Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,958cataloged exploits
36,206CVEs with public exploitation
24,695lab-tested
78,324 exploits
Exploit-DB
WordPress Plugin Stop Spammers 2021.8 - 'log' Reflected Cross-site Scripting (XSS)
CVE-2021-24245webappsphp19 May 2021
Stop Spammers < 2021.9 - Reflected Cross-Site Scripting (XSS)
38RISK
open
GitHub PoC5
simple bash script for exploit CVE-2021-31166
CVE-2021-31166CRITICALunder attack19 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
VulnCheck XDB
local
CVE-2021-300718 May 2021
Laminas Project laminas-http before 2.14.2, and Zend Framework 3.0.0, has a deserialization vulnerability that can lead
60RISK
open
Exploit-DB
Microsoft Exchange 2019 - Unauthenticated Email Download
CVE-2021-26855CRITICALunder attackransomwarewebappswindows18 May 2021
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISK
open
VulnCheck XDB
denial-of-service
CVE-2021-31166CRITICALunder attack18 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2019-908117 May 2021
20RISK
open
Metasploit600
IPFire 2.25 Core Update 156 and Prior pakfire.cgi Authenticated RCE
CVE-2021-3339317 May 2021
lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It
50RISK
open
VulnCheck XDB
denial-of-service
CVE-2021-31166CRITICALunder attack17 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
Exploit-DB
Subrion CMS 4.2.1 - Arbitrary File Upload
CVE-2018-19422webappsphp17 May 2021
/panel/uploads in Subrion CMS 4.2.1 allows remote attackers to execute arbitrary PHP code via a .pht or .phar file, beca
50RISK
open
Exploit-DB
IPFire 2.25 - Remote Code Execution (Authenticated)
CVE-2021-33393webappscgi17 May 2021
lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It
50RISK
open
GitHub PoC12
HTTP Protocol Stack CVE-2021-31166
CVE-2021-31166CRITICALunder attack17 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
GitHub PoC3
Different rules to detect if CVE-2021-31166 is being exploited
CVE-2021-31166CRITICALunder attack17 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
GitHub PoC8
PoC for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely. Although it was defined as remote command execution, it can only cause the system to crash.
CVE-2021-31166CRITICALunder attack17 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
GitHub PoC1
Nmap NSE script to detect CVE-2019-14322 of Pallets Werkzeug path traversal via SharedDataMiddleware mishandles drive names (such as C:) in Windows pathnames
CVE-2019-1432217 May 2021
In Pallets Werkzeug before 0.15.5, SharedDataMiddleware mishandles drive names (such as C:) in Windows pathnames.
50RISK
open
GitHub PoC53
PoC - Exploit Delivery via Steganography and Polyglots, CVE-2014-0282
CVE-2014-028217 May 2021
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
35RISK
open
Exploit-DB
Microsoft Internet Explorer 8 - 'SetMouseCapture ' Use After Free
CVE-2013-3893HIGHunder attacklocalwindows17 May 2021
Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explorer 6 throug
100RISK
open
GitHub PoC1
PoC of CVE-2019-14322: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2019-1432216 May 2021
In Pallets Werkzeug before 0.15.5, SharedDataMiddleware mishandles drive names (such as C:) in Windows pathnames.
50RISK
open
GitHub PoC2
Pega Infinity Password Reset
CVE-2021-27651CRITICAL16 May 2021
In versions 8.2.1 through 8.5.2 of Pega Infinity, the password reset functionality for local accounts can be used to byp
75RISK
open
GitHub PoC60
RCE for Pega Infinity >= 8.2.1, Pega Infinity <= 8.5.2
CVE-2021-27651CRITICAL16 May 2021
In versions 8.2.1 through 8.5.2 of Pega Infinity, the password reset functionality for local accounts can be used to byp
75RISK
open
GitHub PoC827
Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.
CVE-2021-31166CRITICALunder attack16 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
GitHub PoC1
0xm4ud/ProFTPD_CVE-2015-3306
CVE-2015-330616 May 2021
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and
60RISK
open
VulnCheck XDB
denial-of-service
CVE-2021-31166CRITICALunder attack16 May 2021
HTTP Protocol Stack Remote Code Execution Vulnerability
100RISK
open
GitHub PoC4
Exploit CVE-2017-7494 for Net Security course final Assignment. This would reveal the vulnerability of services that run in administrative priority on Linux.
CVE-2017-7494CRITICALunder attackransomware15 May 2021
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
Exploit-DBVexDay Proof
Chamilo LMS 1.11.14 - Remote Code Execution (Authenticated)
CVE-2021-31933HIGHwebappsphp14 May 2021
A remote code execution vulnerability exists in Chamilo through 1.11.14 due to improper input sanitization of a paramete
46RISK
open
GitHub PoC1
This is modified code of 46635 exploit from python2 to python3.
CVE-2019-905314 May 2021
An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve
35RISK
open
VulnCheck XDB
local
CVE-2021-21551HIGHunder attack13 May 2021
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privile
100RISK
open
VulnCheck XDB
initial-access
CVE-2020-949613 May 2021
XML-RPC request are vulnerable to unsafe deserialization and Cross-Site Scripting issues in Apache OFBiz 17.12.03
60RISK
open
Exploit-DB
ZeroShell 3.9.0 - Remote Command Execution
CVE-2019-12725webappslinux13 May 2021
Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web ap
60RISK
open
GitHub PoC236
Exploit to SYSTEM for CVE-2021-21551
CVE-2021-21551HIGHunder attack13 May 2021
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privile
100RISK
open
GitHub PoC4
weblogic CVE-2021-2109批量验证poc
CVE-2021-2109HIGH13 May 2021
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions
63RISK
open
previouspage 688 / 2,611next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.