Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

81,417cataloged exploits
37,908CVEs with public exploitation
24,695lab-tested
19,066 exploits
Exploit-DB✓ VexDay Proof
cPanel 5.0 - 'Guestbook.cgi' Remote Command Execution (4)
CVE-2003-1425—webappscgi19 Feb 2003
guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter.
28RISK
open ↗
Exploit-DB✓ VexDay Proof
cPanel 5.0 - 'Guestbook.cgi' Remote Command Execution (1)
CVE-2003-1425—webappscgi19 Feb 2003
guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter.
28RISK
open ↗
Exploit-DB✓ VexDay Proof
PHP-Nuke 5.6/6.0 - Search Engine SQL Injection
CVE-2003-1435—webappsphp19 Feb 2003
SQL injection vulnerability in PHP-Nuke 5.6 and 6.0 allows remote attackers to execute arbitrary SQL commands via the da
23RISK
open ↗
Exploit-DB✓ VexDay Proof
PHPBB2 - 'Page_Header.php' SQL Injection
CVE-2003-1244—webappsphp19 Feb 2003
SQL injection vulnerability in page_header.php in phpBB 2.0, 2.0.1 and 2.0.2 allows remote attackers to brute force user
23RISK
open ↗
Exploit-DB✓ VexDay Proof
D-Forum 1 - 'header' Remote File Inclusion
CVE-2003-1406—webappsphp18 Feb 2003
PHP remote file inclusion vulnerability in D-Forum 1.00 through 1.11 allows remote attackers to execute arbitrary PHP co
23RISK
open ↗
Exploit-DB✓ VexDay Proof
D-Forum 1 - 'footer' Remote File Inclusion
CVE-2003-1406—webappsphp18 Feb 2003
PHP remote file inclusion vulnerability in D-Forum 1.00 through 1.11 allows remote attackers to execute arbitrary PHP co
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Linux-ATM LES 2.4 - Command Line Argument Buffer Overflow
CVE-2003-0396—locallinux18 Feb 2003
Buffer overflow in les for ATM on Linux (linux-atm) before 2.4.1, if used setuid, allows local users to gain privileges
23RISK
open ↗
Exploit-DB✓ VexDay Proof
eCommerce Corporation Online Store Kit 3.0 - 'More.php' Cross-Site Scripting
CVE-2004-0301—webappsphp17 Feb 2003
Cross-site scripting (XSS) vulnerability in more.php for Online Store Kit 3.0 allows remote attackers to inject arbitrar
23RISK
open ↗
Exploit-DB✓ VexDay Proof
eCommerce Corporation Online Store Kit 3.0 - 'More.php?id' SQL Injection
CVE-2004-0300—webappsphp17 Feb 2003
SQL injection vulnerability in Online Store Kit 3.0 allows remote attackers to inject arbitrary SQL and gain unauthorize
23RISK
open ↗
Exploit-DB✓ VexDay Proof
DotBr 0.1 - 'System.php3' Remote Command Execution
CVE-2003-1405—webappsphp15 Feb 2003
DotBr 0.1 allows remote attackers to execute arbitrary shell commands via the cmd parameter to (1) exec.php3 or (2) syst
23RISK
open ↗
Exploit-DB✓ VexDay Proof
DotBr 0.1 - 'Exec.php3' Remote Command Execution
CVE-2003-1405—webappsphp15 Feb 2003
DotBr 0.1 allows remote attackers to execute arbitrary shell commands via the cmd parameter to (1) exec.php3 or (2) syst
23RISK
open ↗
Exploit-DB✓ VexDay Proof
PHP-Board 1.0 - User Password Disclosure
CVE-2003-1401—webappsphp15 Feb 2003
login.php in php-Board 1.0 stores plaintext passwords in $username.txt with insufficient access control under the web do
23RISK
open ↗
Exploit-DB✓ VexDay Proof
IBM AIX 4.3.3/5.1/5.2 - 'libIM' Buffer Overflow
CVE-2003-0087—dosaix12 Feb 2003
Buffer overflow in libIM library (libIM.a) for National Language Support (NLS) on AIX 4.3 through 5.2 allows local users
23RISK
open ↗
Exploit-DB✓ VexDay Proof
HP-UX 10.x - stmkfont Alternate Typeface Library Buffer Overflow (1)
CVE-2003-1359—localhp-ux12 Feb 2003
Buffer overflow in stmkfont utility of HP-UX 10.0 through 11.22 allows local users to gain privileges via a long command
23RISK
open ↗
Exploit-DB✓ VexDay Proof
HP-UX 10.x - rs.F3000 Unauthorized Access
CVE-2003-1358—localhp-ux12 Feb 2003
rs.F300 for HP-UX 10.0 through 11.22 uses the PATH environment variable to find and execute programs such as rm while op
23RISK
open ↗
Exploit-DB✓ VexDay Proof
RARLAB FAR 1.65/1.70 - File Manager Buffer Overflow
CVE-2003-1445—doslinux11 Feb 2003
Stack-based buffer overflow in Far Manager 1.70beta1 and earlier allows local users to cause a denial of service (crash)
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows NT/2000 - 'cmd.exe' CD Buffer Overflow (PoC)
CVE-2003-1407—doswindows11 Feb 2003
Buffer overflow in cmd.exe in Windows NT 4.0 may allow local users to execute arbitrary code via a long pathname argumen
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Ericsson HM220dp DSL Modem - World Accessible Web Administration Interface
CVE-2003-1442—remotehardware11 Feb 2003
The web administration page for the Ericsson HM220dp ADSL modem does not require authentication, which could allow remot
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Opera 6.0/7.0 - 'Username' URI Warning Dialog Buffer Overflow
CVE-2003-1387—doswindows10 Feb 2003
Buffer overflow in Opera 6.05 and 6.06, and possibly other versions, allows remote attackers to execute arbitrary code v
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Nethack 3 - Local Buffer Overflow (3)
CVE-2003-0358—locallinux10 Feb 2003
Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, which is based on nethack, allow
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Nethack 3 - Local Buffer Overflow (1)
CVE-2003-0358—locallinux10 Feb 2003
Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, which is based on nethack, allow
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Nethack 3 - Local Buffer Overflow (2)
CVE-2003-0358—locallinux10 Feb 2003
Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, which is based on nethack, allow
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Netgear FM114P Wireless Firewall - File Disclosure
CVE-2003-1427—remotehardware10 Feb 2003
Directory traversal vulnerability in the web configuration interface in Netgear FM114P 1.4 allows remote attackers to re
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Cedric Email Reader 0.4 - Global Configuration Script Remote File Inclusion
CVE-2003-1411—webappsphp09 Feb 2003
PHP remote file inclusion vulnerability in emailreader_execute_on_each_page.inc.php in Cedric Email Reader 0.4 allows re
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Cedric Email Reader 0.2/0.3 - Skin Configuration Script Remote File Inclusion
CVE-2003-1410—webappsphp09 Feb 2003
PHP remote file inclusion vulnerability in email.php (aka email.php3) in Cedric Email Reader 0.2 and 0.3 allows remote a
23RISK
open ↗
Exploit-DB✓ VexDay Proof
HPUX 10.20/11 Wall Message - Local Buffer Overflow
CVE-2003-1375—localhp-ux07 Feb 2003
Buffer overflow in wall for HP-UX 10.20 through 11.11 may allow local users to execute arbitrary code by calling wall wi
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Celestial Software AbsoluteTelnet 2.0/2.11 - Title Bar Buffer Overflow
CVE-2003-1090—remotewindows06 Feb 2003
Buffer overflow in AbsoluteTelnet before 2.12 RC10 allows remote attackers to execute arbitrary code via a long window t
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP - Redirector Privilege Escalation
CVE-2003-0004—localwindows05 Feb 2003
Buffer overflow in the Windows Redirector function in Microsoft Windows XP allows local users to execute arbitrary code
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Epic Games Unreal Engine 436 - Client Unreal URL Denial of Service
CVE-2003-1431—dosmultiple05 Feb 2003
Buffer overflow in Epic Games Unreal Engine 226f through 436 allows remote attackers to cause a denial of service (crash
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5 - ShowHelp Arbitrary Command Execution
CVE-2003-1328—remotewindows05 Feb 2003
The showHelp() function in Microsoft Internet Explorer 5.01, 5.5, and 6.0 supports certain types of pluggable protocols
35RISK
open ↗
← previouspage 557 / 636next →

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.