Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
79,900cataloged exploits
36,847CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,475Referência 23,360GitHub PoC 15,228VulnCheck XDB 8,946Nuclei 4,390Metasploit 3,501✓ verified onlyrecentpopularrisk
19,066 exploits
Exploit-DB✓ VexDay Proof
Microsoft Services - 'nwwks.dll' (MS06-066) (Metasploit)
Buffer overflow in Client Service for NetWare (CSNW) in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 al
60RISK
open ↗Exploit-DB✓ VexDay Proof
HP OpenView Network Node Manager (OV NNM) - 'OpenView5.exe' CGI Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote att
50RISK
open ↗Exploit-DB✓ VexDay Proof
LANDesk Management Suite 8.7 - Alert Service Buffer Overflow (Metasploit)
Stack-based buffer overflow in the Alert Service (aolnsrvr.exe) in LANDesk Management Suite 8.7 allows remote attackers
60RISK
open ↗Exploit-DB✓ VexDay Proof
SHTTPD 1.34 (Windows x86) - URI-Encoded POST Request Overflow (Metasploit)
Stack-based buffer overflow in Sergey Lyubka Simple HTTPD (shttpd) 1.34 allows remote attackers to execute arbitrary cod
50RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Whale Intelligent Application Gateway - ActiveX Control Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the Whale Client Components ActiveX control (WhlMgr.dll), as used in Microsoft
50RISK
open ↗Exploit-DB✓ VexDay Proof
Symantec Norton Internet Security 2004 - ActiveX Control Buffer Overflow (Metasploit)
Buffer overflow in the ISAlertDataCOM ActiveX control in ISLALERT.DLL for Norton Personal Firewall 2004 and Internet Sec
50RISK
open ↗Exploit-DB✓ VexDay Proof
CA BrightStor ARCserve for Laptops & Desktops LGServer - Remote Buffer Overflow (Metasploit) (1)
Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1
60RISK
open ↗Exploit-DB✓ VexDay Proof
SoftArtisans XFile FileManager - ActiveX Control Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the FileManager ActiveX control in SAFmgPws.dll in SoftArtisans XFile before 2.
43RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Message Queueing Service - Path Overflow (MS05-017) (Metasploit)
Buffer overflow in the Message Queuing component of Microsoft Windows 2000 and Windows XP SP1 allows remote attackers to
60RISK
open ↗Exploit-DB✓ VexDay Proof
Now SMS/Mms Gateway - Remote Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in Now SMS/MMS Gateway 2007.06.27 and earlier allow remote attackers to execute ar
50RISK
open ↗Exploit-DB✓ VexDay Proof
YahooPOPs (YPOPS) 0.6 - Remote Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in YPOPs! (aka YahooPOPS) 0.4 through 0.6 allow remote attackers to cause a denial
60RISK
open ↗Exploit-DB✓ VexDay Proof
Novell eDirectory NDS Server - Host Header Overflow (Metasploit)
Multiple stack-based buffer overflows in Novell eDirectory 8.8.x before 8.8.1 FTF1, and 8.x up to 8.7.3.8, and Novell Ne
60RISK
open ↗Exploit-DB✓ VexDay Proof
CA BrightStor - HSM Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r
50RISK
open ↗Exploit-DB✓ VexDay Proof
Novell NetMail 3.52d - IMAP APPEND Buffer Overflow (Metasploit)
Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated u
50RISK
open ↗Exploit-DB✓ VexDay Proof
FutureSoft TFTP Server 2000 - Transfer-Mode Overflow (Metasploit)
Multiple stack-based buffer overflows in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allow remote attackers to exe
50RISK
open ↗Exploit-DB✓ VexDay Proof
BigAnt Server 2.2 - Remote Buffer Overflow (Metasploit)
Stack-based buffer overflow in the AntServer module (AntServer.exe) in BigAnt IM Server in BigAnt Messenger 2.2 allows r
60RISK
open ↗Exploit-DB✓ VexDay Proof
XMPlay 3.3.0.4 - '.ASX' Filename Buffer Overflow (Metasploit)
Stack-based buffer overflow in Un4seen XMPlay 3.3.0.5 and earlier allows remote attackers to execute arbitrary code via
50RISK
open ↗Exploit-DB✓ VexDay Proof
D-Link TFTP 1.0 - 'Filename' Remote Buffer Overflow (Metasploit)
Buffer overflow in D-Link TFTP Server 1.0 allows remote attackers to cause a denial of service (crash) via a long (1) GE
50RISK
open ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control Date/Time Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in Novell iPrint Client 4.38, 5.30, and possibly other versions before 5.32 allow
50RISK
open ↗Exploit-DB✓ VexDay Proof
Novell NetWare - LSASS CIFS.NLM Driver Stack Buffer Overflow (Metasploit)
Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a den
50RISK
open ↗Exploit-DB✓ VexDay Proof
IBM Tivoli Storage Manager Express CAD Service - Remote Buffer Overflow (Metasploit) (1)
Stack-based buffer overflow in the client acceptor daemon (CAD) scheduler in the client in IBM Tivoli Storage Manager (T
50RISK
open ↗Exploit-DB✓ VexDay Proof
Alibaba Clone 3.0 (Special) - SQL Injection
SQL injection vulnerability in offers_buy.php in Alibaba Clone 3.0 allows remote attackers to execute arbitrary SQL comm
23RISK
open ↗Exploit-DB✓ VexDay Proof
Orbit Downloader - Connecting Log Creation Buffer Overflow (Metasploit)
Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote
50RISK
open ↗Exploit-DB✓ VexDay Proof
Easy File Sharing FTP Server 2.0 - PASS Overflow (Metasploit)
Stack-based buffer overflow in EFS Software Easy File Sharing FTP Server 2.0 allows remote attackers to execute arbitrar
50RISK
open ↗Exploit-DB✓ VexDay Proof
Symantec Remote Management - Remote Buffer Overflow (Metasploit)
Stack-based buffer overflow in Symantec Antivirus 10.1 and Client Security 3.1 allows remote attackers to execute arbitr
60RISK
open ↗Exploit-DB✓ VexDay Proof
Norton AntiSpam 2004 - SymSpamHelper ActiveX Control Buffer Overflow (Metasploit)
Stack-based buffer overflow in the SymSpamHelper ActiveX component (symspam.dll) in Norton AntiSpam 2004, as used in Nor
50RISK
open ↗Exploit-DB✓ VexDay Proof
3Com TFTP Service (3CTftpSvc) - 'Mode' Remote Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in 3Com 3CTftpSvc 2.0.1, and possibly earlier, allow remote attackers to cause a d
60RISK
open ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control target-frame Buffer Overflow (Metasploit)
Stack-based buffer overflow in ienipp.ocx in Novell iPrint Client 5.30, and possibly other versions before 5.32, allows
50RISK
open ↗Exploit-DB✓ VexDay Proof
freeSSHd 1.0.9 - Key Exchange Algorithm String Buffer Overflow (Metasploit)
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other produc
60RISK
open ↗Exploit-DB✓ VexDay Proof
freeFTPd 1.0.10 - Key Exchange Algorithm String Buffer Overflow (Metasploit)
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other produc
60RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.