Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,230cataloged exploits
36,424CVEs with public exploitation
24,695lab-tested
24,695 exploits
Exploit-DBVexDay Proof
PHP < 5.3.6 'OpenSSL' Extension - 'openssl_encrypt' Plaintext Data Memory Leak Denial of Service
CVE-2011-1468dosphp08 Mar 2011
Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of ser
28RISK
open
Exploit-DBVexDay Proof
PHP < 5.3.6 'OpenSSL' Extension - 'openssl_decrypt' Ciphertext Data Memory Leak Denial of Service
CVE-2011-1468dosphp08 Mar 2011
Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of ser
28RISK
open
Exploit-DBVexDay Proof
Kodak InSite 5.5.2 - '/Troubleshooting/DiagnosticReport.asp?HeaderWarning' Cross-Site Scripting
CVE-2011-1427webappsasp07 Mar 2011
Multiple cross-site scripting (XSS) vulnerabilities in Kodak InSite 5.5.2 allow remote attackers to inject arbitrary web
23RISK
open
Exploit-DBVexDay Proof
Kodak InSite 5.5.2 - '/Pages/login.aspx?Language' Cross-Site Scripting
CVE-2011-1427webappsasp07 Mar 2011
Multiple cross-site scripting (XSS) vulnerabilities in Kodak InSite 5.5.2 allow remote attackers to inject arbitrary web
23RISK
open
Exploit-DBVexDay Proof
Novell iPrint Client 5.52 - ActiveX Control Buffer Overflow (Metasploit)
CVE-2010-4321remotewindows07 Mar 2011
Stack-based buffer overflow in an ActiveX control in ienipp.ocx in Novell iPrint Client 5.52 allows remote attackers to
50RISK
open
Exploit-DBVexDay Proof
KingView 6.5.3 SCADA - ActiveX
CVE-2011-3142remotewindows07 Mar 2011
Stack-based buffer overflow in an ActiveX control in KVWebSvr.dll in WellinTech KingView 6.52 and 6.53 allows remote att
35RISK
open
Exploit-DBVexDay Proof
vTiger CRM 5.0.4 - Local File Inclusion
CVE-2009-3249webappsphp05 Mar 2011
Multiple directory traversal vulnerabilities in vtiger CRM 5.0.4 allow remote attackers to include and execute arbitrary
23RISK
open
Exploit-DBVexDay Proof
nostromo nhttpd 1.9.3 - Directory Traversal Remote Command Execution
CVE-2011-0751remotelinux05 Mar 2011
Directory traversal vulnerability in nhttpd (aka Nostromo webserver) before 1.9.4 allows remote attackers to execute arb
23RISK
open
Exploit-DBVexDay Proof
Apple Mail.app - Image Attachment Command Execution (Metasploit)
CVE-2007-6165remotemultiple05 Mar 2011
Mail in Apple Mac OS X Leopard (10.5.1) allows user-assisted remote attackers to execute arbitrary code via an AppleDoub
50RISK
open
Exploit-DBVexDay Proof
Apple Mail.app - Image Attachment Command Execution (Metasploit)
CVE-2006-0395remotemultiple05 Mar 2011
The Download Validation in Mail in Mac OS X 10.4 does not properly recognize attachment file types to warn a user of an
50RISK
open
Exploit-DBVexDay Proof
Allied Telesyn TFTP (AT-TFTP) Server/Daemon 1.9 - Long Filename Overflow (Metasploit)
CVE-2006-6184remotewindows05 Mar 2011
Multiple stack-based buffer overflows in Allied Telesyn TFTP Server (AT-TFTP) 1.9, and possibly earlier, allow remote at
50RISK
open
Exploit-DBVexDay Proof
Microsoft Word - '.RTF' pFragments Stack Buffer Overflow (File Format) (MS10-087) (Metasploit)
CVE-2010-3333HIGHunder attacklocalwindows04 Mar 2011
Stack-based buffer overflow in Microsoft Office XP SP3, Office 2003 SP3, Office 2007 SP2, Office 2010, Office 2004 and 2
100RISK
open
Exploit-DBVexDay Proof
Microsoft .NET Framework JIT Compiler - Optimization NULL String Remote Code Execution
CVE-2011-1271HIGHremotewindows04 Mar 2011
The JIT compiler in Microsoft .NET Framework 3.5 Gold and SP1, 3.5.1, and 4.0, when IsJITOptimizerDisabled is false, doe
46RISK
open
Exploit-DBVexDay Proof
JBoss Application Server 4.2 < 4.2.0.CP09 / 4.3 < 4.3.0.CP08 - Remote Command Execution
CVE-2010-0738MEDIUMunder attackransomwarewebappsjsp04 Mar 2011
The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2
100RISK
open
Exploit-DBVexDay Proof
Citrix Access Gateway - Command Execution (Metasploit)
CVE-2010-4566remotelinux03 Mar 2011
The web authentication form in the NT4 authentication component in Citrix Access Gateway Enterprise Edition 9.2-49.8 and
43RISK
open
Exploit-DBVexDay Proof
NetSupport Manager Agent - Remote Buffer Overflow (Metasploit) (2)
CVE-2011-0404remotelinux03 Mar 2011
Stack-based buffer overflow in NetSupport Manager Agent for Linux 11.00, for Solaris 9.50, and for Mac OS X 11.00 allows
50RISK
open
Exploit-DBVexDay Proof
Linux Kernel 2.6.x - fs/eventpoll.c epoll Data Structure File Descriptor Local Denial of Service
CVE-2011-1082doslinux02 Mar 2011
fs/eventpoll.c in the Linux kernel before 2.6.38 places epoll file descriptors within other epoll data structures withou
23RISK
open
Exploit-DBVexDay Proof
Linux Kernel 2.6.x - epoll Nested Structures Local Denial of Service
CVE-2011-1083doslinux02 Mar 2011
The epoll implementation in the Linux kernel 2.6.37.2 and earlier does not properly traverse a tree of epoll file descri
23RISK
open
Exploit-DBVexDay Proof
vsftpd 2.3.2 - Denial of Service
CVE-2011-0762doslinux02 Mar 2011
The vsf_filename_passes_filter function in ls.c in vsftpd before 2.3.3 allows remote authenticated users to cause a deni
60RISK
open
Exploit-DBVexDay Proof
Linux Kernel 2.6.37 - Local Kernel Denial of Service (1)
CVE-2010-4165doslinux02 Mar 2011
The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MA
23RISK
open
Exploit-DBVexDay Proof
Wireshark 1.4.3 - NTLMSSP Null Pointer Dereference Denial of Service
CVE-2011-1143doslinux01 Mar 2011
epan/dissectors/packet-ntlmssp.c in the NTLMSSP dissector in Wireshark before 1.4.4 allows remote attackers to cause a d
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows XP - WmiTraceMessageVa Integer Truncation (PoC) (MS11-011)
CVE-2011-0045doswindows01 Mar 2011
The Trace Events functionality in the kernel in Microsoft Windows XP SP3 does not properly perform type conversion, whic
23RISK
open
Exploit-DBVexDay Proof
PHP 'Exif' Extension - 'exif_read_data()' Remote Denial of Service
CVE-2011-0708dosmultiple28 Feb 2011
exif.c in the Exif extension in PHP before 5.3.6 on 64-bit platforms performs an incorrect cast, which allows remote att
23RISK
open
Exploit-DBVexDay Proof
EMC Replication Manager < 5.3 - Command Execution (Metasploit)
CVE-2011-0647localwindows27 Feb 2011
The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x
50RISK
open
Exploit-DBVexDay Proof
Novell Netware - RPC XNFS xdrDecodeString
CVE-2010-4227dosnetware24 Feb 2011
The xdrDecodeString function in XNFS.NLM in Novell Netware 6.5 before SP8 allows remote attackers to cause a denial of s
28RISK
open
Exploit-DBVexDay Proof
Logwatch Log File - Special Characters Privilege Escalation
CVE-2011-1018remotelinux24 Feb 2011
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log fi
28RISK
open
Exploit-DBVexDay Proof
CesarFTP 0.99g - 'MKD' Remote Buffer Overflow (Metasploit) (2)
CVE-2006-2961remotewindows23 Feb 2011
Stack-based buffer overflow in CesarFTP 0.99g and earlier allows remote attackers to cause a denial of service (applicat
50RISK
open
Exploit-DBVexDay Proof
IBM Lotus Sametime Server 8.0 - 'stcenter.nsf' Cross-Site Scripting
CVE-2011-1106webappsphp22 Feb 2011
Cross-site scripting (XSS) vulnerability in stcenter.nsf in the server in IBM Lotus Sametime allows remote attackers to
23RISK
open
Exploit-DBVexDay Proof
Mozilla Firefox - Interleaving 'document.write' / 'appendChild' (Metasploit)
CVE-2010-3765CRITICALunder attackremotewindows22 Feb 2011
Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, a
100RISK
open
Exploit-DBVexDay Proof
IBM Lotus Sametime - '/stconf.nsf/WebMessage?messageString' Cross-Site Scripting
CVE-2011-1038remotemultiple21 Feb 2011
Multiple cross-site scripting (XSS) vulnerabilities in stconf.nsf in the server in IBM Lotus Sametime 8.0.1 allow remote
23RISK
open
previouspage 160 / 824next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.