Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,230cataloged exploits
36,424CVEs with public exploitation
24,695lab-tested
24,695 exploits
Exploit-DBVexDay Proof
Procyon Core Server HMI 1.13 - 'Coreservice.exe' Remote Stack Buffer Overflow (Metasploit)
CVE-2011-3322remotewindows12 Sep 2011
Core Server HMI Service (Coreservice.exe) in Scadatec Limited Procyon SCADA 1.06, and other versions before 1.14, allows
50RISK
open
Exploit-DBVexDay Proof
ScadaTEC ModbusTagServer & ScadaPhone - '.zip' Local Buffer Overflow
CVE-2011-4535localwindows12 Sep 2011
Buffer overflow in TurboPower Abbrevia before 4.0, as used in ScadaTEC ScadaPhone 5.3.11.1230 and earlier, ScadaTEC Modb
43RISK
open
Exploit-DBVexDay Proof
KnFTP Server - Remote Buffer Overflow
CVE-2011-5166remotewindows12 Sep 2011
Multiple stack-based buffer overflows in KnFTP 1.0.0 allow remote attackers to execute arbitrary code via a long string
23RISK
open
Exploit-DBVexDay Proof
BisonWare BisonFTP Server 3.5 - Remote Buffer Overflow (Metasploit)
CVE-1999-1510remotewindows09 Sep 2011
Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly
50RISK
open
Exploit-DBVexDay Proof
MYRE Real Estate Software - Multiple Vulnerabilities
CVE-2011-3393webappsphp09 Sep 2011
Multiple cross-site scripting (XSS) vulnerabilities in findagent.php in MYRE Real Estate Software allow remote attackers
23RISK
open
Exploit-DBVexDay Proof
Spring Security - HTTP Header Injection
CVE-2011-2732remotemultiple09 Sep 2011
CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x b
23RISK
open
Exploit-DBVexDay Proof
MYRE Real Estate Software - Multiple Vulnerabilities
CVE-2011-3394webappsphp09 Sep 2011
SQL injection vulnerability in findagent.php in MYRE Real Estate Software allows remote attackers to execute arbitrary S
23RISK
open
Exploit-DBVexDay Proof
Wireshark 1.6.1 - Malformed Packet Trace File Remote Denial of Service
CVE-2011-3483doswindows08 Sep 2011
Wireshark 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (application crash) via a malformed ca
23RISK
open
Exploit-DBVexDay Proof
DVD X Player 5.5 Pro - Overwrite (SEH)
CVE-2007-3068localwindows06 Sep 2011
Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF
50RISK
open
Exploit-DBVexDay Proof
Linux Kernel < 2.6.36.2 (Ubuntu 10.04) - 'Half-Nelson.c' Econet Privilege Escalation
CVE-2010-3848locallinux05 Sep 2011
Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2
23RISK
open
Exploit-DBVexDay Proof
Linux Kernel < 2.6.36.2 (Ubuntu 10.04) - 'Half-Nelson.c' Econet Privilege Escalation
CVE-2010-3850locallinux05 Sep 2011
The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADM
23RISK
open
Exploit-DBVexDay Proof
Linux Kernel < 2.6.36.2 (Ubuntu 10.04) - 'Half-Nelson.c' Econet Privilege Escalation
CVE-2010-4073locallinux05 Sep 2011
The ipc subsystem in the Linux kernel before 2.6.37-rc1 does not initialize certain structures, which allows local users
23RISK
open
Exploit-DBVexDay Proof
Zikula Application Framework 1.2.7/1.3 - 'themename' Cross-Site Scripting
CVE-2011-3979webappsphp05 Sep 2011
Cross-site scripting (XSS) vulnerability in ztemp/view_compiled/Theme/theme_admin_setasdefault.php in the theme module i
23RISK
open
Exploit-DBVexDay Proof
Apple QuickTime - PICT PnSize Buffer Overflow (Metasploit)
CVE-2011-0257localwindows03 Sep 2011
Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a deni
50RISK
open
Exploit-DBVexDay Proof
DVD X Player 5.5 - '.plf' Playlist Buffer Overflow (Metasploit)
CVE-2007-3068localwindows01 Sep 2011
Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF
50RISK
open
Exploit-DBVexDay Proof
Citrix Gateway - ActiveX Control Stack Buffer Overflow (Metasploit)
CVE-2011-2882remotewindows31 Aug 2011
Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Ed
50RISK
open
Exploit-DBVexDay Proof
MapServer 6.0 - '.Map' File Double-Free Remote Denial of Service
CVE-2011-2975doswindows30 Aug 2011
Double free vulnerability in the msAddImageSymbol function in mapsymbol.c in MapServer before 6.0.1 might allow remote a
23RISK
open
Exploit-DBVexDay Proof
IBM Open Admin Tool 2.71 - Multiple Cross-Site Scripting Vulnerabilities
CVE-2011-3390webappsphp30 Aug 2011
Multiple cross-site scripting (XSS) vulnerabilities in index.php in IBM OpenAdmin Tool (OAT) before 2.72 for Informix al
23RISK
open
Exploit-DBVexDay Proof
LifeSize Room - Command Injection (Metasploit)
CVE-2011-2763webappsphp28 Aug 2011
The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) and 4.7.18 allows remote attackers to execute arbitra
50RISK
open
Exploit-DBVexDay Proof
Free MP3 CD Ripper 1.1 - Local Buffer Overflow
CVE-2011-5165localwindows27 Aug 2011
Stack-based buffer overflow in Free MP3 CD Ripper 1.1, 2.6 and earlier, when converting a file, allows user-assisted rem
50RISK
open
Exploit-DBVexDay Proof
RealVNC - Authentication Bypass (Metasploit)
CVE-2006-2369remotewindows26 Aug 2011
RealVNC 4.1.1, and other products that use RealVNC such as AdderLink IP and Cisco CallManager, allows remote attackers t
60RISK
open
Exploit-DBVexDay Proof
Adobe Photoshop CS5 - '.gif' Remote Code Execution
CVE-2011-2131doswindows22 Aug 2011
Adobe Photoshop 12.0 in Creative Suite 5 (CS5) and 12.1 in Creative Suite 5.1 (CS5.1) allows remote attackers to execute
28RISK
open
Exploit-DBVexDay Proof
HP Easy Printer Care - XMLSimpleAccessor Class ActiveX Control Remote Code Execution (Metasploit)
CVE-2011-2404remotewindows20 Aug 2011
A certain ActiveX control in HPTicketMgr.dll in HP Easy Printer Care Software 2.5 and earlier allows remote attackers to
60RISK
open
Exploit-DBVexDay Proof
Apache Struts < 2.2.0 - Remote Command Execution (Metasploit)
CVE-2010-1870remotemultiple19 Aug 2011
The OGNL extensive expression evaluation capability in XWork in Struts 2.0.0 through 2.1.8.1, as used in Atlassian Fishe
60RISK
open
Exploit-DBVexDay Proof
Oracle Secure Backup - Authentication Bypass/Command Injection (Metasploit)
CVE-2010-0904webappsphp19 Aug 2011
Unspecified vulnerability in Oracle Secure Backup 10.3.0.1 allows remote attackers to affect integrity via unknown vecto
50RISK
open
Exploit-DBVexDay Proof
PHP < 5.3.7 - Multiple Null Pointer Dereference Denial of Service Vulnerabilities
CVE-2011-3182dosphp19 Aug 2011
PHP before 5.3.7 does not properly check the return values of the malloc, calloc, and realloc library functions, which a
28RISK
open
Exploit-DBVexDay Proof
Symantec System Center Alert Management System - 'xfr.exe' Arbitrary Command Execution (Metasploit)
CVE-2009-1429remotewindows19 Aug 2011
The Intel LANDesk Common Base Agent (CBA) in Symantec Alert Management System 2 (AMS2), as used in Symantec System Cente
60RISK
open
Exploit-DBVexDay Proof
Mantis Bug Tracker 1.1.8 - Cross-Site Scripting / SQL Injection
CVE-2011-2938webappsphp18 Aug 2011
Multiple cross-site scripting (XSS) vulnerabilities in filter_api.php in MantisBT before 1.2.7 allow remote attackers to
23RISK
open
Exploit-DBVexDay Proof
Mozilla Firefox 3.6.16 (Windows 7) - mChannel Object Use-After-Free
CVE-2011-0065remotewindows16 Aug 2011
Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allo
60RISK
open
Exploit-DBVexDay Proof
Microsoft MPEG Layer-3 Audio - Stack Overflow (MS10-026) (Metasploit)
CVE-2010-0480remotewindows13 Aug 2011
Multiple stack-based buffer overflows in the MPEG Layer-3 audio codecs in Microsoft Windows 2000 SP4, XP SP2 and SP3, Se
50RISK
open
previouspage 153 / 824next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.