Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

81,689cataloged exploits
38,075CVEs with public exploitation
24,695lab-tested
19,066 exploits
Exploit-DB✓ VexDay Proof
SGI IRIX 3/4/5/6 / OpenLinux 1.0/1.1 - routed traceon
CVE-1999-0215—remoteirix21 Oct 1998
Routed allows attackers to append data to files.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
HP-UX 10.x/11.x - Aserver PATH
CVE-2000-0077—localhp-ux18 Oct 1998
The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate P
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Xi Graphics Maximum CDE 1.2.3/TriTeal TED CDE 4.3/Sun Solaris 2.5.1 - ToolTalk RPC Service Overflow (2)
CVE-1999-0003—remoteunix31 Aug 1998
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Xi Graphics Maximum CDE 1.2.3/TriTeal TED CDE 4.3/Sun Solaris 2.5.1 - ToolTalk RPC Service Overflow (1)
CVE-1999-0003—remoteunix31 Aug 1998
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
28RISK
open ↗
Exploit-DB✓ VexDay Proof
RedHat Linux 5.1 / Caldera OpenLinux Standard 1.2 - Mountd
CVE-1999-0002—remotelinux28 Aug 1998
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Netscape Enterprise Server 3.x/4.x - PageServices Information Disclosure
CVE-1999-0269—remotemultiple16 Aug 1998
Netscape Enterprise servers may list files through the PageServices query.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
IBM Scalable POWERparallel (SP) 2.0 - 'sdrd' File Read
CVE-1999-1488—remotelinux05 Aug 1998
sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Hylafax 4.0 pl2 Faxsurvey - Remote Command Execution
CVE-1999-0262—remoteunix04 Aug 1998
Hylafax faxsurvey CGI script on Linux allows remote attackers to execute arbitrary commands via shell metacharacters in
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Apache 1.2.5/1.3.1 / UnityMail 2.0 - MIME Header Denial of Service
CVE-1999-0926—doswindows02 Aug 1998
Apache allows remote attackers to conduct a denial of service via a large number of MIME headers.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Apache 1.2.5/1.3.1 / UnityMail 2.0 - MIME Header Denial of Service
CVE-1999-0925—doswindows02 Aug 1998
UnityMail allows remote attackers to conduct a denial of service via a large number of MIME headers.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
SGI IRIX 6.4 - 'ioconfig' Local Privilege Escalation
CVE-1999-0314—localirix20 Jul 1998
ioconfig on SGI IRIX 6.4 S2MP for Origin/Onyx2 allows local users to gain root access using relative pathnames.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Netscape Messaging Server 3.55 & University of Washington imapd 10.234 - Remote Buffer Overflow
CVE-1999-0005—remotelinux17 Jul 1998
Arbitrary command execution via IMAP buffer overflow in authenticate command.
28RISK
open ↗
Exploit-DB✓ VexDay Proof
Sun Solaris 2.6 - power management
CVE-1999-1432—localsolaris16 Jul 1998
Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspe
23RISK
open ↗
Exploit-DB✓ VexDay Proof
HP JetAdmin 1.0.9 Rev. D - symlink
CVE-1999-1433—remotelinux15 Jul 1998
HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on t
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Slackware Linux 3.5 - '/etc/group' Local Privilege Escalation
CVE-1999-1434—locallinux13 Jul 1998
login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Ray Chan WWW Authorization Gateway 0.1 - Command Execution
CVE-1999-1436—remotemultiple08 Jul 1998
Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote attackers to execute arbitrary commands via shell metac
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Ralf S. Engelschall ePerl 2.2.12 - Handling of ISINDEX Query
CVE-1999-1437—remotemultiple06 Jul 1998
ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.0/2.1 - Send a SIGIO Signal To Any Process
CVE-1999-1441—doslinux30 Jun 1998
Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Metainfo Sendmail 2.0/2.5 / MetaIP 3.1 - Upload / Execute Read Scripts
CVE-1999-0268—remotemultiple30 Jun 1998
MetaInfo MetaWeb web server allows users to upload, execute, and read scripts.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Qualcomm qpopper 2.4 - POP Server Buffer Overflow (2)
CVE-1999-0006CRITICALremoteunix27 Jun 1998
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long
53RISK
open ↗
Exploit-DB✓ VexDay Proof
Qualcomm qpopper 2.4 - POP Server Buffer Overflow (1)
CVE-1999-0006CRITICALremotelinux27 Jun 1998
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long
53RISK
open ↗
Exploit-DB✓ VexDay Proof
NetBSD 1.3.2 / SGI IRIX 6.5.1 - 'at(1)' Read File
CVE-1999-1409—localnetbsd_x8627 Jun 1998
The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submit
23RISK
open ↗
Exploit-DB✓ VexDay Proof
RedHat Linux 4.2 / SGI IRIX 6.3 / Solaris 2.6 - 'mailx' (2)
CVE-1999-0125—locallinux25 Jun 1998
Buffer overflow in SGI IRIX mailx program.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
textcounter.pl 1.2 - Arbitrary Command Execution
CVE-1999-1479—remotecgi24 Jun 1998
The textcounter.pl by Matt Wright allows remote attackers to execute arbitrary commands via shell metacharacters.
28RISK
open ↗
Exploit-DB✓ VexDay Proof
RedHat Linux 4.2 / SGI IRIX 6.3 / Solaris 2.6 - 'mailx' (1)
CVE-1999-0125—locallinux20 Jun 1998
Buffer overflow in SGI IRIX mailx program.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Cheyenne Inoculan for Windows NT 4.0 - Share
CVE-1999-1555—remotewindows10 Jun 1998
Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FUL
23RISK
open ↗
Exploit-DB✓ VexDay Proof
AMD K6 Processor - Denial of Service
CVE-1999-1442—doslinux01 Jun 1998
Bug in AMD K6 processor on Linux 2.0.x and 2.1.x kernels allows local users to cause a denial of service (crash) via a p
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Allaire ColdFusion Server 4.0.1 - 'CFCRYPT.EXE' Decrypt Pages
CVE-1999-0757—localwindows19 May 1998
The ColdFusion CFCRYPT program for encrypting CFML templates has weak encryption, allowing attackers to decrypt the temp
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Fred N. van Kempen dip 3.3.7 - Local Buffer Overflow (2)
CVE-1999-0137—locallinux05 May 1998
The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
23RISK
open ↗
Exploit-DB✓ VexDay Proof
Fred N. van Kempen dip 3.3.7 - Local Buffer Overflow (1)
CVE-1999-0137—locallinux05 May 1998
The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
23RISK
open ↗
← previouspage 630 / 636next →

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.