Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
75,589cataloged exploits
34,508CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 21,554GitHub PoC 13,689VulnCheck XDB 8,216Nuclei 4,223Metasploit 3,464✓ verified onlyrecentpopularrisk
24,443 exploits
Exploit-DB
D-Link DIR-100 - Multiple Vulnerabilities
D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters
28RISK
open ↗Exploit-DB✓ VexDay Proof
Apache Tomcat Manager - Application Upload (Authenticated) Code Execution (Metasploit)
The Windows installer for Apache Tomcat 6.0.0 through 6.0.20, 5.5.0 through 5.5.28, and possibly earlier versions uses a
60RISK
open ↗Exploit-DB
VideoLAN VLC Media Player 2.1.2 - '.asf' Crash (PoC)
The ASF_ReadObject_file_properties function in modules/demux/asf/libasf.c in the ASF Demuxer in VideoLAN VLC Media Playe
23RISK
open ↗Exploit-DB
D-Link DIR-100 - Multiple Vulnerabilities
D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script
28RISK
open ↗Exploit-DB✓ VexDay Proof
XnView 1.92.1 - Command-Line Arguments Buffer Overflow
Buffer overflow in XnView 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long filename arg
28RISK
open ↗Exploit-DB✓ VexDay Proof
ImpressCMS 1.3.5 - Multiple Vulnerabilities
Absolute path traversal vulnerability in htdocs/libraries/image-editor/image-edit.php in ImpressCMS before 1.3.6 allows
23RISK
open ↗Exploit-DB✓ VexDay Proof
Skybluecanvas CMS - Remote Code Execution (Metasploit)
The bashMail function in cms/data/skins/techjunkie/fragments/contacts/functions.php in SkyBlueCanvas CMS before 1.1 r248
50RISK
open ↗Exploit-DB
ownCloud 6.0.0a - Multiple Vulnerabilities
Cross-site scripting (XSS) vulnerability in ownCloud before 6.0.1 allows remote authenticated users to inject arbitrary
23RISK
open ↗Exploit-DB
D-Link DIR-100 - Multiple Vulnerabilities
D-Link DIR-100 4.03B07 has PPTP and poe information disclosure
23RISK
open ↗Exploit-DB
TopicsViewer 3.0 Beta 1 - Multiple Vulnerabilities
Multiple SQL injection vulnerabilities in TopicsViewer 3.0 Beta 1 allow remote attackers to execute arbitrary SQL comman
23RISK
open ↗Exploit-DB✓ VexDay Proof
Seowon Intech WiMAX SWC-9100 Router - '/cgi-bin/diagnostic.cgi?ping_ipaddr' Remote Code Execution
The ping functionality in cgi-bin/diagnostic.cgi on Seowon Intech SWC-9100 routers allows remote attackers to execute ar
23RISK
open ↗Exploit-DB✓ VexDay Proof
Seowon Intech WiMAX SWC-9100 Router - '/cgi-bin/reboot.cgi' Remote Reboot (Denial of Service)
cgi-bin/reboot.cgi on Seowon Intech SWC-9100 routers allows remote attackers to (1) cause a denial of service (reboot) v
23RISK
open ↗Exploit-DB✓ VexDay Proof
Linux Kernel 3.4 < 3.13.2 (Ubuntu 13.10) - 'CONFIG_X86_X32' Arbitrary Write (2)
The compat_sys_recvmmsg function in net/compat.c in the Linux kernel before 3.13.2, when CONFIG_X86_X32 is enabled, allo
50RISK
open ↗Exploit-DB✓ VexDay Proof
Linux Kernel 3.4 < 3.13.2 (Ubuntu 13.04/13.10 x64) - 'CONFIG_X86_X32=y' Local Privilege Escalation (3)
The compat_sys_recvmmsg function in net/compat.c in the Linux kernel before 3.13.2, when CONFIG_X86_X32 is enabled, allo
50RISK
open ↗Exploit-DB✓ VexDay Proof
MediaWiki 1.22.1 PdfHandler - Remote Code Execution
MediaWiki 1.22.x before 1.22.2, 1.21.x before 1.21.5, and 1.19.x before 1.19.11, when DjVu or PDF file upload support is
50RISK
open ↗Exploit-DB
Linux Kernel 3.4 < 3.13.2 - recvmmsg x32 compat (PoC)
The compat_sys_recvmmsg function in net/compat.c in the Linux kernel before 3.13.2, when CONFIG_X86_X32 is enabled, allo
50RISK
open ↗Exploit-DB
ManageEngine Support Center Plus 7916 - Directory Traversal
Directory traversal vulnerability in ManageEngine SupportCenter Plus 7.9 before 7917 allows remote attackers to read arb
50RISK
open ↗Exploit-DB✓ VexDay Proof
PCMan FTP Server 2.07 - 'ABOR' Remote Buffer Overflow
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USE
50RISK
open ↗Exploit-DB
Oracle Forms and Reports 11.1 - Arbitrary Code Execution
Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and
60RISK
open ↗Exploit-DB
Oracle Forms and Reports 11.1 - Arbitrary Code Execution
Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and
100RISK
open ↗Exploit-DB✓ VexDay Proof
PCMan FTP Server 2.07 - 'CWD' Remote Buffer Overflow
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USE
50RISK
open ↗Exploit-DB✓ VexDay Proof
Eventum 2.3.4 - 'hostname' Remote Code Execution
Eventum before 2.3.5 allows remote attackers to reinstall the application via direct request to /setup/index.php.
23RISK
open ↗Exploit-DB✓ VexDay Proof
Eventum 2.3.4 - 'hostname' Remote Code Execution
htdocs/setup/index.php in Eventum before 2.3.5 allows remote attackers to inject and execute arbitrary PHP code via the
28RISK
open ↗Exploit-DB✓ VexDay Proof
Eventum - Insecure File Permissions
Eventum before 2.3.5 allows remote attackers to reinstall the application via direct request to /setup/index.php.
23RISK
open ↗Exploit-DB
Mozilla Thunderbird 17.0.6 - Input Validation Filter Bypass
Cross-site scripting (XSS) vulnerability in Mozilla Thunderbird 17.x through 17.0.8, Thunderbird ESR 17.x through 17.0.1
23RISK
open ↗Exploit-DB
Oracle Outside In MDB - File Parsing Stack Buffer Overflow (PoC)
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.4.1 allo
23RISK
open ↗Exploit-DB✓ VexDay Proof
MP3Info 0.8.5a - Buffer Overflow
Buffer overflow in MP3Info 0.8.4 allows attackers to execute arbitrary code via a long command line argument. NOTE: if
23RISK
open ↗Exploit-DB
Joomla! Component JV Comment 3.0.2 - 'id' SQL Injection
SQL injection vulnerability in the JV Comment (com_jvcomment) component before 3.0.3 for Joomla! allows remote authentic
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.