Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

72,018cataloged exploits
32,219CVEs with public exploitation
1,932lab-tested
22,786 exploits
Exploit-DB
Novell ServiceDesk 6.5/7.0.3/7.1.0 - Multiple Vulnerabilities
CVE-2016-159611 Apr 2016
Multiple cross-site scripting (XSS) vulnerabilities in Micro Focus Novell Service Desk before 7.2 allow remote authentic
23RISK
open
Exploit-DB
Novell ServiceDesk 6.5/7.0.3/7.1.0 - Multiple Vulnerabilities
CVE-2016-159411 Apr 2016
Micro Focus Novell Service Desk before 7.2 allows remote authenticated users to read arbitrary attachments via a request
23RISK
open
Exploit-DB
Google Android - IMemory Native Interface is Insecure for IPC Use
CVE-2016-084611 Apr 2016
libs/binder/IMemory.cpp in the IMemory Native Interface in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.
23RISK
open
Exploit-DB
Novell ServiceDesk 6.5/7.0.3/7.1.0 - Multiple Vulnerabilities
CVE-2016-159311 Apr 2016
Directory traversal vulnerability in the import users feature in Micro Focus Novell Service Desk before 7.2 allows remot
50RISK
open
Exploit-DB
Google Android - IOMX 'getConfig'/'getParameter' Information Disclosure
CVE-2016-241711 Apr 2016
media/libmedia/IOMX.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x befo
23RISK
open
Exploit-DB
Novell ServiceDesk 6.5/7.0.3/7.1.0 - Multiple Vulnerabilities
CVE-2016-159511 Apr 2016
LiveTime/WebObjects/LiveTime.woa/wa/DownloadAction/downloadFile in Micro Focus Novell Service Desk before 7.2 allows rem
23RISK
open
Exploit-DB
Apple Intel HD 3000 Graphics Driver 10.0.0 - Local Privilege Escalation
CVE-2016-174308 Apr 2016
The Intel driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary co
23RISK
open
Exploit-DB
ExaGrid - Known SSH Key and Default Password (Metasploit)
CVE-2016-156107 Apr 2016
ExaGrid appliances with firmware before 4.8 P26 have a default SSH public key in the authorized_keys file for root, whic
60RISK
open
Exploit-DB
ExaGrid - Known SSH Key and Default Password (Metasploit)
CVE-2016-156007 Apr 2016
ExaGrid appliances with firmware before 4.8 P26 have a default password of (1) inflection for the root shell account and
60RISK
open
Exploit-DB
Linux Kernel (x86) - Disable ASLR by Setting the RLIMIT_STACK Resource to Unlimited
CVE-2016-367206 Apr 2016
The arch_pick_mmap_layout function in arch/x86/mm/mmap.c in the Linux kernel through 4.5.2 does not properly randomize t
23RISK
open
Exploit-DB
Panda Endpoint Administration Agent < 7.50.00 - Local Privilege Escalation
CVE-2016-394306 Apr 2016
Panda Endpoint Administration Agent before 7.50.00, as used in Panda Security for Business products for Windows, uses a
23RISK
open
Exploit-DB
Microsoft Internet Explorer - MSHTML!CSVGHelpers::SetAttributeStringAndPointer Use-After-Free (MS16-023)
CVE-2016-011105 Apr 2016
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a
35RISK
open
Exploit-DB
Microsoft Windows Kernel - 'win32k.sys' Local Privilege Escalation (MS14-058)
CVE-2014-4113HIGHunder attack05 Apr 2016
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 a
100RISK
open
Exploit-DB
Hexchat IRC Client 2.11.0 - CAP LS Handling Buffer Overflow
CVE-2016-223304 Apr 2016
Stack-based buffer overflow in the inbound_cap_ls function in common/inbound.c in HexChat 2.10.2 allows remote IRC serve
35RISK
open
Exploit-DB
Hexchat IRC Client 2.11.0 - Directory Traversal
CVE-2016-208704 Apr 2016
Directory traversal vulnerability in the client in HexChat 2.11.0 allows remote IRC servers to read or modify arbitrary
23RISK
open
Exploit-DB
DameWare Remote Controller < 12.0.0.520 - Remote Code Execution
CVE-2016-234503 Apr 2016
Stack-based buffer overflow in dwrcs.exe in the dwmrcs daemon in SolarWinds DameWare Mini Remote Control 12.0 allows rem
35RISK
open
Exploit-DB
PHP 5.5.33/7.0.4 - SNMP Format String
CVE-2016-407101 Apr 2016
Format string vulnerability in the php_snmp_error function in ext/snmp/snmp.c in PHP before 5.5.34, 5.6.x before 5.6.20,
28RISK
open
Exploit-DB
Microsoft Windows Kernel - Bitmap Use-After-Free
CVE-2016-009401 Apr 2016
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, W
23RISK
open
Exploit-DB
Adobe Flash - textfield.maxChars Use-After-Free
CVE-2015-842601 Apr 2016
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DB
Adobe Flash - URLStream.readObject Use-After-Free
CVE-2015-804801 Apr 2016
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DB
Microsoft Windows Kernel - 'NtGdiGetTextExtentExW' Out-of-Bounds Memory Read
CVE-2016-009301 Apr 2016
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, W
23RISK
open
Exploit-DB
Adobe Flash - Color.setTransform Use-After-Free
CVE-2015-557401 Apr 2016
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and
35RISK
open
Exploit-DB
Apache OpenMeetings 1.9.x < 3.1.0 - '.ZIP' File Directory Traversal
CVE-2016-078431 Mar 2016
Directory traversal vulnerability in the Import/Export System Backups functionality in Apache OpenMeetings before 3.1.1
35RISK
open
Exploit-DB
Apache Jetspeed - Arbitrary File Upload (Metasploit)
CVE-2016-071031 Mar 2016
Multiple SQL injection vulnerabilities in the User Manager service in Apache Jetspeed before 2.3.1 allow remote attacker
50RISK
open
Exploit-DB
Apache Jetspeed - Arbitrary File Upload (Metasploit)
CVE-2016-070931 Mar 2016
Directory traversal vulnerability in the Import/Export function in the Portal Site Manager in Apache Jetspeed before 2.3
60RISK
open
Exploit-DB
Apple QuickTime < 7.7.79.80.95 - '.FPX' Parsing Memory Corruption (2)
CVE-2016-176830 Mar 2016
QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (m
28RISK
open
Exploit-DB
Google Android 5.0.1 - Metaphor Stagefright (ASLR Bypass)
CVE-2015-386430 Mar 2016
Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in A
60RISK
open
Exploit-DB
Kamailio 4.3.4 - Heap Buffer Overflow
CVE-2016-238530 Mar 2016
Heap-based buffer overflow in the encode_msg function in encode_msg.c in the SEAS module in Kamailio (formerly OpenSER a
35RISK
open
Exploit-DB
Apple QuickTime < 7.7.79.80.95 - '.FPX' Parsing Memory Corruption (1)
CVE-2016-176730 Mar 2016
QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (m
23RISK
open
Exploit-DB
Apple QuickTime < 7.7.79.80.95 - '.PSD' Parsing Memory Corruption
CVE-2016-176930 Mar 2016
QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (m
23RISK
open
previouspage 164 / 760next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.