Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
75,589cataloged exploits
34,508CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 21,554GitHub PoC 13,689VulnCheck XDB 8,216Nuclei 4,223Metasploit 3,464✓ verified onlyrecentpopularrisk
24,443 exploits
Exploit-DB
SolidWorks Workgroup PDM 2014 SP2 Opcode 2001 - Denial of Service
Multiple stack-based buffer overflows in pdmwService.exe in SolidWorks Workgroup PDM 2014 SP2 allow remote attackers to
23RISK
open ↗Exploit-DB✓ VexDay Proof
MediaWiki - 'Thumb.php' Remote Command Execution (Metasploit)
MediaWiki 1.22.x before 1.22.2, 1.21.x before 1.21.5, and 1.19.x before 1.19.11, when DjVu or PDF file upload support is
50RISK
open ↗Exploit-DB✓ VexDay Proof
Ultra Mini HTTPd 1.21 - 'POST' Remote Stack Buffer Overflow (1)
Stack-based buffer overflow in Ultra Mini HTTPD 1.21 allows remote attackers to execute arbitrary code via a long resour
50RISK
open ↗Exploit-DB✓ VexDay Proof
Oracle Forms and Reports - Remote Code Execution (Metasploit)
Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and
100RISK
open ↗Exploit-DB
Open Web Analytics 1.5.4 - 'owa_email_address' SQL Injection
SQL injection vulnerability in the password reset page in Open Web Analytics (OWA) before 1.5.5 allows remote attackers
23RISK
open ↗Exploit-DB✓ VexDay Proof
i-doit Pro - 'objID' SQL Injection
SQL injection vulnerability in the CMDB web application in synetics i-doit pro before 1.2.5 and i-doit open allows remot
23RISK
open ↗Exploit-DB
ImageMagick 6.8.8-4 - Local Buffer Overflow (SEH)
Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick, possibly 6.8.8-5, allows remot
28RISK
open ↗Exploit-DB
HP Data Protector - 'EXEC_BAR' Remote Command Execution
The Backup Client Service (OmniInet.exe) in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary
50RISK
open ↗Exploit-DB✓ VexDay Proof
Eudora Qualcomm WorldMail 9.0.333.0 - IMAPd Service UID Buffer Overflow
Buffer overflow in the IMAPd service in Qualcomm Eudora WorldMail 9.0.333.0 allows remote attackers to execute arbitrary
23RISK
open ↗Exploit-DB
ImageMagick 6.8.8-4 - Local Buffer Overflow (SEH)
Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote
23RISK
open ↗Exploit-DB
CA 2E Web Option 8.1.2 - Authentication Bypass
CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which
23RISK
open ↗Exploit-DB✓ VexDay Proof
Easy CD-DA Recorder - '.pls' Local Buffer Overflow (Metasploit)
Stack-based buffer overflow in D.R. Software Audio Converter 8.1, 2007, and 8.05 allows remote attackers to execute arbi
50RISK
open ↗Exploit-DB✓ VexDay Proof
Apache Commons FileUpload and Apache Tomcat - Denial of Service
MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products,
60RISK
open ↗Exploit-DB
Titan FTP Server 10.32 Build 1816 - Directory Traversal
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attacke
38RISK
open ↗Exploit-DB
Titan FTP Server 10.32 Build 1816 - Directory Traversal
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attacke
38RISK
open ↗Exploit-DB✓ VexDay Proof
KingScada - kxClientDownload.ocx ActiveX Remote Code Execution (Metasploit)
An unspecified ActiveX control in WellinTech KingSCADA before 3.1.2, KingAlarm&Event before 3.1, and KingGraphic before
50RISK
open ↗Exploit-DB
WordPress Plugin BuddyPress 1.9.1 - Privilege Escalation
The Group creation process in the Buddypress plugin before 1.9.2 for WordPress allows remote authenticated users to gain
28RISK
open ↗Exploit-DB
Titan FTP Server 10.32 Build 1816 - Directory Traversal
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attacke
38RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - TrackPopupMenuEx Win32k NULL Page (MS13-081) (Metasploit)
win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 and Windows Server 2008 R2 SP1 allows local users to ga
43RISK
open ↗Exploit-DB✓ VexDay Proof
Tableau Server < 8.0.7 / < 8.1.2 - Blind SQL Injection
SQL injection vulnerability in Tableau Server 8.0.x before 8.0.7 and 8.1.x before 8.1.2 allows remote authenticated user
23RISK
open ↗Exploit-DB
Linux Kernel < 3.4.5 (Android 4.2.2/4.4 ARM) - Local Privilege Escalation
The (1) get_user and (2) put_user API functions in the Linux kernel before 3.5.5 on the v6k and v7 ARM platforms do not
98RISK
open ↗Exploit-DB
ZTE ZXV10 W300 Router - Hard-Coded Credentials
The TELNET service on the ZTE ZXV10 W300 router 2.1.0 has a hardcoded password ending with airocon for the admin account
23RISK
open ↗Exploit-DB✓ VexDay Proof
Publish-It 3.6d - '.pui' Local Buffer Overflow (SEH)
Buffer overflow in Poster Software PUBLISH-iT 3.6d allows remote attackers to execute arbitrary code via a crafted PUI f
50RISK
open ↗Exploit-DB✓ VexDay Proof
Android Browser and WebView addJavascriptInterface - Code Execution (Metasploit)
Android 3.0 through 4.1.x on Disney Mobile, eAccess, KDDI, NTT DOCOMO, SoftBank, and other devices does not properly imp
50RISK
open ↗Exploit-DB✓ VexDay Proof
osCommerce 2.3.3.4 - 'geo_zones.php?zID' SQL Injection
SQL injection vulnerability in the update_zone function in catalog/admin/geo_zones.php in osCommerce Online Merchant 2.3
23RISK
open ↗Exploit-DB
CTERA 3.2.29.0/3.2.42.0 - Persistent Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in CTERA Cloud Storage OS before 3.2.29.0, 3.2.42.0, and earlier allows remote
23RISK
open ↗Exploit-DB
AuraCMS 2.3 - Multiple Vulnerabilities
Multiple SQL injection vulnerabilities in AuraCMS 2.3 and earlier allow remote authenticated users to execute arbitrary
23RISK
open ↗Exploit-DB
doorGets CMS 5.2 - SQL Injection
SQL injection vulnerability in dg-admin/index.php in doorGets CMS 5.2 and earlier allows remote authenticated administra
23RISK
open ↗Exploit-DB✓ VexDay Proof
Publish-It 3.6d - Buffer Overflow
Buffer overflow in Poster Software PUBLISH-iT 3.6d allows remote attackers to execute arbitrary code via a crafted PUI f
50RISK
open ↗Exploit-DB
D-Link DIR-100 - Multiple Vulnerabilities
D-Link DIR-100 4.03B07 has PPTP and poe information disclosure
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.