Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,526cataloged exploits
36,593CVEs with public exploitation
24,695lab-tested
24,460 exploits
Exploit-DB
Forcepoint WebSecurity 8.5 - Reflective Cross-Site Scripting
CVE-2019-6146webappsmultiple10 Feb 2020
It has been reported that cross-site scripting (XSS) is possible in Forcepoint Web Security, version 8.x, via host heade
23RISK
open
Exploit-DBVexDay Proof
iOS/macOS - Out-of-Bounds Timestamp Write in IOAccelCommandQueue2::processSegmentKernelCommand()
CVE-2020-3837HIGHunder attackdosmultiple10 Feb 2020
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3
76RISK
open
Exploit-DBVexDay Proof
D-Link Devices - Unauthenticated Remote Command Execution in ssdpcgi (Metasploit)
CVE-2019-20215remotelinux_mips10 Feb 2020
D-Link DIR-859 1.05 and 1.06B01 Beta01 devices allow remote attackers to execute arbitrary OS commands via a urn: to the
60RISK
open
Exploit-DBVexDay Proof
Ricoh Driver - Privilege Escalation (Metasploit)
CVE-2019-19363localwindows10 Feb 2020
An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attacker
38RISK
open
Exploit-DBVexDay Proof
OpenSMTPD - MAIL FROM Remote Code Execution (Metasploit)
CVE-2020-7247CRITICALunder attackremotelinux10 Feb 2020
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to
100RISK
open
Exploit-DB
EyesOfNetwork 5.3 - Remote Code Execution
CVE-2020-8655HIGHunder attackwebappsphp07 Feb 2020
An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability
98RISK
open
Exploit-DB
EyesOfNetwork 5.3 - Remote Code Execution
CVE-2020-8656webappsphp07 Feb 2020
An issue was discovered in EyesOfNetwork 5.3. The EyesOfNetwork API 2.4.2 is prone to SQL injection, allowing an unauthe
60RISK
open
Exploit-DB
EyesOfNetwork 5.3 - Remote Code Execution
CVE-2020-8654webappsphp07 Feb 2020
An issue was discovered in EyesOfNetwork 5.3. An authenticated web user with sufficient privileges could abuse the AutoD
60RISK
open
Exploit-DBVexDay Proof
Windscribe - WindscribeService Named Pipe Privilege Escalation (Metasploit)
CVE-2018-11479localwindows07 Feb 2020
The VPN component in Windscribe 1.81 uses the OpenVPN client for connections. Also, it creates a WindScribeService.exe s
38RISK
open
Exploit-DBVexDay Proof
Cisco Data Center Network Manager 11.2.1 - 'LanFabricImpl' Command Injection
CVE-2019-15978HIGHwebappsjava06 Feb 2020
Cisco Data Center Network Manager Command Injection Vulnerabilities
53RISK
open
Exploit-DBVexDay Proof
Cisco Data Center Network Manager 11.2 - Remote Code Execution
CVE-2019-15975CRITICALwebappsjava06 Feb 2020
Cisco Data Center Network Manager Authentication Bypass Vulnerabilities
85RISK
open
Exploit-DBVexDay Proof
Cisco Data Center Network Manager 11.2.1 - 'LanFabricImpl' Command Injection
CVE-2019-15977CRITICALwebappsjava06 Feb 2020
Cisco Data Center Network Manager Authentication Bypass Vulnerabilities
60RISK
open
Exploit-DBVexDay Proof
Cisco Data Center Network Manager 11.2.1 - 'getVmHostData' SQL Injection
CVE-2019-15984HIGHwebappsjava06 Feb 2020
Cisco Data Center Network Manager SQL Injection Vulnerabilities
53RISK
open
Exploit-DB
Sudo 1.8.25p - 'pwfeedback' Buffer Overflow
CVE-2019-18634locallinux06 Feb 2020
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the
28RISK
open
Exploit-DBVexDay Proof
Cisco Data Center Network Manager 11.2.1 - 'getVmHostData' SQL Injection
CVE-2019-15976CRITICALwebappsjava06 Feb 2020
Cisco Data Center Network Manager Authentication Bypass Vulnerabilities
70RISK
open
Exploit-DB
Kronos WebTA 4.0 - Authenticated Remote Privilege Escalation
CVE-2020-8495HIGHwebappsjava05 Feb 2020
In Kronos Web Time and Attendance (webTA) 3.8.x and later 3.x versions before 4.0, the com.threeis.webta.H491delegate se
41RISK
open
Exploit-DB
Kronos WebTA 4.0 - Authenticated Remote Privilege Escalation
CVE-2020-8493MEDIUMwebappsjava05 Feb 2020
A stored XSS vulnerability in Kronos Web Time and Attendance (webTA) affects 3.8.x and later 3.x versions before 4.0 via
33RISK
open
Exploit-DB
Verodin Director Web Console 3.5.4.0 - Remote Authenticated Password Disclosure (PoC)
CVE-2019-10716webappsjson05 Feb 2020
An Information Disclosure issue in Verodin Director 3.5.3.1 and earlier reveals usernames and passwords of integrated se
23RISK
open
Exploit-DB
xglance-bin 11.00 - Privilege Escalation
CVE-2014-2630locallinux05 Feb 2020
Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to gain privileges via u
38RISK
open
Exploit-DB
Sudo 1.8.25p - 'pwfeedback' Buffer Overflow (PoC)
CVE-2019-18634doslinux04 Feb 2020
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the
28RISK
open
Exploit-DB
Cacti 1.2.8 - Authenticated Remote Code Execution
CVE-2020-8813webappsmultiple03 Feb 2020
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a
60RISK
open
Exploit-DB
IceWarp WebMail 11.4.4.1 - Reflective Cross-Site Scripting
CVE-2020-8512webappsphp03 Feb 2020
In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter.
43RISK
open
Exploit-DB
School ERP System 1.0 - Cross Site Request Forgery (Add Admin)
CVE-2020-8504webappsphp03 Feb 2020
School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=addadmin CSRF to add an administrati
23RISK
open
Exploit-DB
Jira 8.3.4 - Information Disclosure (Username Enumeration)
CVE-2019-8449webappsjava03 Feb 2020
The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate username
60RISK
open
Exploit-DB
BearFTP 0.1.0 - 'PASV' Denial of Service
CVE-2020-8416doslinux03 Feb 2020
IKTeam BearFTP before 0.2.0 allows remote attackers to achieve denial of service via a large volume of connections to th
28RISK
open
Exploit-DB
Schneider Electric U.Motion Builder 1.3.4 - Authenticated Command Injection
CVE-2018-7777webappshardware03 Feb 2020
The vulnerability is due to insufficient handling of update_file request parameter on update_module.php in Schneider Ele
35RISK
open
Exploit-DB
Cacti 1.2.8 - Unauthenticated Remote Code Execution
CVE-2020-8813webappsmultiple03 Feb 2020
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a
60RISK
open
Exploit-DB
School ERP System 1.0 - Cross Site Request Forgery (Add Admin)
CVE-2020-8505webappsphp03 Feb 2020
School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=deleteadmin CSRF to delete a user.
23RISK
open
Exploit-DBVexDay Proof
OpenSMTPD 6.6.1 - Remote Code Execution
CVE-2020-7247CRITICALunder attackremotelinux30 Jan 2020
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to
100RISK
open
Exploit-DBVexDay Proof
rConfig 3.9.3 - Authenticated Remote Code Execution
CVE-2019-19509webappsphp30 Jan 2020
An issue was discovered in rConfig 3.9.3. A remote authenticated user can directly execute system commands by sending a
60RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.