Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
75,902cataloged exploits
34,597CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 21,624GitHub PoC 13,727VulnCheck XDB 8,410Nuclei 4,231Metasploit 3,467✓ verified onlyrecentpopularrisk
13,727 exploits
GitHub PoC
Nielk74/CVE-2023-38831
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISK
open ↗GitHub PoC★ 3
CVE-2023-5360 Auto Shell Upload WordPress Royal Elementor 1.3.78 Shell Upload
Royal Elementor Addons and Templates < 1.3.79 - Unauthenticated Arbitrary File Upload
60RISK
open ↗GitHub PoC
cve-2023-22515的python利用脚本
Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited
100RISK
open ↗GitHub PoC
ShivamDey/CVE-2021-23017
A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from t
35RISK
open ↗GitHub PoC
ShivamDey/Samba-CVE-2007-2447-Exploit
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RISK
open ↗GitHub PoC★ 61
VMware Aria Operations for Logs CVE-2023-34051
VMware Aria Operations for Logs contains an authentication bypass vulnerability. An unauthenticated, malicious actor can
60RISK
open ↗GitHub PoC
reket99/Cisco_CVE-2023-20198
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC★ 1
Joomla Unauthenticated Information Disclosure (CVE-2023-23752) exploit
[20230201] - Core - Improper access check in webservice endpoints
100RISK
open ↗GitHub PoC★ 6
1vere$k POC on the CVE-2023-20198
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC★ 4
CISCO CVE POC SCRIPT
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC
Trinadh465/frameworks_base_AOSP10_r33_CVE-2023-20963
In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional
71RISK
open ↗GitHub PoC★ 20
Confluence后台rce
Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited
100RISK
open ↗GitHub PoC
yTxZx/CVE-2023-23752
[20230201] - Core - Improper access check in webservice endpoints
100RISK
open ↗GitHub PoC
yTxZx/CVE-2022-26134
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISK
open ↗GitHub PoC
testing cve-2023-41993-test
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to
76RISK
open ↗GitHub PoC★ 2
WAGO系统远程代码执行漏洞(CVE-2023-1698)
WAGO: WBM Command Injection in multiple products
85RISK
open ↗GitHub PoC★ 36
PoC for CVE-2023-36802 Microsoft Kernel Streaming Service Proxy
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISK
open ↗GitHub PoC★ 14
CVE-2023-36802 ITW case
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISK
open ↗GitHub PoC
000Tonio/cve-2021-1675
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open ↗GitHub PoC★ 11
CVE-2023-20198 PoC (!)
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC
Checker for CVE-2023-20198 , Not a full POC Just checks the implementation and detects if hex is in response or not
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC★ 2
This script can identify if Cisco IOS XE devices are vulnerable to CVE-2023-20198
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC★ 33
CVE-2023-20198 & 0Day Implant Scanner
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC
raystr-atearedteam/CVE-2023-20198-checker
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC★ 20
CVE-2023-20198 Checkscript
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC★ 1
cisco-CVE-2023-20198-tester
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC★ 1
emomeni/Simple-Ansible-for-CVE-2023-20198
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open ↗GitHub PoC
Proxyshell for Exploiting CVE-2021-34473
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.