Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,008cataloged exploits
34,638CVEs with public exploitation
24,695lab-tested
24,443 exploits
Exploit-DBVexDay Proof
Oracle MySQL (Windows) - MOF Execution (Metasploit)
CVE-2012-5613remotewindows06 Dec 2012
MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and possibly other versions, when configured to assign the
50RISK
open
Exploit-DBVexDay Proof
(SSH.com Communications) SSH Tectia - USERAUTH Change Request Password Reset (Metasploit)
CVE-2012-5975remoteunix05 Dec 2012
The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6
50RISK
open
Exploit-DBVexDay Proof
Ektron 8.02 - XSLT Transform Remote Code Execution (Metasploit)
CVE-2012-5357remotewindows05 Dec 2012
Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true
50RISK
open
Exploit-DBVexDay Proof
Advantech Studio 7.0 - SCADA/HMI Directory Traversal
CVE-2013-1627webappswindows04 Dec 2012
Absolute path traversal vulnerability in NTWebServer.exe in Indusoft Studio 7.0 and earlier and Advantech Studio 7.0 and
23RISK
open
Exploit-DBVexDay Proof
Opera Web Browser 12.11 - Crash (PoC)
CVE-2012-6470doswindows03 Dec 2012
Opera before 12.12 does not properly allocate memory for GIF images, which allows remote attackers to execute arbitrary
23RISK
open
Exploit-DB
Symantec Messaging Gateway 9.5.3-3 - Cross-Site Request Forgery
CVE-2012-0308webappsmultiple03 Dec 2012
Cross-site request forgery (CSRF) vulnerability in Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers
23RISK
open
Exploit-DB
Symantec Messaging Gateway 9.5.3-3 - Arbitrary File Download
CVE-2012-4347webappslinux03 Dec 2012
Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow r
50RISK
open
Exploit-DBVexDay Proof
MySQL (Linux) - Database Privilege Escalation
CVE-2012-5613locallinux02 Dec 2012
MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and possibly other versions, when configured to assign the
50RISK
open
Exploit-DBVexDay Proof
MySQL - Remote User Enumeration
CVE-2012-5615remotemultiple02 Dec 2012
Oracle MySQL 5.5.38 and earlier, 5.6.19 and earlier, and MariaDB 5.5.28a, 5.3.11, 5.2.13, 5.1.66, and possibly other ver
28RISK
open
Exploit-DB
IBM System Director Agent - Remote System Level
CVE-2009-0880remotewindows02 Dec 2012
Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows rem
50RISK
open
Exploit-DB
MySQL - Denial of Service (PoC)
CVE-2012-5614doslinux02 Dec 2012
Oracle MySQL 5.1.67 and earlier and 5.5.29 and earlier, and MariaDB 5.5.28a and possibly other versions, allows remote a
28RISK
open
Exploit-DBVexDay Proof
MySQL 5.1/5.5 (Windows) - 'MySQLJackpot' Remote Command Execution
CVE-2012-5615remotewindows02 Dec 2012
Oracle MySQL 5.5.38 and earlier, 5.6.19 and earlier, and MariaDB 5.5.28a, 5.3.11, 5.2.13, 5.1.66, and possibly other ver
28RISK
open
Exploit-DBVexDay Proof
(SSH.com Communications) SSH Tectia (SSH < 2.0-6.1.9.95 / Tectia 6.1.9.95) - Remote Authentication Bypass
CVE-2012-5975remotelinux02 Dec 2012
The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6
50RISK
open
Exploit-DBVexDay Proof
freeSSHd 2.1.3 - Remote Authentication Bypass
CVE-2012-6066remotewindows02 Dec 2012
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demons
50RISK
open
Exploit-DBVexDay Proof
freeFTPd 1.2.6 - Remote Authentication Bypass
CVE-2012-6066remotewindows02 Dec 2012
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demons
50RISK
open
Exploit-DB
MySQL (Linux) - Heap Overrun (PoC)
CVE-2012-5612doslinux02 Dec 2012
Heap-based buffer overflow in Oracle MySQL 5.5.19 and other versions through 5.5.28, and MariaDB 5.5.28a and possibly ot
28RISK
open
Exploit-DB
MySQL (Linux) - Stack Buffer Overrun (PoC)
CVE-2012-5611doslinux02 Dec 2012
Stack-based buffer overflow in the acl_get function in Oracle MySQL 5.5.19 and other versions through 5.5.28, and 5.1.53
28RISK
open
Exploit-DBVexDay Proof
Elastix - 'page' Cross-Site Scripting
CVE-2012-6608webappsphp29 Nov 2012
Cross-site scripting (XSS) vulnerability in xmlservices/E_book.php in Elastix 2.3.0 allows remote attackers to inject ar
23RISK
open
Exploit-DBVexDay Proof
WordPress Plugin Video Lead Form - 'errMsg' Cross-Site Scripting
CVE-2012-6312webappsphp29 Nov 2012
Cross-site scripting (XSS) vulnerability in the Video Lead Form plugin for WordPress allows remote attackers to inject a
23RISK
open
Exploit-DBVexDay Proof
Apple QuickTime 7.7.2 - MIME Type Buffer Overflow (Metasploit)
CVE-2012-3753remotewindows28 Nov 2012
Buffer overflow in the plugin in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause
50RISK
open
Exploit-DBVexDay Proof
mcrypt 2.6.8 - Stack Buffer Overflow (PoC)
CVE-2012-4409doslinux26 Nov 2012
Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted
28RISK
open
Exploit-DBVexDay Proof
Forescout CounterACT - 'a' Open Redirection
CVE-2012-4982webappsmultiple26 Nov 2012
Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to
38RISK
open
Exploit-DBVexDay Proof
mcrypt 2.5.8 - Local Stack Overflow
CVE-2012-4409locallinux26 Nov 2012
Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted
28RISK
open
Exploit-DBVexDay Proof
Apple QuickTime 7.7.2 - TeXML Style Element font-table Field Stack Buffer Overflow (Metasploit)
CVE-2012-3752remotewindows24 Nov 2012
Multiple buffer overflows in Apple QuickTime before 7.7.3 allow remote attackers to execute arbitrary code or cause a de
50RISK
open
Exploit-DB
TrouSerS - Denial of Service
CVE-2012-0698doslinux23 Nov 2012
tcsd in TrouSerS before 0.3.10 allows remote attackers to cause a denial of service (daemon crash) via a crafted type_of
28RISK
open
Exploit-DBVexDay Proof
NetIQ Privileged User Manager 2.3.1 - 'ldapagnt_eval()' Perl Remote Code Execution (Metasploit)
CVE-2012-5932remotewindows22 Nov 2012
Eval injection vulnerability in the ldapagnt_eval function in ldapagnt.dll in unifid.exe in NetIQ Privileged User Manage
50RISK
open
Exploit-DB
lighttpd 1.4.31 - Denial of Service (PoC)
CVE-2012-5533doslinux22 Nov 2012
The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial o
28RISK
open
Exploit-DBVexDay Proof
dotProject 2.1.x - 'index.php' Multiple SQL Injections
CVE-2012-5701webappsphp21 Nov 2012
Multiple SQL injection vulnerabilities in dotProject before 2.1.7 allow remote authenticated administrators to execute a
23RISK
open
Exploit-DBVexDay Proof
dotProject 2.1.x - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2012-5702webappsphp21 Nov 2012
Multiple cross-site scripting (XSS) vulnerabilities in dotProject before 2.1.7 allow remote attackers to inject arbitrar
23RISK
open
Exploit-DB
Apple QuickTime 7.7.2 - Targa image Buffer Overflow
CVE-2012-3755doswindows20 Nov 2012
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of s
28RISK
open
previouspage 269 / 815next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.