Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,231cataloged exploits
35,420CVEs with public exploitation
24,695lab-tested
14,119 exploits
GitHub PoC57
It is a simple script to exploit RCE for Samba (CVE-2017-7494 ).
CVE-2017-7494CRITICALunder attackransomware30 May 2017
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
GitHub PoC114
c0d3z3r0/sudo-CVE-2017-1000367
CVE-2017-100036730 May 2017
Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_
23RISK
open
GitHub PoC119
Exploits for CVE-2017-6008, a kernel pool buffer overflow leading to privilege escalation.
CVE-2017-600830 May 2017
A kernel pool overflow in the driver hitmanpro37.sys in Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in
23RISK
open
GitHub PoC1
An exploit (and library) for CVE-2017-5638 - Apache Struts2 S2-045 bug.
CVE-2017-5638CRITICALunder attackransomware28 May 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
GitHub PoC
An exploit for CVE-2017-5638 Remote Code Execution (RCE) Vulnerability in Apache Struts 2
CVE-2017-5638CRITICALunder attackransomware28 May 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
GitHub PoC
CVE-2017-5638
CVE-2017-5638CRITICALunder attackransomware27 May 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
GitHub PoC63
CVE-2017-7494 - Detection Scripts
CVE-2017-7494CRITICALunder attackransomware26 May 2017
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
GitHub PoC381
SambaCry exploit and vulnerable container (CVE-2017-7494)
CVE-2017-7494CRITICALunder attackransomware26 May 2017
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
GitHub PoC
homjxi0e/CVE-2017-7494
CVE-2017-7494CRITICALunder attackransomware25 May 2017
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
GitHub PoC181
Proof-of-Concept exploit for CVE-2017-7494(Samba RCE from a writable share)
CVE-2017-7494CRITICALunder attackransomware25 May 2017
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
GitHub PoC21
k0keoyo/CVE-2015-2546-Exploit
CVE-2015-2546HIGHunder attackransomware25 May 2017
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
76RISK
open
GitHub PoC3
Admidio 3.2.8 Cross-Site Request Forgery Assigned CVE Number: CVE-2017-8382
CVE-2017-838221 May 2017
admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user acc
23RISK
open
GitHub PoC
WordPress 4.6 - Remote Code Execution (RCE) PoC Exploit
CVE-2016-10033CRITICALunder attack19 May 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISK
open
GitHub PoC7
Joomla 3.7 SQL injection (CVE-2017-8917)
CVE-2017-891719 May 2017
SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspeci
60RISK
open
GitHub PoC
Install patch for CVE-2017-0145 AKA WannaCry.
CVE-2017-0145HIGHunder attackransomware19 May 2017
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows
100RISK
open
GitHub PoC3
Simple script using nmap to detect CVE-2017-0143 MS17-010 in your network
CVE-2017-0143HIGHunder attackransomware16 May 2017
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows
100RISK
open
GitHub PoC
cve-2016-0728 exploit and summary
CVE-2016-072816 May 2017
The join_session_keyring function in security/keys/process_keys.c in the Linux kernel before 4.4.1 mishandles object ref
23RISK
open
GitHub PoC88
CVE-2017-7269 to webshell or shellcode loader
CVE-2017-7269CRITICALunder attack16 May 2017
Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet Information Services (IIS) 6.0 in
100RISK
open
GitHub PoC1
Honeypot for Intel's AMT Firmware Vulnerability CVE-2017-5689
CVE-2017-5689CRITICALunder attack12 May 2017
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Mana
100RISK
open
GitHub PoC
homjxi0e/CVE-2017-0290-
CVE-2017-029011 May 2017
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve
45RISK
open
GitHub PoC1
Cisco Catalyst Remote Code Execution PoC
CVE-2017-3881CRITICALunder attack11 May 2017
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software co
100RISK
open
GitHub PoC9
RCE against WordPress 4.6; Python port of https://exploitbox.io/vuln/WordPress-Exploit-4-6-RCE-CODE-EXEC-CVE-2016-10033.html
CVE-2016-10033CRITICALunder attack10 May 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISK
open
GitHub PoC1
Code and vulnerable WordPress container for exploiting CVE-2016-10033
CVE-2016-10033CRITICALunder attack10 May 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISK
open
GitHub PoC4
CVE-2017-8779 aka RPCBomb
CVE-2017-877909 May 2017
rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC through 1.4.3 do not consider t
60RISK
open
GitHub PoC3
simple python poc for CVE-2017-5689
CVE-2017-5689CRITICALunder attack09 May 2017
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Mana
100RISK
open
GitHub PoC20
cyberheartmi9/CVE-2017-8295
CVE-2017-829506 May 2017
WordPress through 4.7.4 relies on the Host HTTP header for a password-reset e-mail message, which makes it easier for re
28RISK
open
GitHub PoC2
a plugin that protects your wp site from the CVE-2017-8295 vulnerability
CVE-2017-829505 May 2017
WordPress through 4.7.4 relies on the Host HTTP header for a password-reset e-mail message, which makes it easier for re
28RISK
open
GitHub PoC8
Apache Struts 2.0 RCE vulnerability - Allows an attacker to inject OS commands into a web application through the content-type header
CVE-2017-5638CRITICALunder attackransomware05 May 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
GitHub PoC39
CerberusSecurity/CVE-2017-5689
CVE-2017-5689CRITICALunder attack04 May 2017
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Mana
100RISK
open
GitHub PoC
homjxi0e/CVE-2017-8295-WordPress-4.7.4---Unauthorized-Password-Reset
CVE-2017-829504 May 2017
WordPress through 4.7.4 relies on the Host HTTP header for a password-reset e-mail message, which makes it easier for re
28RISK
open
previouspage 456 / 471next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.