Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,230cataloged exploits
36,424CVEs with public exploitation
24,695lab-tested
24,695 exploits
Exploit-DBVexDay Proof
IBM Lotus Domino LDAP - Bind Request Remote Code Execution
CVE-2011-0917doswindows18 Feb 2011
Buffer overflow in nLDAP.exe in IBM Lotus Domino allows remote attackers to execute arbitrary code via a long string in
28RISK
open
Exploit-DBVexDay Proof
Novell ZENworks 10/11 - TFTPD Remote Code Execution
CVE-2010-4323doswindows18 Feb 2011
Heap-based buffer overflow in novell-tftp.exe in Novell ZENworks Configuration Manager (ZCM) 10.3.1, 10.3.2, and 11.0, a
23RISK
open
Exploit-DBVexDay Proof
Novell Iprint - LPD Remote Code Execution
CVE-2010-4328doslinux18 Feb 2011
Multiple stack-based buffer overflows in opt/novell/iprint/bin/ipsmd in Novell iPrint for Linux Open Enterprise Server 2
28RISK
open
Exploit-DBVexDay Proof
WSN Guest 1.24 - 'wsnuser' Cookie SQL Injection
CVE-2011-1060webappsphp18 Feb 2011
SQL injection vulnerability in the member function in classes/member.php in WSN Guest 1.24 allows remote attackers to ex
23RISK
open
Exploit-DBVexDay Proof
PHP 5.3.5 - 'grapheme_extract()' Null Pointer Dereference
CVE-2011-0420doslinux17 Feb 2011
The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependen
28RISK
open
Exploit-DBVexDay Proof
Microsoft Server Service - NetpwPathCanonicalize Overflow (MS06-040) (Metasploit)
CVE-2006-3439remotewindows17 Feb 2011
Buffer overflow in the Server Service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote a
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Print Spooler Service Impersonation (MS10-061) (Metasploit)
CVE-2010-2729remotewindows17 Feb 2011
The Print Spooler service in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windo
60RISK
open
Exploit-DBVexDay Proof
PHP 5.3.5 - 'grapheme_extract()' Null Pointer Dereference Denial of Service
CVE-2011-0420dosphp17 Feb 2011
The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependen
28RISK
open
Exploit-DBVexDay Proof
Rae Media Real Estate Multi Agent - SQL Injection
CVE-2010-4738webappsasp16 Feb 2011
Multiple SQL injection vulnerabilities in Rae Media INC Real Estate Single and Multi Agent System 3.0 allow remote attac
23RISK
open
Exploit-DBVexDay Proof
Ruby on Rails 3.0.5 - 'WEBrick::HTTPRequest' Module HTTP Header Injection
CVE-2011-3187remotemultiple16 Feb 2011
The to_s method in actionpack/lib/action_dispatch/middleware/remote_ip.rb in Ruby on Rails 3.0.5 does not validate the X
23RISK
open
Exploit-DBVexDay Proof
Rae Media Real Estate Single Agent - SQL Injection
CVE-2010-4738webappsasp16 Feb 2011
Multiple SQL injection vulnerabilities in Rae Media INC Real Estate Single and Multi Agent System 3.0 allow remote attac
23RISK
open
Exploit-DBVexDay Proof
Lingxia I.C.E CMS - Blind SQL Injection
CVE-2011-1055webappscfm15 Feb 2011
SQL injection vulnerability in api/ice_media.cfc in Lingxia I.C.E CMS 1.0 allows remote attackers to execute arbitrary S
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2003 - AD BROWSER ELECTION Remote Heap Overflow
CVE-2011-0654doswindows14 Feb 2011
Integer underflow in the BowserWriteErrorLogEntry function in the Common Internet File System (CIFS) browser service in
50RISK
open
Exploit-DBVexDay Proof
TaskFreak! 0.6.4 - 'rss.php' HTTP Referer Header Cross-Site Scripting
CVE-2011-1062webappsphp12 Feb 2011
Multiple cross-site scripting (XSS) vulnerabilities in include/html/header.php in TaskFreak! 0.6.4 allow remote attacker
23RISK
open
Exploit-DBVexDay Proof
TaskFreak! 0.6.4 - 'print_list.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2011-1062webappsphp12 Feb 2011
Multiple cross-site scripting (XSS) vulnerabilities in include/html/header.php in TaskFreak! 0.6.4 allow remote attacker
23RISK
open
Exploit-DBVexDay Proof
TaskFreak! 0.6.4 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2011-1062webappsphp12 Feb 2011
Multiple cross-site scripting (XSS) vulnerabilities in include/html/header.php in TaskFreak! 0.6.4 allow remote attacker
23RISK
open
Exploit-DBVexDay Proof
Horde - Horde_Image::factory driver Argument Local File Inclusion
CVE-2009-0932webappsphp11 Feb 2011
Directory traversal vulnerability in framework/Image/Image.php in Horde before 3.2.4 and 3.3.3 and Horde Groupware befor
50RISK
open
Exploit-DBVexDay Proof
ManageEngine ADSelfService Plus 4.4 - 'EmployeeSearch.cc' Multiple Cross-Site Scripting Vulnerabilities
CVE-2010-3274webappsphp10 Feb 2011
Multiple cross-site scripting (XSS) vulnerabilities in EmployeeSearch.cc in the Employee Search Engine in ZOHO ManageEng
28RISK
open
Exploit-DBVexDay Proof
ManageEngine ADSelfService Plus 4.4 - POST Manipulation Security Question
CVE-2010-3272webappsphp10 Feb 2011
accounts/ValidateAnswers in the security-questions implementation in ZOHO ManageEngine ADSelfService Plus before 4.5 Bui
23RISK
open
Exploit-DBVexDay Proof
MihanTools Script 1.3.3 - SQL Injection
CVE-2011-1048webappsphp09 Feb 2011
SQL injection vulnerability in product.php in MihanTools 1.33 allows remote attackers to execute arbitrary SQL commands
23RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CSS Recursive Import Use-After-Free (MS11-003) (Metasploit)
CVE-2010-3971remotewindows08 Feb 2011
Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in msh
60RISK
open
Exploit-DBVexDay Proof
Microsoft SQL Server - sp_replwritetovarbin Memory Corruption (MS09-004) (via SQL Injection) (Metasploit)
CVE-2008-5416remotewindows08 Feb 2011
Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and earlier; SQL Server 2000 Desktop
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - CreateSizedDIBSECTION Stack Buffer Overflow (MS11-006) (Metasploit)
CVE-2010-3970localwindows08 Feb 2011
Stack-based buffer overflow in the CreateSizedDIBSECTION function in shimgvw.dll in the Windows Shell graphics processor
50RISK
open
Exploit-DBVexDay Proof
Microsoft SQL Server - Payload Execution (via SQL Injection) (Metasploit)
CVE-2000-0402remotewindows08 Feb 2011
The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in pla
60RISK
open
Exploit-DBVexDay Proof
Microsoft SQL Server - Payload Execution (via SQL Injection) (Metasploit)
CVE-2000-1209remotewindows08 Feb 2011
The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3)
60RISK
open
Exploit-DBVexDay Proof
VideoLAN VLC Media Player 1.1.6 - 'MKV' Memory Corruption (Metasploit)
CVE-2011-0531localwindows08 Feb 2011
demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to
50RISK
open
Exploit-DBVexDay Proof
Comcast DOCSIS 3.0 Business Gateways - Multiple Vulnerabilities
CVE-2011-0885remotehardware06 Feb 2011
A certain Comcast Business Gateway configuration of the SMC SMCD3G-CCR with firmware before 1.4.0.49.2 has a default pas
28RISK
open
Exploit-DBVexDay Proof
Comcast DOCSIS 3.0 Business Gateways - Multiple Vulnerabilities
CVE-2011-0887remotehardware06 Feb 2011
The web management portal on the SMC SMCD3G-CCR (aka Comcast Business Gateway) with firmware before 1.4.0.49.2 uses pred
23RISK
open
Exploit-DBVexDay Proof
Comcast DOCSIS 3.0 Business Gateways - Multiple Vulnerabilities
CVE-2011-0886remotehardware06 Feb 2011
Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface on the SMC SMCD3G-CCR (aka Comcast Busin
23RISK
open
Exploit-DBVexDay Proof
Majordomo2 - 'SMTP/HTTP' Directory Traversal
CVE-2011-0063remotemultiple03 Feb 2011
The _list_file_get function in lib/Majordomo.pm in Majordomo 2 20110203 and earlier allows remote attackers to conduct d
60RISK
open
previouspage 161 / 824next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.