Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
81,453cataloged exploits
37,908CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,482Referência 24,237GitHub PoC 15,653VulnCheck XDB 9,134Nuclei 4,441Metasploit 3,506✓ verified onlyrecentpopularrisk
19,066 exploits
Exploit-DB✓ VexDay Proof
Trillian 0.73/0.74 - IRC PRIVMSG Buffer Overflow
Multiple buffer overflows in the IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a
23RISK
open ↗Exploit-DB✓ VexDay Proof
Trillian 0.6351/0.7x - Identd Buffer Overflow
Multiple buffer overflows in the IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco VPN 5000 Client - Buffer Overrun (2)
Buffer overflows in the Cisco VPN 5000 Client before 5.2.7 for Linux, and VPN 5000 Client before 5.2.8 for Solaris, allo
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco VPN 5000 Client - Buffer Overrun (1)
Buffer overflows in the Cisco VPN 5000 Client before 5.2.7 for Linux, and VPN 5000 Client before 5.2.8 for Solaris, allo
23RISK
open ↗Exploit-DB✓ VexDay Proof
Lycos HTMLGear - guestGear CSS HTML Injection
Cross-site scripting (XSS) vulnerability in Lycos HTMLGear guestbook allows remote attackers to inject arbitrary script
23RISK
open ↗Exploit-DB✓ VexDay Proof
TCP SYN - 'bang.c' Denial of Service
Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to
23RISK
open ↗Exploit-DB✓ VexDay Proof
DB4Web 3.4/3.6 - Connection Proxy
DB4Web server, when configured to use verbose debug messages, allows remote attackers to use DB4Web as a proxy and attem
28RISK
open ↗Exploit-DB✓ VexDay Proof
DB4Web 3.4/3.6 - File Disclosure
db4web_c and db4web_c.exe programs in DB4Web 3.4 and 3.6 allow remote attackers to read arbitrary files via an HTTP requ
23RISK
open ↗Exploit-DB✓ VexDay Proof
BubbleMon 1.x Kernel - Memory File Descriptor Leakage
FreeBSD port programs that use libkvm for FreeBSD 4.6.2-RELEASE and earlier, including (1) asmon, (2) ascpu, (3) bubblem
23RISK
open ↗Exploit-DB✓ VexDay Proof
ASCPU 0.60 Kernel - Memory File Descriptor Leakage
FreeBSD port programs that use libkvm for FreeBSD 4.6.2-RELEASE and earlier, including (1) asmon, (2) ascpu, (3) bubblem
23RISK
open ↗Exploit-DB✓ VexDay Proof
PlanetWeb 1.14 - GET Buffer Overflow
Buffer overflow in PlanetDNS PlanetWeb 1.14 and earlier allows remote attackers to execute arbitrary code via (1) an HTT
28RISK
open ↗Exploit-DB✓ VexDay Proof
WMNet2 1.0 6 - Kernel Memory File Descriptor Leakage
FreeBSD port programs that use libkvm for FreeBSD 4.6.2-RELEASE and earlier, including (1) asmon, (2) ascpu, (3) bubblem
23RISK
open ↗Exploit-DB✓ VexDay Proof
WMMon 1.0 b2 - Memory Character File Open File Descriptor Read
FreeBSD port programs that use libkvm for FreeBSD 4.6.2-RELEASE and earlier, including (1) asmon, (2) ascpu, (3) bubblem
23RISK
open ↗Exploit-DB✓ VexDay Proof
Savant Web Server 3.1 - Malformed Content-Length Denial of Service
Savant Webserver 3.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request with a negativ
23RISK
open ↗Exploit-DB✓ VexDay Proof
Savant Web Server 3.1 - File Disclosure
Savant Web Server 3.1 and earlier allows remote attackers to bypass authentication for password protected user folders v
23RISK
open ↗Exploit-DB✓ VexDay Proof
BRU 17.0 - XBRU Insecure Temporary File
xbru in BRU Workstation 17.0 allows local users to overwrite arbitrary files and gain root privileges via a symlink atta
23RISK
open ↗Exploit-DB✓ VexDay Proof
Enterasys SSR8000 SmartSwitch - Port Scan Denial of Service
The MPS functionality in Enterasys SSR8000 (Smart Switch Router) before firmware 8.3.0.10 allows remote attackers to cau
23RISK
open ↗Exploit-DB✓ VexDay Proof
Trillian Instant Messaging 0.x - Credential Encryption
Cerulean Studios Trillian 0.73 and earlier use weak encrypttion (XOR) for storing user passwords in .ini files in the Tr
23RISK
open ↗Exploit-DB✓ VexDay Proof
Netris 0.3/0.4/0.5 - Remote Memory Corruption
netris 0.5, and possibly other versions before 0.52, when running with the -w (wait) option, allows remote attackers to
23RISK
open ↗Exploit-DB✓ VexDay Proof
WoltLab Burning Board 2.0 - SQL Injection
SQL injection vulnerability in board.php for WoltLab Burning Board (wBB) 2.0 RC 1 and earlier allows remote attackers to
23RISK
open ↗Exploit-DB✓ VexDay Proof
phpGB 1.1 - HTML Injection
Cross-site scripting (XSS) vulnerability in phpGB before 1.20 allows remote attackers to inject arbitrary HTML or script
23RISK
open ↗Exploit-DB✓ VexDay Proof
phpGB 1.x - SQL Injection
SQL injection vulnerability in login.php for phpGB 1.20 and earlier, when magic_quotes_gpc is not enabled, allows remote
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5 - IFrame/Frame Cross-Site/Zone Script Execution
Cross-site scripting vulnerability (XSS) in Internet Explorer 5.01 through 6.0 allows remote attackers to read and execu
28RISK
open ↗Exploit-DB✓ VexDay Proof
PHPGB 1.1/1.2 - PHP Code Injection
savesettings.php in phpGB 1.20 and earlier does not require authentication, which allows remote attackers to cause a den
23RISK
open ↗Exploit-DB✓ VexDay Proof
Alleged Outlook Express 5/6 Link - Denial of Service
Buffer overflow in Microsoft Outlook Express 5.0, 5.5, and 6.0 allows remote attackers to cause a denial of service (cra
28RISK
open ↗Exploit-DB✓ VexDay Proof
AFD 1.2.x - Working Directory Local Buffer Overflow / Local Privilege Escalation
Buffer overflow in Automatic File Distributor (AFD) 1.2.14 and earlier allows local users to gain privileges via a long
23RISK
open ↗Exploit-DB✓ VexDay Proof
Aestiva HTML/OS 2.4 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerabilities in Aestiva HTML/OS allows remote attackers to insert arbitrary HTML or script
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco VPN 3000 Series Concentrator Client - Authentication Denial of Service
Cisco VPN 3000 Concentrator 2.2.x, 3.6(Rel), and 3.x before 3.5.5, allows remote attackers to cause a denial of service
23RISK
open ↗Exploit-DB✓ VexDay Proof
Super Site Searcher - Remote Command Execution
site_searcher.cgi in Super Site Searcher allows remote attackers to execute arbitrary commands via shell metacharacters
23RISK
open ↗Exploit-DB✓ VexDay Proof
SWS Simple Web Server 0.0.3/0.0.4/0.1 - New Line Denial of Service
SWS web server 0.0.4, 0.0.3 and 0.1.0 allows remote attackers to cause a denial of service (crash) via a URL request tha
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.