Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,020cataloged exploits
35,276CVEs with public exploitation
24,695lab-tested
14,014 exploits
GitHub PoC718
Scanner for CVE-2020-0796 - SMBv3 RCE
CVE-2020-0796CRITICALunder attackransomware11 Mar 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC9
CVE-2020-0796 Flaw Mitigation - Active Directory Administrative Templates
CVE-2020-0796CRITICALunder attackransomware11 Mar 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC162
NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473
CVE-2020-1350CRITICALunder attack11 Mar 2020
A remote code execution vulnerability exists in Windows Domain Name System servers when they fail to properly handle req
100RISK
open
GitHub PoC28
Powershell SMBv3 Compression checker
CVE-2020-0796CRITICALunder attackransomware11 Mar 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC162
NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473
CVE-2021-21972CRITICALunder attackransomware11 Mar 2020
The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor
100RISK
open
GitHub PoC
Authentication Bypass in Server Code for LibSSH
CVE-2018-10933CRITICAL11 Mar 2020
A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client coul
85RISK
open
GitHub PoC18
Weaponized PoC for SMBv3 TCP codec/compression vulnerability
CVE-2020-0796CRITICALunder attackransomware10 Mar 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC14
CVE-2020-2555
CVE-2020-2555CRITICALunder attack10 Mar 2020
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Su
100RISK
open
GitHub PoC13
PoC of CVE-2019-15126 kr00k vulnerability
CVE-2019-1512609 Mar 2020
An issue was discovered on Broadcom Wi-Fi client devices. Specifically timed and handcrafted traffic can cause internal
23RISK
open
GitHub PoC1
exploit for sudo CVE-2019-18634
CVE-2019-1863409 Mar 2020
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the
28RISK
open
GitHub PoC1
Gather a list of Citrix appliances in a country / state pair, and check if they're vulnerable to CVE-2019-19781
CVE-2019-19781CRITICALunder attackransomware08 Mar 2020
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. Th
100RISK
open
GitHub PoC177
Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE
CVE-2020-2555CRITICALunder attack07 Mar 2020
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Su
100RISK
open
GitHub PoC
simple poc for CVE-2020-0069
CVE-2020-0069HIGHunder attack07 Mar 2020
In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient
71RISK
open
GitHub PoC47
CVE-2020-8597 pppd buffer overflow poc
CVE-2020-8597CRITICAL07 Mar 2020
eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.
53RISK
open
GitHub PoC
CVE-2020-8597
CVE-2020-8597CRITICAL06 Mar 2020
eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.
53RISK
open
GitHub PoC3
Hu3sky/CVE-2020-2555
CVE-2020-2555CRITICALunder attack06 Mar 2020
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Su
100RISK
open
GitHub PoC6
A CVE-2019-11580 shell
CVE-2019-11580CRITICALunder attackransomware06 Mar 2020
Atlassian Crowd and Crowd Data Center had the pdkinstall development plugin incorrectly enabled in release builds. Attac
100RISK
open
GitHub PoC45
CVE-2020-2555 Python POC
CVE-2020-2555CRITICALunder attack06 Mar 2020
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Su
100RISK
open
GitHub PoC
CVE-2019-13272
CVE-2019-13272HIGHunder attack05 Mar 2020
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a proce
98RISK
open
GitHub PoC5
PoC for Forgot2kEyXCHANGE (CVE-2020-0688) written in PowerShell
CVE-2020-0688HIGHunder attackransomware04 Mar 2020
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle o
100RISK
open
GitHub PoC
PoC of CVE
CVE-2020-6418HIGHunder attack03 Mar 2020
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corru
100RISK
open
GitHub PoC
exploitblizzard/CVE-2020-0601-spoofkey
CVE-2020-0601HIGHunder attack03 Mar 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RISK
open
GitHub PoC17
reversing mtk-su
CVE-2020-0069HIGHunder attack03 Mar 2020
In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient
71RISK
open
GitHub PoC181
POC for cve-2019-1458
CVE-2019-1458HIGHunder attackransomware03 Mar 2020
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
100RISK
open
GitHub PoC
CVE-2020-1938
CVE-2020-1938CRITICALunder attack03 Mar 2020
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISK
open
GitHub PoC1
CVE-2019-5096(UAF in upload handler) exploit cause Denial of Service
CVE-2019-5096CRITICAL02 Mar 2020
An exploitable code execution vulnerability exists in the processing of multi-part/form-data requests within the base Go
60RISK
open
GitHub PoC11
This repository provides a learning environment to understand how an Exim RCE exploit for CVE-2018-6789 works.
CVE-2018-6789CRITICALunder attackransomware02 Mar 2020
An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By sending a handcrafted mes
100RISK
open
GitHub PoC132
CVE-2020-2546,CVE-2020-2915 CVE-2020-2801 CVE-2020-2798 CVE-2020-2883 CVE-2020-2884 CVE-2020-2950 WebLogic T3 payload exploit poc python3,
CVE-2020-2546CRITICAL02 Mar 2020
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Application Container - Java
48RISK
open
GitHub PoC6
CVE-2020-1938(GhostCat) clean and readable code version
CVE-2020-1938CRITICALunder attack01 Mar 2020
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISK
open
GitHub PoC354
Exploit and detect tools for CVE-2020-0688
CVE-2020-0688HIGHunder attackransomware01 Mar 2020
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle o
100RISK
open
previouspage 406 / 468next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.