Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,542cataloged exploits
34,971CVEs with public exploitation
24,695lab-tested
13,947 exploits
GitHub PoC1
随便放点自己弄的小东西
CVE-2020-0674HIGHunder attack03 Jul 2021
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet
93RISK
open
GitHub PoC4
Apache ActiveMQ PUT RCE Scan
CVE-2016-3088CRITICALunder attack03 Jul 2021
The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitr
100RISK
open
GitHub PoC7
Exploit for MS Http Protocol Stack RCE vulnerability (CVE-2021-31166)
CVE-2021-31166CRITICALunder attack03 Jul 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
GitHub PoC3
CVE-2019-15107 Webmin Exploit in C
CVE-2019-15107CRITICALunder attackransomware02 Jul 2021
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISK
open
GitHub PoC264
Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CVE-2020-17087 and an off-by-one overflow
CVE-2020-17087HIGHunder attack02 Jul 2021
Windows Kernel Local Elevation of Privilege Vulnerability
71RISK
open
GitHub PoC318
JohnHammond/CVE-2021-34527
CVE-2021-34527HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC
mrezqi/CVE-2021-1675_CarbonBlack_HuntingQuery
CVE-2021-1675HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC2
ubuntu new PrivEsc race condition vulnerability
CVE-2021-3560HIGHunder attack02 Jul 2021
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
91RISK
open
GitHub PoC3
thomasgeens/CVE-2021-1675
CVE-2021-1675HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC
CVE-2021-1675: ZERO-DAY VULNERABILITY IN WINDOWS PRINTER SERVICE WITH AN EXPLOIT AVAILABLE IN ALL OPERATING SYSTEM VERSIONS
CVE-2021-1675HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC2
Kritische Sicherheitslücke PrintNightmare CVE-2021-34527
CVE-2021-34527HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC9
corelight/CVE-2021-1675
CVE-2021-1675HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC9
Vulnerability Scanner for CVE-2021-1675/PrintNightmare
CVE-2021-1675HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC
A small powershell script to disable print spooler service using desired state configuration
CVE-2021-1675HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC2
killtr0/CVE-2021-1675-PrintNightmare
CVE-2021-1675HIGHunder attackransomware02 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC325
Local Privilege Escalation Edition for CVE-2021-1675/CVE-2021-34527
CVE-2021-1675HIGHunder attackransomware01 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC1,100
Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)
CVE-2021-1675HIGHunder attackransomware01 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC56
PrintNightmare , Local Privilege Escalation of CVE-2021-1675 or CVE-2021-34527
CVE-2021-1675HIGHunder attackransomware01 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC1
puckiestyle/CVE-2021-1675
CVE-2021-1675HIGHunder attackransomware01 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC
Fix without disabling Print Spooler
CVE-2021-1675HIGHunder attackransomware01 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC23
cybersecurityworks553/CVE-2021-1675_PrintNightMare
CVE-2021-1675HIGHunder attackransomware01 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC2
h3x0v3rl0rd/distccd_rce_CVE-2004-2687
CVE-2004-268701 Jul 2021
distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote at
60RISK
open
GitHub PoC
Small Powershell Script to detect Running Printer Spoolers on Domain Controller
CVE-2021-34527HIGHunder attackransomware01 Jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC88
openam-CVE-2021-35464 tomcat 执行命令回显
CVE-2021-35464CRITICALunder attackransomware01 Jul 2021
ForgeRock AM server before 7.0 has a Java deserialization vulnerability in the jato.pageSession parameter on multiple pa
100RISK
open
GitHub PoC1
Proof of Concept Exploit for CVE-2021-35956, AKCP sensorProbe - 'Multiple' Cross Site Scripting (XSS)
CVE-2021-3595601 Jul 2021
Stored cross-site scripting (XSS) in the embedded webserver of AKCP sensorProbe before SP480-20210624 enables remote aut
23RISK
open
GitHub PoC1
Create your malicious engine in seconds
CVE-2020-711530 Jun 2021
The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon succ
35RISK
open
GitHub PoC3
CVE-2007-2447 - Samba usermap script
CVE-2007-244730 Jun 2021
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RISK
open
GitHub PoC1
TheFlash2k/CVE-2021-3156
CVE-2021-3156HIGHunder attack30 Jun 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
GitHub PoC4
OpenEMR < 5.0.2 - (Authenticated) Path Traversal - Local File Disclosure
CVE-2019-1453030 Jun 2021
An issue was discovered in custom/ajax_download.php in OpenEMR before 5.0.2 via the fileName parameter. An attacker can
50RISK
open
GitHub PoC3
Exploit for CVE-2018-15961, a unrestricted file upload vulnerability in Adobe ColdFusion 2018 leading to RCE
CVE-2018-15961CRITICALunder attack30 Jun 2021
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unr
100RISK
open
previouspage 367 / 465next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.