Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,966cataloged exploits
35,269CVEs with public exploitation
24,695lab-tested
13,960 exploits
GitHub PoC
johnpathe/zerologon-cve-2020-1472-notes
CVE-2020-1472MEDIUMunder attackransomware20 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
A simple implementation/code smash of a bunch of other repos
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
hectorgie/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
Scripts to verify and execute CVE-2019-14287 as part of Research
CVE-2019-1428718 Sep 2020
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and se
35RISK
open
GitHub PoC10
CVE-2020-1472复现时使用的py文件整理打包
CVE-2020-1472MEDIUMunder attackransomware18 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
pwn3z/CVE-2019-11510-PulseVPN
CVE-2019-11510CRITICALunder attackransomware17 Sep 2020
In Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4, an unauthent
100RISK
open
GitHub PoC61
Test script for CVE-2020-1472 for both RPC/TCP and RPC/SMB
CVE-2020-1472MEDIUMunder attackransomware17 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC115
PoC exploits for CVE-2020-17382
CVE-2020-1738217 Sep 2020
The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054).
23RISK
open
GitHub PoC70
rsmudge/CVE-2020-0796-BOF
CVE-2020-0796CRITICALunder attackransomware17 Sep 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC1
pwn3z/CVE-2018-13379-FortinetVPN
CVE-2018-13379CRITICALunder attackransomware17 Sep 2020
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.
100RISK
open
GitHub PoC1
Zabbix Template to monitor for Windows Event Viewer event's related to Netlogon Elevation of Privilege Vulnerability - CVE-2020-1472. Monitors event ID's 5827, 5828 & 5829. See: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC2
cve-2020-1472_Tool collection
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
FaFcFF41/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
[CVE-2020-1472] Netlogon Remote Protocol Call (MS-NRPC) Privilege Escalation (Zerologon)
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
https://github.com/dirkjanm/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC112
cve-2020-1472 复现利用及其exp
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
Fa1c0n35/SecuraBV-CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC2
CVE-2020-1472 - Zero Logon vulnerability Python implementation
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
victim10wq3/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
Fa1c0n35/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware15 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC58
Ladon Moudle CVE-2020-1472 Exploit 域控提权神器
CVE-2020-1472MEDIUMunder attackransomware15 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
Serie de scripts para enumerar nombres de usuarios de JIRA a partir de vulnerabilidades conocidas (CVE-2020-14181, CVE-2019-3403, CVE-2019-8449...)
CVE-2020-1418115 Sep 2020
Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Infor
60RISK
open
GitHub PoC8
PoC for Zerologon (CVE-2020-1472) - Exploit
CVE-2020-1472MEDIUMunder attackransomware15 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC2
CVE-2020-1472漏洞复现过程
CVE-2020-1472MEDIUMunder attackransomware15 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC4
CVE-2020-1472复现流程
CVE-2020-1472MEDIUMunder attackransomware15 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC180
Abuse CVE-2020-1472 (Zerologon) to take over a domain and then repair the local stored machine account password.
CVE-2020-1472MEDIUMunder attackransomware14 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1,313
PoC for Zerologon - all research credits go to Tom Tervoort of Secura
CVE-2020-1472MEDIUMunder attackransomware14 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC700
Exploit for zerologon cve-2020-1472
CVE-2020-1472MEDIUMunder attackransomware14 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC396
Exploit Code for CVE-2020-1472 aka Zerologon
CVE-2020-1472MEDIUMunder attackransomware14 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
previouspage 389 / 466next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.