Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,386cataloged exploits
36,533CVEs with public exploitation
24,695lab-tested
24,460 exploits
Exploit-DB
CMSUno 1.6 - Cross-Site Request Forgery (Change Admin Password)
CVE-2020-15600webappsphp17 Jul 2020
An issue was discovered in CMSUno before 1.6.1. uno.php allows CSRF to change the admin password.
23RISK
open
Exploit-DB
SuperMicro IPMI WebInterface 03.40 - Cross-Site Request Forgery (Add Admin)
CVE-2020-15046webappshardware15 Jul 2020
The web interface on Supermicro X10DRH-iT motherboards with BIOS 2.0a and IPMI firmware 03.40 allows remote attackers to
23RISK
open
Exploit-DB
Zyxel Armor X1 WAP6806 - Directory Traversal
CVE-2020-14461webappshardware15 Jul 2020
Zyxel Armor X1 WAP6806 1.00(ABAL.6)C0 devices allow Directory Traversal via the images/eaZy/ URI.
23RISK
open
Exploit-DB
Trend Micro Web Security Virtual Appliance 6.5 SP2 Patch 4 Build 1901 - Remote Code Execution (Metasploit)
CVE-2020-8605webappsmultiple14 Jul 2020
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to execute arbitr
60RISK
open
Exploit-DB
BSA Radar 1.6.7234.24750 - Local File Inclusion
CVE-2020-14946webappsmultiple14 Jul 2020
downloadFile.ashx in the Administrator section of the Surveillance module in Global RADAR BSA Radar 1.6.7234.24750 and e
23RISK
open
Exploit-DB
Aruba ClearPass Policy Manager 6.7.0 - Unauthenticated Remote Command Execution
CVE-2020-7115remotelinux10 Jul 2020
The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon succ
35RISK
open
Exploit-DB
CompleteFTP Professional 12.1.3 - Remote Code Execution
CVE-2019-16116remotewindows09 Jul 2020
EnterpriseDT CompleteFTP Server prior to version 12.1.3 is vulnerable to information exposure in the Bootstrap.log file.
23RISK
open
Exploit-DB
SuperMicro IPMI 03.40 - Cross-Site Request Forgery (Add Admin)
CVE-2020-15046webappshardware08 Jul 2020
The web interface on Supermicro X10DRH-iT motherboards with BIOS 2.0a and IPMI firmware 03.40 allows remote attackers to
23RISK
open
Exploit-DB
BSA Radar 1.6.7234.24750 - Cross-Site Request Forgery (Change Password)
CVE-2020-14944webappshardware08 Jul 2020
Global RADAR BSA Radar 1.6.7234.24750 and earlier lacks valid authorization controls in multiple functions. This can all
23RISK
open
Exploit-DB
Exhibitor Web UI 1.7.1 - Remote Code Execution
CVE-2019-5029CRITICALwebappsjava07 Jul 2020
An exploitable command injection vulnerability exists in the Config editor of the Exhibitor Web UI versions 1.0.9 to 1.7
60RISK
open
Exploit-DB
BIG-IP 15.0.0 < 15.1.0.3 / 14.1.0 < 14.1.2.5 / 13.1.0 < 13.1.3.3 / 12.1.0 < 12.1.5.1 / 11.6.1 < 11.6.5.1 - Traffic Management User Interface 'TMUI' Remote Code Execution
CVE-2020-5902CRITICALunder attackransomwarewebappslinux06 Jul 2020
In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic
100RISK
open
Exploit-DB
RSA IG&L Aveksa 7.1.1 - Remote Code Execution
CVE-2019-3759MEDIUMwebappsmultiple06 Jul 2020
The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 cont
33RISK
open
Exploit-DB
Grafana 7.0.1 - Denial of Service (PoC)
CVE-2020-13379doslinux06 Jul 2020
The avatar feature in Grafana 3.0.1 through 7.0.1 has an SSRF Incorrect Access Control issue. This vulnerability allows
60RISK
open
Exploit-DB
BIG-IP 15.0.0 < 15.1.0.3 / 14.1.0 < 14.1.2.5 / 13.1.0 < 13.1.3.3 / 12.1.0 < 12.1.5.1 / 11.6.1 < 11.6.5.1 - Traffic Management User Interface 'TMUI' Remote Code Execution (PoC)
CVE-2020-5902CRITICALunder attackransomwarewebappslinux05 Jul 2020
In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic
100RISK
open
Exploit-DB
OCS Inventory NG 2.7 - Remote Code Execution
CVE-2020-14947webappsmultiple02 Jul 2020
OCS Inventory NG 2.7 allows Remote Command Execution via shell metacharacters to require/commandLine/CommandLine.php bec
28RISK
open
Exploit-DB
mySCADA myPRO 7 - Hardcoded Credentials
CVE-2018-11311remotehardware25 Jun 2020
A hardcoded FTP username of myscada and password of Vikuk63 in 'myscadagate.exe' in mySCADA myPRO 7 allows remote attack
28RISK
open
Exploit-DB
Lansweeper 7.2 - Incorrect Access Control
CVE-2020-14011localwindows23 Jun 2020
Lansweeper 6.0.x through 7.2.x has a default installation in which the admin password is configured for the admin accoun
28RISK
open
Exploit-DB
WebPort 1.19.1 - Reflected Cross-Site Scripting
CVE-2019-12461webappsmultiple22 Jun 2020
Web Port 1.19.1 allows XSS via the /log type parameter.
38RISK
open
Exploit-DB
WebPort 1.19.1 - 'setup' Reflected Cross-Site Scripting
CVE-2019-12460webappsphp22 Jun 2020
Web Port 1.19.1 allows XSS via the /access/setup type parameter.
23RISK
open
Exploit-DB
FileRun 2019.05.21 - Reflected Cross-Site Scripting
CVE-2019-12905webappsmultiple22 Jun 2020
FileRun 2019.05.21 allows XSS via the filename to the ?module=fileman&section=do&page=up URI. This issue has been fixed
23RISK
open
Exploit-DB
Gila CMS 1.11.8 - 'query' SQL Injection
CVE-2020-5515webappsphp16 Jun 2020
Gila CMS 1.11.8 allows /admin/sql?query= SQL Injection.
28RISK
open
Exploit-DB
SOS JobScheduler 1.13.3 - Stored Password Decryption
CVE-2020-12712remotemultiple15 Jun 2020
A vulnerability based on insecure user/password encryption in the JOE (job editor) component of SOS JobScheduler 1.12 an
23RISK
open
Exploit-DB
Sysax MultiServer 6.90 - Reflected Cross Site Scripting
CVE-2020-13228webappsmultiple12 Jun 2020
An issue was discovered in Sysax Multi Server 6.90. There is reflected XSS via the /scgi sid parameter.
23RISK
open
Exploit-DB
Avaya IP Office 11 - Password Disclosure
CVE-2020-7030MEDIUMwebappsmultiple12 Jun 2020
IPO Information Disclosure
33RISK
open
Exploit-DB
WinGate 9.4.1.5998 - Insecure Folder Permissions
CVE-2020-13866localwindows10 Jun 2020
WinGate v9.4.1.5998 has insecure permissions for the installation directory, which allows local users to gain privileges
23RISK
open
Exploit-DB
Bludit 3.9.12 - Directory Traversal
CVE-2019-16113webappsphp09 Jun 2020
Bludit 3.9.2 allows remote code execution via bl-kernel/ajax/upload-images.php because PHP code can be entered with a .j
60RISK
open
Exploit-DB
D-Link DIR-615 T1 20.10 - CAPTCHA Bypass
CVE-2019-17525webappshardware04 Jun 2020
The login page on D-Link DIR-615 T1 20.10 devices allows remote attackers to bypass the CAPTCHA protection mechanism and
23RISK
open
Exploit-DB
OpenCart 3.0.3.2 - Stored Cross Site Scripting (Authenticated)
CVE-2020-10596webappsphp02 Jun 2020
OpenCart 3.0.3.2 allows remote authenticated users to conduct XSS attacks via a crafted filename in the users' image upl
23RISK
open
Exploit-DB
Microsoft Windows - 'SMBGhost' Remote Code Execution
CVE-2020-0796CRITICALunder attackransomwareremotewindows02 Jun 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
Exploit-DB
vCloud Director 9.7.0.15498291 - Remote Code Execution
CVE-2020-3956remotelinux02 Jun 2020
VMware Cloud Director 10.0.x before 10.0.0.2, 9.7.0.x before 9.7.0.5, 9.5.0.x before 9.5.0.6, and 9.1.0.x before 9.1.0.4
28RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.