Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,794cataloged exploits
36,057CVEs with public exploitation
24,695lab-tested
78,324 exploits
GitHub PoC1,990
C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527
CVE-2021-1675HIGHunder attackransomware29 Jun 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISK
open
GitHub PoC19
Automated bulk IP or domain scanner for CVE 2020 3580. Cisco ASA and FTD XSS hunter.
CVE-2020-3580MEDIUMunder attackransomware28 Jun 2021
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities
100RISK
open
Exploit-DB
Atlassian Jira Server Data Center 8.16.0 - Reflected Cross-Site Scripting (XSS)
CVE-2021-26078webappsmacos28 Jun 2021
The number range searcher component in Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before
23RISK
open
VulnCheck XDB
infoleak
CVE-2020-3580MEDIUMunder attackransomware28 Jun 2021
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities
100RISK
open
VulnCheck XDB
local
CVE-2021-31955MEDIUMunder attack26 Jun 2021
Windows Kernel Information Disclosure Vulnerability
85RISK
open
GitHub PoC13
freeide/CVE-2021-31955-POC
CVE-2021-31955MEDIUMunder attack26 Jun 2021
Windows Kernel Information Disclosure Vulnerability
85RISK
open
VulnCheck XDB
local
CVE-2021-2785026 Jun 2021
Bypass of the fix for CVE-2019-0195
60RISK
open
GitHub PoC
compiled CVE-2015-1328
CVE-2015-132826 Jun 2021
The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does no
50RISK
open
GitHub PoC1
donghyunlee00/CVE-2021-3156
CVE-2021-3156HIGHunder attack25 Jun 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
VulnCheck XDB
client-side
CVE-2020-3580MEDIUMunder attackransomware25 Jun 2021
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities
100RISK
open
VulnCheck XDB
local
CVE-2021-3156HIGHunder attack25 Jun 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-2785025 Jun 2021
Bypass of the fix for CVE-2019-0195
60RISK
open
GitHub PoC9
Hudi233/CVE-2020-3580
CVE-2020-3580MEDIUMunder attackransomware25 Jun 2021
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities
100RISK
open
Exploit-DB
Seeddms 5.1.10 - Remote Command Execution (RCE) (Authenticated)
CVE-2019-12744webappsphp25 Jun 2021
SeedDMS before 5.1.11 allows Remote Command Execution (RCE) because of unvalidated file upload of PHP scripts, a differe
23RISK
open
GitHub PoC12
GravCMS Unauthenticated Arbitrary YAML Write/Update leads to Code Execution (CVE-2021-21425)
CVE-2021-21425CRITICAL24 Jun 2021
Unauthenticated Arbitrary YAML Write/Update leads to Code Execution
85RISK
open
Exploit-DB
TP-Link TL-WR841N - Command Injection
CVE-2020-35576webappshardware24 Jun 2021
A Command Injection issue in the traceroute feature on TP-Link TL-WR841N V13 (JP) with firmware versions prior to 201216
35RISK
open
Exploit-DB
Adobe ColdFusion 8 - Remote Command Execution (RCE)
CVE-2009-2265webappscfm24 Jun 2021
Multiple directory traversal vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to create executable fil
60RISK
open
GitHub PoC1
Remote Command Execution through Unvalidated File Upload in SeedDMS versions <5.1.11
CVE-2019-1274424 Jun 2021
SeedDMS before 5.1.11 allows Remote Command Execution (RCE) because of unvalidated file upload of PHP scripts, a differe
23RISK
open
GitHub PoC
Badbird3/CVE-2017-5638
CVE-2017-5638CRITICALunder attackransomware24 Jun 2021
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
Exploit-DB
VMware vCenter Server 7.0 - Remote Code Execution (RCE) (Unauthenticated)
CVE-2021-21972CRITICALunder attackransomwarewebappsmultiple24 Jun 2021
The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor
100RISK
open
VulnCheck XDB
initial-access
CVE-2017-5638CRITICALunder attackransomware24 Jun 2021
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
VulnCheck XDB
client-side
CVE-2018-20250HIGHunder attackransomware23 Jun 2021
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
Exploit-DB
WordPress Plugin WP Google Maps 8.1.11 - Stored Cross-Site Scripting (XSS)
CVE-2021-24383webappsphp23 Jun 2021
WP Google Maps < 8.1.12 - Authenticated Stored Cross-Site Scripting (XSS)
23RISK
open
GitHub PoC11
Zeroscan is a Domain Controller vulnerability scanner, that currently includes checks for Zerologon (CVE-2020-1472), MS-PAR/MS-RPRN and SMBv2 Signing.
CVE-2020-1472MEDIUMunder attackransomware23 Jun 2021
Netlogon Elevation of Privilege Vulnerability
100RISK
open
VulnCheck XDB
infoleak
CVE-2021-22214MEDIUM22 Jun 2021
When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab CE
53RISK
open
Metasploit600
Moodle SpellChecker Path Authenticated Remote Command Execution
CVE-2021-21809HIGH22 Jun 2021
A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted s
41RISK
open
GitHub PoC
m3terpreter/CVE-2016-4437
CVE-2016-4437CRITICALunder attack22 Jun 2021
Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attack
100RISK
open
Exploit-DB
OpenEMR 5.0.1.7 - 'fileName' Path Traversal (Authenticated)
CVE-2019-14530webappsphp21 Jun 2021
An issue was discovered in custom/ajax_download.php in OpenEMR before 5.0.2 via the fileName parameter. An attacker can
50RISK
open
Exploit-DB
Solaris SunSSH 11.0 x86 - libpam Remote Root (3)
CVE-2020-14871CRITICALunder attackremotesolaris21 Jun 2021
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module). Supported ve
100RISK
open
VulnCheck XDB
denial-of-service
CVE-2019-0708CRITICALunder attackransomware21 Jun 2021
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unau
100RISK
open
previouspage 681 / 2,611next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.