MSHTML CMap­Element::Notify Use-After-Free (MS15-009)
CVE-2015-004014 Nov 2016
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co
35RISK
open
Exploit-DB
Microsoft Internet Explorer 11/10/9 - MSHTML 'PROPERTYDESC::Handle­Style­Component­Property' Out-of-Bounds Read (MS16-104)
CVE-2016-332410 Nov 2016
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RISK
open
Exploit-DB
Microsoft WININET.dll - 'CHttp­Header­Parser::Parse­Status­Line' Out-of-Bounds Read (MS16-104/MS16-105)
CVE-2016-332510 Nov 2016
Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted w
35RISK
open
Exploit-DB
Microsoft Windows Kernel - 'win32k' Denial of Service (MS16-135)
CVE-2016-7255HIGHunder attack09 Nov 2016
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
93RISK
open
Exploit-DB
Microsoft Windows - LSASS SMB NTLM Exchange Null-Pointer Dereference (MS16-137)
CVE-2016-723709 Nov 2016
Local Security Authority Subsystem Service (LSASS) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, W
35RISK
open
Exploit-DB
Adobe Connect 9.5.7 - Cross-Site Scripting
CVE-2016-785109 Nov 2016
Adobe Connect version 9.5.6 and earlier does not adequately validate input in the events registration module. This vulne
23RISK
open
Exploit-DB
Microsoft Internet Explorer 8/9/10/11 / IIS / CScript.exe/WScript.exe VBScript - CRegExp..Execute Use of Uninitialized Memory (MS14-080/MS14-084)
CVE-2014-636307 Nov 2016
vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allo
28RISK
open
Exploit-DB
IBM AIX 5.3/6.1/7.1/7.2 - 'lquerylv' Local Privilege Escalation
CVE-2016-607904 Nov 2016
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to ob
23RISK
open
Exploit-DB
IBM AIX 6.1/7.1/7.2.0.2 - 'lsmcode' Local Privilege Escalation
CVE-2016-305304 Nov 2016
IBM AIX contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privile
23RISK
open
Exploit-DB
Citrix Receiver/Receiver Desktop Lock 4.5 - Authentication Bypass
CVE-2016-911102 Nov 2016
Incorrect access control mechanisms in Citrix Receiver Desktop Lock 4.5 allow an attacker to bypass the authentication r
23RISK
open
Exploit-DB
Alienvault OSSIM/USM 5.3.1 - PHP Object Injection
CVE-2016-858002 Nov 2016
PHP object injection vulnerabilities exist in multiple widget files in AlienVault OSSIM and USM before 5.3.2. These vuln
23RISK
open
Exploit-DB
Linux Kernel (Ubuntu / Fedora / RedHat) - 'Overlayfs' Local Privilege Escalation (Metasploit)
CVE-2015-132802 Nov 2016
The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does no
50RISK
open
Exploit-DB
Alienvault OSSIM/USM 5.3.1 - SQL Injection
CVE-2016-858202 Nov 2016
A vulnerability exists in gauge.php of AlienVault OSSIM and USM before 5.3.2 that allows an attacker to execute an arbit
50RISK
open
Exploit-DB
Alienvault OSSIM/USM 5.3.1 - Persistent Cross-Site Scripting
CVE-2016-858102 Nov 2016
A persistent XSS vulnerability exists in the User-Agent header of the login process of AlienVault OSSIM and USM before 5
43RISK
open
Exploit-DB
Microsoft Internet Explorer 9 - MSHTML CAttrArray Use-After-Free (MS14-056)
CVE-2014-414102 Nov 2016
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
35RISK
open
Exploit-DB
Bassmaster 1.5.1 - Batch Arbitrary JavaScript Injection Remote Code Execution (Metasploit)
CVE-2014-720502 Nov 2016
Eval injection vulnerability in the internals.batch function in lib/batch.js in the bassmaster plugin before 1.5.2 for t
60RISK
open
Exploit-DB
Linux Kernel (Ubuntu / Fedora / RedHat) - 'Overlayfs' Local Privilege Escalation (Metasploit)
CVE-2015-866002 Nov 2016
The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr op
43RISK
open
Exploit-DB
KarjaSoft Sami FTP Server 2.0.2 - USER/PASS Remote Buffer Overflow (SEH)
CVE-2006-044101 Nov 2016
Stack-based buffer overflow in Sami FTP Server 2.0.1 allows remote attackers to execute arbitrary code via a long USER c
60RISK
open
Exploit-DB
MySQL / MariaDB / PerconaDB 5.5.x/5.6.x/5.7.x - 'mysql' System User Privilege Escalation / Race Condition
CVE-2016-666301 Nov 2016
Race condition in Oracle MySQL before 5.5.52, 5.6.x before 5.6.33, 5.7.x before 5.7.15, and 8.x before 8.0.1; MariaDB be
23RISK
open
Exploit-DB
MySQL / MariaDB / PerconaDB 5.5.x/5.6.x/5.7.x - 'root' System User Privilege Escalation
CVE-2016-666401 Nov 2016
mysqld_safe in Oracle MySQL through 5.5.51, 5.6.x through 5.6.32, and 5.7.x through 5.7.14; MariaDB; Percona Server befo
23RISK
open
Exploit-DB
Micro Focus Rumba 9.3 - ActiveX Stack Buffer Overflow (PoC)
CVE-2016-522831 Oct 2016
Stack-based buffer overflow in the PlayMacro function in ObjectXMacro.ObjectXMacro in WdMacCtl.ocx in Micro Focus Rumba
28RISK
open
Exploit-DB
NVIDIA Driver - Stack Buffer Overflow in Escape 0x10000e9
CVE-2016-880731 Oct 2016
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 3
23RISK
open
Exploit-DB
Apple OS X/iOS - 'mach_ports_register' Multiple Memory Safety s
CVE-2016-466931 Oct 2016
An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS b
38RISK
open
Exploit-DB
Apple OS X Kernel - IOBluetoothFamily.kext Use-After-Free
CVE-2016-186331 Oct 2016
The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local user
23RISK
open
Exploit-DB
Apple OS X/iOS Kernel - IOSurface Use-After-Free
CVE-2016-462531 Oct 2016
Use-after-free vulnerability in IOSurface in Apple OS X before 10.11.6 allows local users to gain privileges via unspeci
23RISK
open
Exploit-DB
NVIDIA Driver - Unchecked Write to User-Provided Pointer in Escape 0x600000D
CVE-2016-738731 Oct 2016
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 3
23RISK
open
Exploit-DB
NVIDIA Driver - No Bounds Checking in Escape 0x7000170
CVE-2016-881131 Oct 2016
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 3
23RISK
open
Exploit-DB
NVIDIA Driver - Unchecked Write to User-Provided Pointer in Escape 0x700010d
CVE-2016-738531 Oct 2016
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 3
23RISK
open
Exploit-DB
NVIDIA Driver - UVMLiteController ioctl Handling Unchecked Input/Output Lengths Privilege Escalation
CVE-2016-738431 Oct 2016
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 3
23RISK
open
previouspage 153 / 760next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.