Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
76,966cataloged exploits
35,269CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 22,166GitHub PoC 14,062VulnCheck XDB 8,571Nuclei 4,251Metasploit 3,473✓ verified onlyrecentpopularrisk
13,960 exploits
GitHub PoC
johnpathe/zerologon-cve-2020-1472-notes
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
A simple implementation/code smash of a bunch of other repos
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC
Scripts to verify and execute CVE-2019-14287 as part of Research
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and se
35RISK
open ↗GitHub PoC★ 10
CVE-2020-1472复现时使用的py文件整理打包
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
pwn3z/CVE-2019-11510-PulseVPN
In Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4, an unauthent
100RISK
open ↗GitHub PoC★ 61
Test script for CVE-2020-1472 for both RPC/TCP and RPC/SMB
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 115
PoC exploits for CVE-2020-17382
The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054).
23RISK
open ↗GitHub PoC★ 70
rsmudge/CVE-2020-0796-BOF
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open ↗GitHub PoC★ 1
pwn3z/CVE-2018-13379-FortinetVPN
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.
100RISK
open ↗GitHub PoC★ 1
Zabbix Template to monitor for Windows Event Viewer event's related to Netlogon Elevation of Privilege Vulnerability - CVE-2020-1472. Monitors event ID's 5827, 5828 & 5829. See: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 2
cve-2020-1472_Tool collection
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
[CVE-2020-1472] Netlogon Remote Protocol Call (MS-NRPC) Privilege Escalation (Zerologon)
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
https://github.com/dirkjanm/CVE-2020-1472
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
Fa1c0n35/SecuraBV-CVE-2020-1472
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 2
CVE-2020-1472 - Zero Logon vulnerability Python implementation
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 58
Ladon Moudle CVE-2020-1472 Exploit 域控提权神器
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
Serie de scripts para enumerar nombres de usuarios de JIRA a partir de vulnerabilidades conocidas (CVE-2020-14181, CVE-2019-3403, CVE-2019-8449...)
Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Infor
60RISK
open ↗GitHub PoC★ 8
PoC for Zerologon (CVE-2020-1472) - Exploit
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 180
Abuse CVE-2020-1472 (Zerologon) to take over a domain and then repair the local stored machine account password.
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1,313
PoC for Zerologon - all research credits go to Tom Tervoort of Secura
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 700
Exploit for zerologon cve-2020-1472
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 396
Exploit Code for CVE-2020-1472 aka Zerologon
Netlogon Elevation of Privilege Vulnerability
100RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.