Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,496cataloged exploits
34,964CVEs with public exploitation
24,695lab-tested
24,443 exploits
Exploit-DBVexDay Proof
Microsoft Internet Explorer - COM CreateObject Code Execution (MS06-014/MS06-073) (Metasploit)
CVE-2006-4704remotewindows20 Sep 2010
Cross-zone scripting vulnerability in the WMI Object Broker (WMIScriptUtils.WMIObjectBroker2) ActiveX control (WmiScript
50RISK
open
Exploit-DBVexDay Proof
Apple iPhone MobileSafari LibTIFF - 'email' Remote Buffer Overflow (Metasploit) (2)
CVE-2006-3459remotehardware20 Sep 2010
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RISK
open
Exploit-DBVexDay Proof
Chilkat Crypt - ActiveX WriteFile Unsafe Method (Metasploit)
CVE-2008-5002remotewindows20 Sep 2010
Insecure method vulnerability in the ChilkatCrypt2.ChilkatCrypt2.1 ActiveX control (ChilkatCrypt2.dll 4.3.2.1) in Chilka
50RISK
open
Exploit-DBVexDay Proof
Solaris LPD - Command Execution (Metasploit)
CVE-2001-1583remotesolaris20 Sep 2010
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request wit
60RISK
open
Exploit-DB
primitive CMS 1.0.9 - Multiple Vulnerabilities
CVE-2010-3483webappsphp20 Sep 2010
cms_write.php in Primitive CMS 1.0.9 does not properly restrict access, which allows remote attackers to gain administra
23RISK
open
Exploit-DBVexDay Proof
Mozilla Suite/Firefox - Navigator Object Code Execution (Metasploit)
CVE-2006-3677remotemultiple20 Sep 2010
Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code by chang
60RISK
open
Exploit-DBVexDay Proof
VeryPDF PDFView - OCX ActiveX OpenPDF Heap Overflow (Metasploit)
CVE-2008-5492remotewindows20 Sep 2010
Heap-based buffer overflow in the PDFVIEW.PdfviewCtrl.1 ActiveX control in pdfview.ocx 2.0.0.1 in VeryDOC PDF Viewer OCX
50RISK
open
Exploit-DBVexDay Proof
Sun Java - Calendar Deserialization (Metasploit)
CVE-2008-5353remotemultiple20 Sep 2010
The Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; a
60RISK
open
Exploit-DBVexDay Proof
Adobe CoolType - SING Table 'uniqueName' Remote Stack Buffer Overflow (Metasploit) (1)
CVE-2010-2883HIGHunder attackremotewindows20 Sep 2010
Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows
100RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - Data Binding Memory Corruption (MS08-078) (Metasploit)
CVE-2008-4844remotewindows20 Sep 2010
Use-after-free vulnerability in the CRecordInstance::TransferToDestination function in mshtml.dll in Microsoft Internet
50RISK
open
Exploit-DBVexDay Proof
LightNEasy CMS 3.2.1 - Blind SQL Injection
CVE-2010-3485webappsphp20 Sep 2010
SQL injection vulnerability in common.php in LightNEasy 3.2.1 allows remote attackers to execute arbitrary SQL commands
23RISK
open
Exploit-DBVexDay Proof
LightNEasy CMS 3.2.1 - Blind SQL Injection
CVE-2010-3484webappsphp20 Sep 2010
SQL injection vulnerability in common.php in LightNEasy 3.2.1 allows remote attackers to execute arbitrary SQL commands
23RISK
open
Exploit-DBVexDay Proof
Microsoft Help Center - Cross-Site Scripting / Command Execution (MS10-042) (Metasploit)
CVE-2010-1885remotewindows20 Sep 2010
The MPC::HexToNum function in helpctr.exe in Microsoft Windows Help and Support Center in Windows XP and Windows Server
60RISK
open
Exploit-DBVexDay Proof
iPhone MobileMail - LibTIFF Buffer Overflow (Metasploit)
CVE-2006-3459remotehardware20 Sep 2010
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RISK
open
Exploit-DBVexDay Proof
Macrovision Installshield Update Service - ActiveX Unsafe Method (Metasploit)
CVE-2007-5660remotewindows20 Sep 2010
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXn
50RISK
open
Exploit-DBVexDay Proof
Mercur MailServer 5.0 - IMAP SP3 SELECT Buffer Overflow (Metasploit)
CVE-2006-1255remotewindows20 Sep 2010
Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause
50RISK
open
Exploit-DBVexDay Proof
Hummingbird Connectivity 10 SP5 - LPD Buffer Overflow (Metasploit)
CVE-2005-1815remotewindows20 Sep 2010
Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of s
50RISK
open
Exploit-DBVexDay Proof
CA CAM (Windows x86) - 'log_security()' Remote Stack Buffer Overflow (Metasploit)
CVE-2005-2668remotewindows_x8620 Sep 2010
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1
60RISK
open
Exploit-DBVexDay Proof
Oracle 9i XDB (Windows x86) - HTTP PASS Overflow (Metasploit)
CVE-2003-0727remotewindows_x8620 Sep 2010
Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to
50RISK
open
Exploit-DBVexDay Proof
Adobe - U3D CLODProgressiveMeshDeclaration Array Overrun (Metasploit) (1)
CVE-2009-2990remotemultiple20 Sep 2010
Array index error in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might all
50RISK
open
Exploit-DBVexDay Proof
Computer Associates License Client - GETCONFIG Overflow (Metasploit)
CVE-2005-0581remotewindows20 Sep 2010
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RISK
open
Exploit-DBVexDay Proof
QBik WinGate WWW Proxy Server - URL Processing Overflow (Metasploit)
CVE-2006-2926remotewindows20 Sep 2010
Stack-based buffer overflow in the WWW Proxy Server of Qbik WinGate 6.1.1.1077 allows remote attackers to cause a denial
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows XP/Vista/2003 - Metafile Escape() SetAbortProc Code Execution (MS06-001) (Metasploit)
CVE-2005-4560remotewindows20 Sep 2010
The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbit
60RISK
open
Exploit-DBVexDay Proof
AwingSoft Winds3D Player 3.5 - SceneURL Download and Execute (Metasploit)
CVE-2009-4850remotewindows20 Sep 2010
The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote attackers to execute arbitrary programs via a SceneU
43RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - ANI LoadAniIcon() Chunk Size Stack Buffer Overflow (SMTP) (MS07-017) (Metasploit)
CVE-2007-0038remotewindows20 Sep 2010
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RISK
open
Exploit-DBVexDay Proof
Adobe Flash Player - 'newfunction' Invalid Pointer Use (Metasploit) (1)
CVE-2010-1297HIGHunder attacklocalwindows20 Sep 2010
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrob
100RISK
open
Exploit-DBVexDay Proof
PeerCast 0.1216 (Windows x86) - URL Handling Buffer Overflow (Metasploit)
CVE-2006-1148remotewindows_x8620 Sep 2010
Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow rem
60RISK
open
Exploit-DBVexDay Proof
Arugizer Trojan Horse (Energizer DUO) - Code Execution (Metasploit)
CVE-2010-0103remotewindows20 Sep 2010
UsbCharger.dll in the Energizer DUO USB battery charger software contains a backdoor that is implemented through the Aru
43RISK
open
Exploit-DBVexDay Proof
HP - 'OmniInet.exe' MSG_PROTOCOL Buffer Overflow (Metasploit) (1)
CVE-2009-3844remotewindows20 Sep 2010
Stack-based buffer overflow in the OmniInet process in HP OpenView Data Protector Application Recovery Manager 5.50 and
60RISK
open
Exploit-DBVexDay Proof
Adobe - FlateDecode Stream Predictor 02 Integer Overflow (Metasploit) (1)
CVE-2009-3459HIGHunder attacklocalwindows20 Sep 2010
Heap-based buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows rem
100RISK
open
previouspage 350 / 815next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.