Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

81,192cataloged exploits
37,765CVEs with public exploitation
24,695lab-tested
19,066 exploits
Exploit-DBVexDay Proof
Microsoft Outlook Express 6.0 - '.MHTML' Forced File Execution (1)
CVE-2004-0380remotewindows25 Nov 2003
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RISK
open
Exploit-DBVexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (1)
CVE-2000-0342remotewindows25 Nov 2003
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISK
open
Exploit-DBVexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (2)
CVE-2000-0342remotewindows25 Nov 2003
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISK
open
Exploit-DBVexDay Proof
Microsoft Outlook Express 6.0 - MHTML Forced File Execution (2)
CVE-2004-0380remotewindows25 Nov 2003
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RISK
open
Exploit-DBVexDay Proof
Monit 1.4/2.x/3/4 - 'HTTP Request' Buffer Overrun
CVE-2003-1083remotelinux24 Nov 2003
Stack-based buffer overflow in Monit 1.4 to 4.1 allows remote attackers to execute arbitrary code via a long HTTP reques
28RISK
open
Exploit-DBVexDay Proof
Apache mod_gzip (with debug_mode) 1.2.26.1a - Remote Overflow
CVE-2003-0842remotelinux20 Nov 2003
Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions,
23RISK
open
Exploit-DBVexDay Proof
FreeRadius 0.x/1.1.x - Tag Field Heap Corruption
CVE-2003-0967doslinux20 Nov 2003
rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADI
23RISK
open
Exploit-DBVexDay Proof
IA WebMail Server 3.x - 'iaregdll.dll 1.0.0.5' Remote Overflow
CVE-2003-1192remotewindows19 Nov 2003
Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET
50RISK
open
Exploit-DBVexDay Proof
OpenBSD 2.x < 3.3 - 'exec_ibcs2_coff_prep_zmagic()' kernel stack overflow
CVE-2003-0955localbsd19 Nov 2003
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Workstation Service WKSSVC Remote (MS03-049)
CVE-2003-0812remotewindows14 Nov 2003
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers t
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - ListBox/ComboBox Control Local (MS03-045)
CVE-2003-0659localwindows14 Nov 2003
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary co
35RISK
open
Exploit-DBVexDay Proof
Microsoft FrontPage Server Extensions - 'fp30reg.dll' (MS03-051)
CVE-2003-0822remotewindows13 Nov 2003
Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows XP/2000 - Workstation Service Overflow (MS03-049)
CVE-2003-0812remotewindows12 Nov 2003
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers t
60RISK
open
Exploit-DBVexDay Proof
GNU Zebra 0.9x / Quagga 0.96 - Remote Denial of Service
CVE-2003-0795doslinux12 Nov 2003
The vty layer in Quagga before 0.96.4, and Zebra 0.93b and earlier, does not verify that sub-negotiation is taking place
23RISK
open
Exploit-DBVexDay Proof
Qualcomm Eudora 5.x/6.0 - Spoofed Attachment Line Denial of Service
CVE-2003-0376doswindows12 Nov 2003
Buffer overflow in Eudora 5.2.1 allows remote attackers to cause a denial of service (crash and failed restart) and poss
23RISK
open
Exploit-DBVexDay Proof
Wireless Tools 26 (IWConfig) - ARGV Local Command Line Buffer Overflow (2)
CVE-2003-0947locallinux11 Nov 2003
Buffer overflow in iwconfig, when installed setuid, allows local users to execute arbitrary code via a long OUT environm
23RISK
open
Exploit-DBVexDay Proof
Epic 1.0.1/1.0.x - CTCP Nickname Server Message Buffer Overrun
CVE-2003-0328remotelinux10 Nov 2003
EPIC IRC Client (EPIC4) pre2.002, pre2.003, and possibly later versions, allows remote malicious IRC servers to cause a
23RISK
open
Exploit-DBVexDay Proof
Hylafax 4.1.x - HFaxD Format String
CVE-2003-0886remotelinux10 Nov 2003
Format string vulnerability in hfaxd for Hylafax 4.1.7 and earlier allows remote attackers to execute arbitrary code.
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows XP/2000 - RPC Remote Non Exec Memory
CVE-2003-0605remotewindows07 Nov 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
IBM DB2 - 'db2stop' Format String Arbitrary Code Execution
CVE-2003-1051locallinux07 Nov 2003
Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code
23RISK
open
Exploit-DBVexDay Proof
IBM DB2 - 'db2start' Format String Arbitrary Code Execution
CVE-2003-1051locallinux07 Nov 2003
Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code
23RISK
open
Exploit-DBVexDay Proof
IBM DB2 - 'db2stop' Command Line Argument Local Overflow
CVE-2003-1050doslinux07 Nov 2003
Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long com
23RISK
open
Exploit-DBVexDay Proof
IBM DB2 - 'db2start' Command Line Argument Local Overflow
CVE-2003-1050doslinux07 Nov 2003
Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long com
23RISK
open
Exploit-DBVexDay Proof
IBM DB2 - 'db2govd' Format String Arbitrary Code Execution
CVE-2003-1051locallinux07 Nov 2003
Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code
23RISK
open
Exploit-DBVexDay Proof
IBM DB2 - 'db2govd' Command Line Argument Local Overflow
CVE-2003-1050doslinux07 Nov 2003
Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long com
23RISK
open
Exploit-DBVexDay Proof
OpenBSD - 'ibcs2_exec' Kernel Code Execution
CVE-2003-0955localbsd07 Nov 2003
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary
23RISK
open
Exploit-DBVexDay Proof
John Beatty Easy PHP Photo Album 1.0 - 'dir' HTML Injection
CVE-2003-1146webappsphp04 Nov 2003
Cross-site scripting (XSS) vulnerability in John Beatty Easy PHP Photo Album 1.0 allows remote attackers to inject arbit
23RISK
open
Exploit-DBVexDay Proof
NIPrint LPD-LPR Print Server 4.10 - Remote Overflow
CVE-2003-1142remotewindows04 Nov 2003
Help in NIPrint LPD-LPR Print Server 4.10 and earlier executes Windows Explorer with SYSTEM privileges, which allows loc
23RISK
open
Exploit-DBVexDay Proof
GNU CFEngine 2.0.x - CFServD Transaction Packet Buffer Overrun (2)
CVE-2003-0849remotelinux04 Nov 2003
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RISK
open
Exploit-DBVexDay Proof
OpenAutoClassifieds 1.0 - 'Listing' Cross-Site Scripting
CVE-2003-1145webappsphp04 Nov 2003
Cross-site scripting (XSS) vulnerability in friendmail.php in OpenAutoClassifieds 1.0 allows remote attackers to inject
23RISK
open
previouspage 540 / 636next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.