Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,449cataloged exploits
35,552CVEs with public exploitation
24,695lab-tested
22,367 exploits
Referência
CVE-2017-13216
In ashmem_ioctl of ashmem.c, there is an out-of-bounds write due to insufficient locking when accessing asma. This could
23RISK
open
Referência
CVE-2020-17456
SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution via the ipAddr parameter to the system_log.cgi pa
60RISK
open
Referência
CVE-2017-13258
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open
Referência
CVE-2017-13258
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open
Referência
CVE-2017-13794
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud
23RISK
open
Referência
CVE-2011-5283
Cross-site scripting (XSS) vulnerability in the web management interface in httpd/cgi-bin/ipinfo.cgi in Smoothwall Expre
23RISK
open
Referência
CVE-2011-5283
Cross-site scripting (XSS) vulnerability in the web management interface in httpd/cgi-bin/ipinfo.cgi in Smoothwall Expre
23RISK
open
Referência
CVE-2026-18900
H3C NX15 Backend RPC esps file.exec os command injection
41RISK
open
Referência
CVE-2017-14075
This vulnerability allows local attackers to escalate privileges on Jungo WinDriver 12.4.0 and earlier. An attacker must
23RISK
open
Referência
CVE-2017-14087
A Host Header Injection vulnerability in Trend Micro OfficeScan XG (12.0) may allow an attacker to spoof a particular Ho
23RISK
open
ReferênciaVexDay Proof
Quick.CMS.Lite 0.3 - Cookie sLanguage Local File Inclusion
CVE-2006-5834webappsphp
Directory traversal vulnerability in general.php in OpenSolution Quick.Cms.Lite 0.3 allows remote attackers to include a
23RISK
open
ReferênciaVexDay Proof
Essentia Web Server 2.15 - GET Remote Denial of Service
CVE-2006-5850doswindows
Stack-based buffer overflow in Essentia Web Server 2.15 for Windows allows remote attackers to execute arbitrary code vi
23RISK
open
ReferênciaVexDay Proof
PHPAdventure 1.1 - 'ad_main.php' Remote File Inclusion
CVE-2006-5839webappsphp
PHP remote file inclusion vulnerability in ad_main.php in PHPAdventure 1.1-Alpha and earlier allows remote attackers to
23RISK
open
ReferênciaVexDay Proof
IrayoBlog 0.2.4 - '/inc/irayofuncs.php' Remote File Inclusion
CVE-2006-5849webappsphp
PHP remote file inclusion vulnerability in inc/irayofuncs.php in IrayoBlog alpha-0.2.4 allows remote attackers to execut
23RISK
open
Referência
CVE-2026-16070
Brizy - Page Builder < 2.8.19 - Contributor+ Template Type Update via IDOR
28RISK
open
Referência
CVE-2026-16069
Brizy - Page Builder < 2.8.19 - Contributor+ Stored XSS via Featured Image Focal Point
33RISK
open
Referência
CVE-2026-16068
Brizy - Page Builder < 2.8.19 - Author+ Stored XSS via brizy_set_project Global Project Code Asset
28RISK
open
Referência
CVE-2020-25762
An issue was discovered in SourceCodester Seat Reservation System 1.0. The file admin_class.php does not perform input v
28RISK
open
Referência
CVE-2020-25762
An issue was discovered in SourceCodester Seat Reservation System 1.0. The file admin_class.php does not perform input v
28RISK
open
Referência
CVE-2020-26567
An issue was discovered on D-Link DSR-250N before 3.17B devices. The CGI script upgradeStatusReboot.cgi can be accessed
28RISK
open
ReferênciaVexDay Proof
Xcode OpenBase 10.0.0 (OSX) - Symlink Privilege Escalation
CVE-2006-5851localosx
openexec in OpenBase SQL before 10.0.1 allows local users to create arbitrary files via a symlink attack on the /tmp/out
23RISK
open
ReferênciaVexDay Proof
Xcode OpenBase 10.0.0 (OSX) - Unsafe System Call Privilege Escalation
CVE-2006-5852localosx
Untrusted search path vulnerability in openexec in OpenBase SQL before 10.0.1 allows local users to gain privileges via
23RISK
open
Referência
Genexis Platinum 4410 Router 2.1 - UPnP Credential Exposure
CVE-2020-25988remotehardware
UPNP Service listening on port 5555 in Genexis Platinum 4410 Router V2.1 (P4410-V2–1.34H) has an action 'X_GetAccess' wh
23RISK
open
Referência
CVE-2026-62242
Spring Boot Admin Server < 4.1.2 SSRF via Unauthenticated Instance Registration
41RISK
open
Referência
CVE-2026-62240
CrewAI < 1.15.1 SSRF Filter Bypass via HTTP Redirect in Scrape Tools
41RISK
open
Referência
CVE-2026-15539
SourceCodester Online Book Store System Book Image Upload Feature index.php books unrestricted upload
33RISK
open
Referência
CVE-2026-12582
Library Management System < 3.5.8 - Unauthenticated SQL Injection via book_id
41RISK
open
Referência
CVE-2026-61459
MCP Server Kubernetes < 3.9.0 Argument Injection via kubectl Structured Tools
48RISK
open
Referência
CVE-2026-61460
Krayin CRM Insecure Direct Object Reference via Controllers
41RISK
open
Referência
CVE-2026-15376
Eleveo Call Recording Software statisticReportAction.do improper authorization
33RISK
open
previouspage 469 / 746next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.