Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,258cataloged exploits
36,019CVEs with public exploitation
24,695lab-tested
78,137 exploits
GitHub PoC4
Bash and PowerShell scripts to scan a local filesystem for Log4j .jar files which could be vulnerable to CVE-2021-44228 aka Log4Shell.
CVE-2021-44228CRITICALunder attackransomware13 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-36260CRITICALunder attack13 Dec 2021
A command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation,
100RISK
open
GitHub PoC1
DiCanio/CVE-2021-44228-docker-example
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
lohanichaten/log4j-cve-2021-44228
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
Metasploit600
MobileIron Core Unauthenticated JNDI Injection RCE (via Log4Shell)
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC5
Log4J CVE-2021-44228 Minecraft PoC
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
Known IoCs for log4j framework vulnerability
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
CVE-2021-44228 test demo
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC44
RedDrip7/Log4Shell_CVE-2021-44228_related_attacks_IOCs
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC12
An evil RMI server that can launch an arbitrary command. May be useful for CVE-2021-44228
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC1
Sample log4j shell exploit
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC5
CVE-2021-44228
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC4
Log4J (CVE-2021-44228) Exploit with Remote Command Execution (RCE)
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC1
An awesome curated list of repos for CVE-2021-44228. ``Apache Log4j 2``
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
log4j2漏洞复现
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC32
CVE-2021-44228,log4j2 burp插件 Java版本,dnslog选取了非dnslog.cn域名
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC7
Log4j RCE - (CVE-2021-44228)
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
uint0/cve-2021-44228-helpers
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC8
CVE-2021-44228 (Log4Shell) Proof of Concept
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
Dockerized Go app for testing the CVE-2021-44228 vulnerability
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC15
IP addresses exploiting recent log4j2 vulnerability CVE-2021-44228
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC2
pythonic pure python RCE exploit for CVE-2021-44228 log4shell
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC6
Python script that sends CVE-2021-44228 log4j payload requests to url list
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC9
qingtengyun/cve-2021-44228-qingteng-patch
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC640
A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is able to even find Log4J instances that are hidden several layers deep. Works on Linux, Windows, and Mac, and everywhere else Java runs, too! TAG_OS_TOOL, OWNER_KELLY, DC_PUBLIC
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC2
A micro lab for CVE-2021-44228 (log4j)
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC38
Mitigate log4shell (CVE-2021-44228) vulnerability attacks using Nginx LUA script
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC1
pravin-pp/log4j2-CVE-2021-44228
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC17
Script to apply official workaround for VMware vCenter log4j vulnerability CVE-2021-44228
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC52
Lists of affected components and affected apps/vendors by CVE-2021-44228 (aka Log4shell or Log4j RCE). This list is meant as a resource for security responders to be able to find and address the vulnerability
CVE-2021-44228CRITICALunder attackransomware12 Dec 2021
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
previouspage 635 / 2,605next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.