Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,620cataloged exploits
35,647CVEs with public exploitation
24,695lab-tested
77,533 exploits
GitHub PoC7
Exploit and scanner for CVE-2023-3460
CVE-2023-346011 Jul 2023
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
60RISK
open
Exploit-DB
AVG Anti Spyware 7.5 - Unquoted Service Path _AVG Anti-Spyware Guard_
CVE-2023-36167localwindows11 Jul 2023
20RISK
open
Exploit-DB
Game Jackal Server v5 - Unquoted Service Path _GJServiceV5_
CVE-2023-36166localwindows11 Jul 2023
20RISK
open
Exploit-DB
BuildaGate5library v5 - Reflected Cross-Site Scripting (XSS)
CVE-2023-36163webappsphp11 Jul 2023
Cross Site Scripting vulnerability in IP-DOT BuildaGate v.BuildaGate5 allows a remote attacker to execute arbitrary code
23RISK
open
GitHub PoC1
asepsaepdin/CVE-2021-1732
CVE-2021-1732HIGHunder attackransomware11 Jul 2023
Windows Win32k Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC2
Search vulnerable FortiOS devices via Shodan (CVE-2023-27997)
CVE-2023-27997CRITICALunder attackransomware11 Jul 2023
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, versi
100RISK
open
GitHub PoC6
asepsaepdin/CVE-2023-22809
CVE-2023-22809HIGH10 Jul 2023
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environmen
68RISK
open
GitHub PoC
asepsaepdin/CVE-2021-3560
CVE-2021-3560HIGHunder attack10 Jul 2023
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
91RISK
open
GitHub PoC
asepsaepdin/CVE-2021-4034
CVE-2021-4034HIGHunder attackransomware10 Jul 2023
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attackransomware10 Jul 2023
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
VulnCheck XDB
local
CVE-2023-22809HIGH10 Jul 2023
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environmen
68RISK
open
VulnCheck XDB
local
CVE-2021-3560HIGHunder attack10 Jul 2023
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
91RISK
open
VulnCheck XDB
client-side
CVE-2023-346009 Jul 2023
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
60RISK
open
VulnCheck XDB
denial-of-service
CVE-2023-3496009 Jul 2023
A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.18 allows attackers to ex
60RISK
open
GitHub PoC10
POC for CVE-2023-34362 affecting MOVEit Transfer
CVE-2023-34362CRITICALunder attackransomware09 Jul 2023
In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022.1.5 (14.1.5), and 2023.
100RISK
open
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack09 Jul 2023
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
GitHub PoC1
Using CVE-2022-0847, "Dirty Pipe Exploit", to pop a reverse bash shell for arbitrary code execution on a foreign machine.
CVE-2022-0847HIGHunder attack09 Jul 2023
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
GitHub PoC
Mass CVE-2023-3460.
CVE-2023-346009 Jul 2023
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
60RISK
open
VulnCheck XDB
initial-access
CVE-2023-34362CRITICALunder attackransomware09 Jul 2023
In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022.1.5 (14.1.5), and 2023.
100RISK
open
VulnCheck XDB
infoleak
CVE-2023-35843HIGH09 Jul 2023
NocoDB through 0.106.0 (or 0.109.1) has a path traversal vulnerability that allows an unauthenticated attacker to access
56RISK
open
GitHub PoC4
A Directory Traversal attack (also known as path traversal) aims to access files and directories that are stored outside the intended folder.
CVE-2023-32235HIGH09 Jul 2023
Ghost before 5.42.1 allows remote attackers to read arbitrary files within the active theme's folder via /assets/built%2
68RISK
open
GitHub PoC
bthnrml/guncel-cve-2019-9053.py
CVE-2019-905309 Jul 2023
An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve
35RISK
open
GitHub PoC
An issue in MiniTool Partition Wizard ShadowMaker v.12.7 allows an attacker to execute arbitrary code via the MTAgentService component
CVE-2023-3616408 Jul 2023
20RISK
open
GitHub PoC2
Cross Site Scripting vulnerability in IP-DOT BuildaGate v.BuildaGate5 allows a remote attacker to execute arbitrary code via a crafted script to the mc parameter of the URL
CVE-2023-3616308 Jul 2023
Cross Site Scripting vulnerability in IP-DOT BuildaGate v.BuildaGate5 allows a remote attacker to execute arbitrary code
23RISK
open
GitHub PoC
Icinga Web 2 - Authenticated Remote Code Execution <2.8.6, <2.9.6, <2.10
CVE-2022-24715HIGH08 Jul 2023
Arbitrary code execution for authenticated users in Icinga Web 2
46RISK
open
GitHub PoC
An issue in MiniTool Partition Wizard ShadowMaker v.12.7 allows an attacker to execute arbitrary code and gain privileges via the SchedulerService.exe component.
CVE-2023-3616508 Jul 2023
20RISK
open
GitHub PoC
rizqimaulanaa/CVE-2023-3460
CVE-2023-346007 Jul 2023
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
60RISK
open
VulnCheck XDB
initial-access
CVE-2023-32315HIGHunder attack07 Jul 2023
Openfire administration console authentication bypass
100RISK
open
Exploit-DB
Microsoft Outlook Microsoft 365 MSO (Version 2306 Build 16.0.16529.20100) 32-bit - Remote Code Execution
CVE-2023-33131HIGHremotemultiple07 Jul 2023
Microsoft Outlook Remote Code Execution Vulnerability
41RISK
open
GitHub PoC5
CVE-2023-32315-Openfire-Bypass
CVE-2023-32315HIGHunder attack07 Jul 2023
Openfire administration console authentication bypass
100RISK
open
previouspage 487 / 2,585next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.