Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

81,524cataloged exploits
37,962CVEs with public exploitation
24,695lab-tested
19,066 exploits
Exploit-DB✓ VexDay Proof
WU-FTPD 2.4.2/2.5 .0/2.6.0 - Remote Format String Stack Overwrite (2)
CVE-2000-0573—remotelinux26 Sep 2000
The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remo
60RISK
open ↗
Exploit-DB✓ VexDay Proof
HP OpenView Network Node Manager 6.10 - SNMP Denial of Service
CVE-2000-1058—dosmultiple26 Sep 2000
Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attacke
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Palm OS 3.5.2 - Weak Encryption
CVE-2000-1008—localpalm_os26 Sep 2000
PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows Media Player 7 - Embedded OCX Control
CVE-2000-0929—remotewindows26 Sep 2000
Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embed
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Unixware 7.0 - SCOhelp HTTP Server Format String
CVE-2000-1014—remotecgi26 Sep 2000
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attacker
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Alabanza Control Panel 3.0 - Domain Modification
CVE-2000-1023—remotecgi24 Sep 2000
The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers t
23RISK
open ↗
Exploit-DB✓ VexDay Proof
UoW Pine 4.0.4/4.10/4.21 - 'From:' Remote Buffer Overflow
CVE-2000-0909—remotelinux23 Sep 2000
Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arb
28RISK
open ↗
Exploit-DB✓ VexDay Proof
extent technologies rbs isp 2.5 - Directory Traversal
CVE-2000-1036—remotemultiple21 Sep 2000
Directory traversal vulnerability in Extent RBS ISP web server allows remote attackers to read sensitive information via
23RISK
open ↗
Exploit-DB✓ VexDay Proof
NetcPlus BrowseGate 2.80 - Denial of Service
CVE-2000-0908—doswindows21 Sep 2000
BrowseGate 2.80 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long Au
23RISK
open ↗
Exploit-DB✓ VexDay Proof
SuSE Linux 6.3/6.4 - Installed Package Disclosure
CVE-2000-1016—remotelinux21 Sep 2000
The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Cisco Secure ACS for Windows NT 2.42 - Remote Buffer Overflow
CVE-2000-1054—remotewindows21 Sep 2000
Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Cisco PIX Firewall 4.x/5.x - SMTP Content Filtering Evasion
CVE-2000-1022—remotehardware19 Sep 2000
The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/2000 - DLL Search Path
CVE-2000-0854—localwindows18 Sep 2000
When a Microsoft Office 2000 document is launched, the directory of that document is first used to locate DLL's such as
35RISK
open ↗
Exploit-DB✓ VexDay Proof
CamShot WebCam 2.6 Trial - Remote Buffer Overflow
CVE-2000-0836—remotewindows15 Sep 2000
Buffer overflow in CamShot WebCam Trial2.6 allows remote attackers to execute arbitrary commands via a long Authorizatio
23RISK
open ↗
Exploit-DB✓ VexDay Proof
IBM Websphere Application Server 3.0.2 Server Plugin - Denial of Service
CVE-2000-0848—dosmultiple15 Sep 2000
Buffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Sambar Server 4.3/4.4 Beta 3 - Search CGI
CVE-2000-0835—remotewindows15 Sep 2000
search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories
23RISK
open ↗
Exploit-DB✓ VexDay Proof
MultiHTML 1.5 - File Disclosure
CVE-2000-0912—webappscgi13 Sep 2000
MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifyi
23RISK
open ↗
Exploit-DB✓ VexDay Proof
WebTV for Windows 98/ME - Denial of Service
CVE-2000-0830—doswindows12 Sep 2000
annclist.exe in webTV for Windows allows remote attackers to cause a denial of service by via a large, malformed UDP pac
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Jack De Winter WinSMTP 1.6 f/2.0 - Buffer Overflow
CVE-2000-0833—doswindows11 Sep 2000
Buffer overflow in WinSMTP 1.06f and 2.X allows remote attackers to cause a denial of service via a long (1) USER or (2)
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Mandrake 6.1/7.0/7.1 - '/perl' HTTP Directory Disclosure
CVE-2000-0883—remotelinux11 Sep 2000
The default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 through 7.1 sets the /perl/ director
23RISK
open ↗
Exploit-DB✓ VexDay Proof
YaBB 9.1.2000 - Arbitrary File Read
CVE-2000-0853—remotecgi10 Sep 2000
YaBB Bulletin Board 9.1.2000 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
RedHat Linux 6.1 i386 - Tmpwatch Recursive Write Denial of Service
CVE-2000-0829—doslinux09 Sep 2000
The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Mobius DocumentDirect for the Internet 1.2 - Remote Buffer Overflow
CVE-2000-0828—remotewindows08 Sep 2000
Buffer overflow in ddicgi.exe in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Solaris 2.6/7.0 'eject' locale - Subsystem Format String
CVE-2000-0844—localsolaris08 Sep 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISK
open ↗
Exploit-DB✓ VexDay Proof
nathan purciful phpphotoalbum 0.9.9 - Directory Traversal
CVE-2000-0872—webappsphp07 Sep 2000
explorer.php in PhotoAlbum 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Apache 1.3.12 - WebDAV Directory Listings
CVE-2000-0869—remotelinux07 Sep 2000
The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbit
35RISK
open ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - Still Image Service Privilege Escalation
CVE-2000-0851—localwindows06 Sep 2000
Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long W
23RISK
open ↗
Exploit-DB✓ VexDay Proof
LPPlus 3.2.2/3.3 - dccscan Unprivileged read
CVE-2000-0881—localunix06 Sep 2000
The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is s
23RISK
open ↗
Exploit-DB✓ VexDay Proof
LPPlus 3.2.2/3.3 - Permissions Denial of Service
CVE-2000-0880—dosunix06 Sep 2000
LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processe
23RISK
open ↗
Exploit-DB✓ VexDay Proof
RedHat 6 GLIBC/locale - Subsystem Format String
CVE-2000-0844—locallinux06 Sep 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISK
open ↗
← previouspage 605 / 636next →

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.