Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,945cataloged exploits
36,198CVEs with public exploitation
24,695lab-tested
19,066 exploits
Exploit-DBVexDay Proof
Joomla! Component Music Collection 3.0.3 - SQL Injection
CVE-2018-17375webappsphp25 Sep 2018
SQL Injection exists in the Music Collection 3.0.3 component for Joomla! via the id parameter.
23RISK
open
Exploit-DBVexDay Proof
Super Cms Blog Pro 1.0 - SQL Injection
CVE-2018-17391webappsphp25 Sep 2018
SQL Injection exists in authors_post.php in Super Cms Blog Pro 1.0 via the author parameter.
23RISK
open
Exploit-DBVexDay Proof
WebRTC - VP9 Processing Use-After-Free
CVE-2018-16071dosmultiple21 Sep 2018
A use after free in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap
23RISK
open
Exploit-DBVexDay Proof
WebRTC - FEC Out-of-Bounds Read
CVE-2018-16083dosmultiple21 Sep 2018
An out of bounds read in forward error correction code in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - 'CiSetFileCache' WDAC Security Feature Bypass TOCTOU
CVE-2018-8449doswindows19 Sep 2018
A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security F
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Double Dereference in NtEnumerateKey Elevation of Privilege
CVE-2018-8410doswindows19 Sep 2018
An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory
23RISK
open
Exploit-DBVexDay Proof
Microsoft Edge Chakra JIT - 'localeCompare' Type Confusion
CVE-2018-8355doswindows18 Sep 2018
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow
35RISK
open
Exploit-DBVexDay Proof
Microsoft Edge Chakra - 'PathTypeHandlerBase::SetAttributesHelper' Type Confusion
CVE-2018-8384doswindows18 Sep 2018
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi
35RISK
open
Exploit-DBVexDay Proof
Solaris - libnspr NSPR_LOG_FILE Privilege Escalation (Metasploit)
CVE-2006-4842localsolaris18 Sep 2018
The Netscape Portable Runtime (NSPR) API 4.6.1 and 4.6.2, as used in Sun Solaris 10, trusts user-specified environment v
38RISK
open
Exploit-DBVexDay Proof
Joomla! Component JCK Editor 6.4.4 - 'parent' SQL Injection
CVE-2018-17254webappsphp17 Sep 2018
The JCK Editor component 6.4.4 for Joomla! allows SQL Injection via the jtreelink/dialogs/links.php parent parameter.
60RISK
open
Exploit-DBVexDay Proof
IBM Identity Governance and Intelligence 5.2.3.2 / 5.2.4 - SQL Injection
CVE-2018-1756HIGHwebappsphp12 Sep 2018
IBM Security Identity Governance and Intelligence 5.2.3.2 and 5.2.4 is vulnerable to SQL injection. A remote attacker co
46RISK
open
Exploit-DBVexDay Proof
Android - 'zygote->init;' Chain from USB Privilege Escalation
CVE-2018-9488localandroid11 Sep 2018
In the SELinux permissions of crash_dump.te, there is a permissions bypass due to a missing restriction. This could lead
23RISK
open
Exploit-DBVexDay Proof
Ghostscript - Failed Restore Command Execution (Metasploit)
CVE-2018-16509locallinux10 Sep 2018
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handlin
60RISK
open
Exploit-DBVexDay Proof
Apache Struts 2 - Namespace Redirect OGNL Injection (Metasploit)
CVE-2018-11776HIGHunder attackremotemultiple10 Sep 2018
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Execution when alwaysSelectFullN
100RISK
open
Exploit-DBVexDay Proof
Jorani Leave Management 0.6.5 - (Authenticated) 'startdate' SQL Injection
CVE-2018-15918webappsphp06 Sep 2018
An issue was discovered in Jorani 0.6.5. SQL Injection (error-based) allows a user of the application without permission
23RISK
open
Exploit-DBVexDay Proof
Network Manager VPNC 1.2.6 - 'Username' Local Privilege Escalation (Metasploit)
CVE-2018-10900HIGHlocallinux31 Aug 2018
Network Manager VPNC plugin (aka networkmanager-vpnc) before version 1.2.6 is vulnerable to a privilege escalation attac
56RISK
open
Exploit-DBVexDay Proof
Cybrotech CyBroHttpServer 1.0.3 - Cross-Site Scripting
CVE-2018-16134webappswindows_x86-6430 Aug 2018
Cybrotech CyBroHttpServer 1.0.3 allows XSS via a URI.
23RISK
open
Exploit-DBVexDay Proof
Cybrotech CyBroHttpServer 1.0.3 - Directory Traversal
CVE-2018-16133webappswindows_x86-6430 Aug 2018
Cybrotech CyBroHttpServer 1.0.3 allows Directory Traversal via a ../ in the URI.
50RISK
open
Exploit-DBVexDay Proof
Argus Surveillance DVR 4.0.0.0 - Directory Traversal
CVE-2018-15745webappswindows_x8629 Aug 2018
Argus Surveillance DVR 4.0.0.0 devices allow Unauthenticated Directory Traversal, leading to File Disclosure via a ..%2F
60RISK
open
Exploit-DBVexDay Proof
phpMyAdmin 4.7.x - Cross-Site Request Forgery
CVE-2017-1000499webappsphp29 Aug 2018
phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - JScript RegExp.lastIndex Use-After-Free
CVE-2018-8353doswindows28 Aug 2018
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet
35RISK
open
Exploit-DBVexDay Proof
Electron WebPreferences - Remote Code Execution
CVE-2018-15685remotemultiple27 Aug 2018
GitHub Electron 1.7.15, 1.8.7, 2.0.7, and 3.0.0-beta.6, in certain scenarios involving IFRAME elements and "nativeWindow
28RISK
open
Exploit-DBVexDay Proof
Responsive FileManager < 9.13.4 - Directory Traversal
CVE-2018-15535webappsphp27 Aug 2018
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname
50RISK
open
Exploit-DBVexDay Proof
HP Jetdirect - Path Traversal Arbitrary Code Execution (Metasploit)
CVE-2017-2741remoteunix27 Aug 2018
A potential security vulnerability has been identified with HP PageWide Printers, HP OfficeJet Pro Printers, with firmwa
60RISK
open
Exploit-DBVexDay Proof
Adobe Flash - AVC Processing Out-of-Bounds Read
CVE-2018-12827doslinux27 Aug 2018
Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead t
35RISK
open
Exploit-DBVexDay Proof
Foxit PDF Reader 9.0.1.1049 - Pointer Overwrite Use-After-Free (Metasploit)
CVE-2018-9948localwindows27 Aug 2018
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader
50RISK
open
Exploit-DBVexDay Proof
Foxit PDF Reader 9.0.1.1049 - Pointer Overwrite Use-After-Free (Metasploit)
CVE-2018-9958localwindows27 Aug 2018
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1
50RISK
open
Exploit-DBVexDay Proof
Responsive FileManager < 9.13.4 - Directory Traversal
CVE-2018-15536webappsphp27 Aug 2018
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in arc
23RISK
open
Exploit-DBVexDay Proof
WordPress Plugin Plainview Activity Monitor 20161228 - (Authenticated) Command Injection
CVE-2018-15877webappsphp27 Aug 2018
The Plainview Activity Monitor plugin before 20180826 for WordPress is vulnerable to OS command injection via shell meta
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - Diagnostics Hub Standard Collector Service Privilege Escalation
CVE-2018-0952localwindows22 Aug 2018
An Elevation of Privilege vulnerability exists when Diagnostics Hub Standard Collector allows file creation in arbitrary
23RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.