Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,772cataloged exploits
35,760CVEs with public exploitation
24,695lab-tested
77,620 exploits
VulnCheck XDB
initial-access
CVE-2022-26134CRITICALunder attackransomware16 Oct 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISK
open
GitHub PoC
韩国的无线路由器 os cmd 注入
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2022-40684CRITICALunder attackransomware16 Oct 2022
An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 an
100RISK
open
GitHub PoC4
Forti CVE-2022-40684 enumeration script built in Rust
CVE-2022-40684CRITICALunder attackransomware16 Oct 2022
An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 an
100RISK
open
GitHub PoC1
NeriaBasha/CVE-2022-40684
CVE-2022-40684CRITICALunder attackransomware16 Oct 2022
An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 an
100RISK
open
GitHub PoC
批量检测CVE-2022-26134 RCE漏洞
CVE-2022-26134CRITICALunder attackransomware16 Oct 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISK
open
GitHub PoC1
Confluence Server and Data Center存在一个远程代码执行漏洞,未经身份验证的攻击者可以利用该漏洞向目标服务器注入恶意ONGL表达式,进而在目标服务器上执行任意代码。
CVE-2022-26134CRITICALunder attackransomware16 Oct 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISK
open
GitHub PoC
cve-2022-26134
CVE-2022-26134CRITICALunder attackransomware16 Oct 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISK
open
GitHub PoC
CVE-2022-26134
CVE-2022-26134CRITICALunder attackransomware16 Oct 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISK
open
GitHub PoC
CVE-2022-26134poc
CVE-2022-26134CRITICALunder attackransomware16 Oct 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISK
open
GitHub PoC4
Linux Kernel 3.10.0-514.21.2.el7.x86_64 / 3.10.0-514.26.1.el7.x86_64 (CentOS 7) - SUID Position Independent Executable 'PIE' Local Privilege Escalation
CVE-2017-1000253HIGHunder attackransomware16 Oct 2022
Linux distributions that have not patched their long-term kernels with https://git.kernel.org/linus/a87938b2e246b81b4fb7
76RISK
open
GitHub PoC2
CVE-2021-46422poc
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
GitHub PoC1
漏洞检测
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
GitHub PoC1
Telesquare SDT-CW3B1 1.1.0 版本存在操作系统命令注入漏洞。远程攻击者可利用该漏洞在无需任何身份验证的情况下执行操作系统命令。
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
GitHub PoC
SDT-CW3B1韩国的无线路由器 os cmd 注入PoC
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
GitHub PoC1
批量检测CVE-2021-46422 RCE漏洞
CVE-2021-4642216 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
local
CVE-2017-1000253HIGHunder attackransomware16 Oct 2022
Linux distributions that have not patched their long-term kernels with https://git.kernel.org/linus/a87938b2e246b81b4fb7
76RISK
open
GitHub PoC3
CVE-2021-46422漏洞
CVE-2021-4642215 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
GitHub PoC
yigexioabai/CVE-2021-46422_RCE
CVE-2021-4642215 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-4642215 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2021-4642215 Oct 2022
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute
60RISK
open
GitHub PoC
exploit for CVE-2022-40684 Fortinet
CVE-2022-40684CRITICALunder attackransomware15 Oct 2022
An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 an
100RISK
open
previouspage 547 / 2,588next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.