Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,057cataloged exploits
36,288CVEs with public exploitation
24,695lab-tested
24,695 exploits
Exploit-DBVexDay Proof
Kaseya Virtual System Administrator (VSA) - Multiple Vulnerabilities (2)
CVE-2015-6922webappsasp29 Sep 2015
Kaseya Virtual System Administrator (VSA) 7.x before 7.0.0.33, 8.x before 8.0.0.23, 9.0 before 9.0.0.19, and 9.1 before
60RISK
open
Exploit-DBVexDay Proof
Kaseya Virtual System Administrator (VSA) - Multiple Vulnerabilities (2)
CVE-2015-6589webappsasp29 Sep 2015
Directory traversal vulnerability in Kaseya Virtual System Administrator (VSA) 7.0.0.0 before 7.0.0.33, 8..0.0.0 before
28RISK
open
Exploit-DBVexDay Proof
ManageEngine EventLog Analyzer - Remote Code Execution (Metasploit)
CVE-2015-7387remotewindows29 Sep 2015
ZOHO ManageEngine EventLog Analyzer 10.6 build 10060 and earlier allows remote attackers to bypass intended restrictions
60RISK
open
Exploit-DBVexDay Proof
Watchguard XCS - Remote Command Execution (Metasploit)
CVE-2015-5452remotebsd28 Sep 2015
SQL injection vulnerability in Watchguard XCS 9.2 and 10.0 before build 150522 allows remote attackers to execute arbitr
23RISK
open
Exploit-DBVexDay Proof
Watchguard XCS - Remote Command Execution (Metasploit)
CVE-2015-5453remotebsd28 Sep 2015
Watchguard XCS 9.2 and 10.0 before build 150522 allow remote authenticated users to execute arbitrary commands via shell
50RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'NtGdiBitBlt' Buffer Overflow (MS15-097)
CVE-2015-2512doswindows_x8624 Sep 2015
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Window
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Use-After-Free with Printer Device Contexts (MS15-097)
CVE-2015-2507doswindows_x8622 Sep 2015
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Window
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'HmgAllocateObjectAttr' Use-After-Free (MS15-061)
CVE-2015-1726doswindows_x8622 Sep 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISK
open
Exploit-DBVexDay Proof
Apple qlmanage - SceneKit::daeElement::setElementName Heap Overflow
CVE-2015-3783dososx22 Sep 2015
SceneKit in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (me
35RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'SURFOBJ' Null Pointer Dereference (MS15-061)
CVE-2015-1725doswindows_x8622 Sep 2015
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows S
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Brush Object Use-After-Free (MS15-061)
CVE-2015-1724doswindows22 Sep 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISK
open
Exploit-DBVexDay Proof
Apple Mac OSX Regex Engine (TRE) - Integer Signedness / Overflow
CVE-2015-3798dososx22 Sep 2015
The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'bGetRealizedBrush' Use-After-Free (MS15-097)
CVE-2015-2518doswindows_x8622 Sep 2015
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Pool Buffer Overflow Drawing Caption Bar (MS15-061)
CVE-2015-1727doswindows_x8622 Sep 2015
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows S
23RISK
open
Exploit-DBVexDay Proof
Apple Mac OSX Regex Engine (TRE) - Stack Buffer Overflow (PoC)
CVE-2015-3796dososx22 Sep 2015
The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'win32k!vSolidFillRect' Buffer Overflow (MS15-061)
CVE-2015-1725doswindows_x8622 Sep 2015
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows S
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - WindowStation Use-After-Free (MS15-061)
CVE-2015-1723doswindows_x8622 Sep 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Bitmap Handling Use-After-Free (MS15-061) (2)
CVE-2015-1722doswindows_x8622 Sep 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISK
open
Exploit-DBVexDay Proof
Cisco AnyConnect Secure Mobility Client 3.1.08009 - Local Privilege Escalation
CVE-2015-6305localwindows22 Sep 2015
Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConne
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Bitmap Handling Use-After-Free (MS15-061) (1)
CVE-2015-1722doswindows_x8622 Sep 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'UserCommitDesktopMemory' Use-After-Free (MS15-073)
CVE-2015-2365doswindows_x8622 Sep 2015
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'FlashWindowEx​' Memory Corruption (MS15-097)
CVE-2015-2511doswindows_x8622 Sep 2015
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'NtGdiStretchBlt' Pool Buffer Overflow (MS15-097)
CVE-2015-2512doswindows_x8622 Sep 2015
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Window
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Use-After-Free with Cursor Object (MS15-097)
CVE-2015-2517doswindows_x8622 Sep 2015
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'DeferWindowPos' Use-After-Free (MS15-073)
CVE-2015-2366doswindows_x8622 Sep 2015
win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, Wi
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Null Pointer Dereference with Window Station and Clipboard (MS15-061)
CVE-2015-1721doswindows_x8622 Sep 2015
The kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and
23RISK
open
Exploit-DBVexDay Proof
Konica Minolta FTP Utility 1.00 - (Authenticated) CWD Command Overflow (SEH) (Metasploit)
CVE-2015-7768remotewindows21 Sep 2015
Buffer overflow in Konica Minolta FTP Utility 1.0 allows remote attackers to execute arbitrary code via a long CWD comma
50RISK
open
Exploit-DBVexDay Proof
ManageEngine OpManager - Remote Code Execution (Metasploit)
CVE-2015-7765remotejava17 Sep 2015
ZOHO ManageEngine OpManager 11.5 build 11600 and earlier uses a hardcoded password of "plugin" for the IntegrationUser a
50RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Font Driver Buffer Overflow (MS15-078) (Metasploit)
CVE-2015-2433localwindows_x86-6417 Sep 2015
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Wi
43RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Font Driver Buffer Overflow (MS15-078) (Metasploit)
CVE-2015-2426HIGHunder attacklocalwindows_x86-6417 Sep 2015
Buffer underflow in atmfd.dll in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2
100RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.