Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

81,366cataloged exploits
37,872CVEs with public exploitation
24,695lab-tested
19,066 exploits
Exploit-DB✓ VexDay Proof
Opera 6.0.x/7.0 - Long File Name Remote Heap Corruption
CVE-2003-1396—doswindows28 Apr 2003
Heap-based buffer overflow in Opera 6.05 through 7.10 allows remote attackers to cause a denial of service (crash) and p
23RISK
open ↗
Exploit-DB✓ VexDay Proof
3D-FTP Client 4.0 - Buffer Overflow
CVE-2003-1472—doswindows28 Apr 2003
Buffer overflow in 3D-FTP client 4.0 allows remote FTP servers to cause a denial of service (crash) and possibly execute
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Kerio Personal Firewall 2.1.x - Remote Authentication Packet Buffer Overflow (1)
CVE-2003-0220—doswindows28 Apr 2003
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows r
50RISK
open ↗
Exploit-DB✓ VexDay Proof
Pi3Web 2.0.1 - GET Denial of Service
CVE-2003-0276—doswindows26 Apr 2003
Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitr
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Mike Bobbitt Album.PL 0.61 - Remote Command Execution
CVE-2003-1456—webappscgi26 Apr 2003
Album.pl 6.1 allows remote attackers to execute arbitrary commands, when an alternative configuration file is used, via
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Macromedia ColdFusion MX 6.0 - Error Message Full Path Disclosure
CVE-2003-1469—webappscfm26 Apr 2003
The default configuration of ColdFusion MX has the "Enable Robust Exception Information" option selected, which allows r
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Xoops 1.3.x/2.0 MyTextSanitizer - HTML Injection
CVE-2003-1453—webappsphp25 Apr 2003
Cross-site scripting (XSS) vulnerability in the MytextSanitizer function in XOOPS 1.3.5 through 1.3.9 and XOOPS 2.0 thro
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Alt-N WebAdmin 2.0.x - Remote File Viewing
CVE-2003-1463—remotecgi25 Apr 2003
Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with ad
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Alt-N WebAdmin 2.0.x - Remote File Disclosure
CVE-2003-1463—remotecgi25 Apr 2003
Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with ad
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Truegalerie 1.0 - Unauthorized Administrative Access
CVE-2003-1488—webappsphp25 Apr 2003
The (1) verif_admin.php and (2) check_admin.php scripts in Truegalerie 1.0 allow remote attackers to gain administrator
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows 2000/XP - SMB Authentication Remote Overflow
CVE-2008-4037—remotewindows25 Apr 2003
Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20
50RISK
open ↗
Exploit-DB✓ VexDay Proof
PoPToP PPTP 1.1.4-b3 - 'poptop-sane.c' Remote Command Execution
CVE-2003-0213—remotelinux25 Apr 2003
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RISK
open ↗
Exploit-DB✓ VexDay Proof
IBM AIX 4.x - 'enq' Local Buffer Overflow
CVE-2000-1121—localaix24 Apr 2003
Buffer overflow in enq command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a lo
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Libopt.a 3.1x - Error Logging Buffer Overflow (1)
CVE-2003-0390—doslinux24 Apr 2003
Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, m
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Libopt.a 3.1x - Error Logging Buffer Overflow (2)
CVE-2003-0390—locallinux24 Apr 2003
Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, m
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Battleaxe Software BTTLXE Forum - 'login.asp' SQL Injection
CVE-2003-0215—webappsasp23 Apr 2003
SQL injection vulnerability in bttlxeForum 2.0 beta 3 and earlier allows remote attackers to bypass authentication via t
23RISK
open ↗
Exploit-DB✓ VexDay Proof
SAP Database 7.3/7.4 - SDBINST Race Condition
CVE-2003-0265—locallinux23 Apr 2003
Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initia
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5 - Remote 'URLMON.dll' Remote Buffer Overflow
CVE-2003-0113—remotewindows23 Apr 2003
Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute arbitr
35RISK
open ↗
Exploit-DB✓ VexDay Proof
Snort 1.9.1 - 'p7snort191.sh' Remote Command Execution
CVE-2003-0209—remotelinux23 Apr 2003
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to exec
35RISK
open ↗
Exploit-DB✓ VexDay Proof
Xinetd 2.1.x/2.3.x - Rejected Connection Memory Leakage Denial of Service
CVE-2003-0211—doslinux18 Apr 2003
Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large numbe
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Apple Mac OSX 10.2.4 - DirectoryService 'PATH' Local Privilege Escalation
CVE-2003-0171—localosx18 Apr 2003
DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows
23RISK
open ↗
Exploit-DB✓ VexDay Proof
PoPToP PPTP 1.1.4-b3 - Remote Command Execution
CVE-2003-0213—remotelinux18 Apr 2003
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RISK
open ↗
Exploit-DB✓ VexDay Proof
IBM AIX 4.3.x/5.1 - 'ERRPT' Local Buffer Overflow
CVE-2002-1468—localaix16 Apr 2003
Buffer overflow in errpt in AIX 4.3.3 allows local users to execute arbitrary code as root.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Apache Mod_Access_Referer 1.0.2 - Null Pointer Dereference Denial of Service
CVE-2003-1054—dosmultiple16 Apr 2003
mod_access_referer 1.0.2 allows remote attackers to cause a denial of service (crash) via a malformed Referer header tha
23RISK
open ↗
Exploit-DB✓ VexDay Proof
IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (1)
CVE-2003-0770—webappscgi15 Apr 2003
FUNC.pm in IkonBoard 3.1.2a and earlier, including 3.1.1, does not properly cleanse the "lang" cookie when it contains i
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Linux Kernel < 2.4.20 - Module Loader Privilege Escalation
CVE-2003-0127—locallinux14 Apr 2003
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root p
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Samba 2.2.x - 'call_trans2open' Remote Buffer Overflow (1)
CVE-2003-0201—remoteunix11 Apr 2003
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISK
open ↗
Exploit-DB✓ VexDay Proof
Apache 2.0.44 (Linux) - Remote Denial of Service
CVE-2003-0132—doslinux11 Apr 2003
A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via
45RISK
open ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2.x/2.4.x - Privileged Process Hijacking Privilege Escalation (2)
CVE-2003-0127—locallinux10 Apr 2003
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root p
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Samba < 2.2.8 (Linux/BSD) - Remote Code Execution
CVE-2003-0201—remotemultiple10 Apr 2003
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISK
open ↗
← previouspage 553 / 636next →

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.