Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

81,408cataloged exploits
37,905CVEs with public exploitation
24,695lab-tested
19,066 exploits
Exploit-DB✓ VexDay Proof
PHP 4.3 - 'socket_iovec_alloc()' Integer Overflow
CVE-2003-0166—dosphp25 Mar 2003
Integer signedness error in emalloc() function for PHP before 4.3.2 allow remote attackers to cause a denial of service
28RISK
open ↗
Exploit-DB✓ VexDay Proof
PHP-Nuke 6.5 Addon - 'Viewpage.php' File Disclosure
CVE-2003-1545—webappsphp25 Mar 2003
Absolute path traversal vulnerability in nukestyles.com viewpage.php addon for PHP-Nuke allows remote attackers to read
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - WebDAV Remote
CVE-2003-0109—remotewindows24 Mar 2003
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 (Windows XP/2000/NT 4.0) - WebDAV 'ntdll.dll' Remote Buffer Overflow (1)
CVE-2003-0109—remotewindows24 Mar 2003
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft IIS - WebDAV 'ntdll.dll' Remote Overflow
CVE-2003-0109—remotewindows23 Mar 2003
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISK
open ↗
Exploit-DB✓ VexDay Proof
AdMan 1.0.20051221 - 'ViewStatement.php' SQL Injection
CVE-2006-1374—webappsphp23 Mar 2003
SQL injection vulnerability in viewStatement.php in AdMan 1.0.20051221 and earlier allows remote attackers to execute ar
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Advanced Poll 2.0 - Remote Information Disclosure
CVE-2003-1181—webappsphp22 Mar 2003
Advanced Poll 2.0.2 allows remote attackers to obtain sensitive information via an HTTP request to info.php, which invok
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Planetmoon - Guestbook Clear Text Password Retrieval
CVE-2003-1541—webappscgi21 Mar 2003
PlanetMoon Guestbook tr3.a stores sensitive information under the web root with insufficient access control, which allow
23RISK
open ↗
Exploit-DB✓ VexDay Proof
XOOPS 2.0 XoopsOption - Information Disclosure
CVE-2003-1550—webappsphp20 Mar 2003
XOOPS 2.0, and possibly earlier versions, allows remote attackers to obtain sensitive information via an invalid xoopsOp
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Ximian Evolution 1.x - MIME image/* Content-Type Data Inclusion
CVE-2003-0130—remotelinux19 Mar 2003
The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly esca
28RISK
open ↗
Exploit-DB✓ VexDay Proof
DCP-Portal 5.3.1 - 'calendar.php' Cross-Site Scripting
CVE-2003-1536—webappsphp19 Mar 2003
Multiple cross-site scripting (XSS) vulnerabilities in Codeworx Technologies DCP-Portal 5.3.1 allow remote attackers to
23RISK
open ↗
Exploit-DB✓ VexDay Proof
WFChat 1.0 - Information Disclosure
CVE-2003-1540—remotemultiple19 Mar 2003
WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote a
23RISK
open ↗
Exploit-DB✓ VexDay Proof
SIPS 0.2.2 - User Information Disclosure
CVE-2003-1553—remotemultiple18 Mar 2003
Haakon Nilsen Simple Internet Publishing System (SIPS) 0.2.2 stores sensitive information under the web root with insuff
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Mambo Site Server 4.0.10 - 'index.php' Cross-Site Scripting
CVE-2003-1203—webappsphp18 Mar 2003
Cross-site scripting (XSS) vulnerability in index.php for Mambo Site Server 4.0.10 allows remote attackers to execute sc
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Ximian Evolution 1.x - UUEncoding Denial of Service
CVE-2003-0128—doslinux17 Mar 2003
The try_uudecoding function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attack
28RISK
open ↗
Exploit-DB✓ VexDay Proof
MyABraCaDaWeb 1.0 - Full Path Disclosure
CVE-2003-1548—webappsphp17 Mar 2003
MyABraCaDaWeb 1.0.2 and earlier allows remote attackers to obtain sensitive information via an invalid IDAdmin or other
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2.x/2.4.x - Privileged Process Hijacking Privilege Escalation (1)
CVE-2003-0127—locallinux17 Mar 2003
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root p
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 (Windows XP/2000/NT 4.0) - WebDAV 'ntdll.dll' Remote Buffer Overflow (4)
CVE-2003-0109—remotewindows17 Mar 2003
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISK
open ↗
Exploit-DB✓ VexDay Proof
Ximian Evolution 1.x - UUEncoding Parsing Memory Corruption
CVE-2003-0129—remotelinux17 Mar 2003
Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumpt
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Samba 2.2.x - CIFS/9000 Server A.01.x Packet Assembling Buffer Overflow
CVE-2003-0085—remoteunix15 Mar 2003
Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-
45RISK
open ↗
Exploit-DB✓ VexDay Proof
Man Program 1.5 - Unsafe Return Value Command Execution
CVE-2003-0124—locallinux11 Mar 2003
man before 1.5l allows attackers to execute arbitrary code via a malformed man file with improper quotes, which causes t
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Multitech RouteFinder 550 - Remote Memory Corruption
CVE-2003-0125—dosmultiple11 Mar 2003
Buffer overflow in the web interface for SOHO Routefinder 550 before firmware 4.63 allows remote attackers to cause a de
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Qpopper 4.0.x - Remote Memory Corruption
CVE-2003-0143—remotelinux10 Mar 2003
The pop_msg function in qpopper 4.0.x before 4.0.5fc2 does not null terminate a message buffer after a call to Qvsnprint
23RISK
open ↗
Exploit-DB✓ VexDay Proof
MySQL 3.23.x - 'mysqld' Local Privilege Escalation
CVE-2003-0150—locallinux08 Mar 2003
MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SEL
35RISK
open ↗
Exploit-DB✓ VexDay Proof
Clearswift MAILsweeper 4.x - MIME Attachment Filter Bypass
CVE-2003-0121—remotewindows07 Mar 2003
Clearswift MAILsweeper 4.x allows remote attackers to bypass attachment detection via an attachment that does not specif
23RISK
open ↗
Exploit-DB✓ VexDay Proof
File 3.x - Utility Local Memory Allocation
CVE-2003-1092—locallinux06 Mar 2003
Unknown vulnerability in the "Automatic File Content Type Recognition (AFCTR) Tool version of the file package before 3.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
File 3.x - Local Stack Overflow Code Execution (1)
CVE-2003-0102—localunix04 Mar 2003
Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user runn
23RISK
open ↗
Exploit-DB✓ VexDay Proof
File 3.x - Local Stack Overflow Code Execution (2)
CVE-2003-0102—localunix04 Mar 2003
Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user runn
23RISK
open ↗
Exploit-DB✓ VexDay Proof
HP JetDirect Printer - SNMP JetAdmin Device Password Disclosure
CVE-2002-1048—remotehardware03 Mar 2003
HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet servic
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Sendmail 8.12.x - Header Processing Buffer Overflow (1)
CVE-2002-1337—remoteunix02 Mar 2003
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted addre
45RISK
open ↗
← previouspage 555 / 636next →

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.