Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,666cataloged exploits
32,032CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,896GitHub PoC 13,204VulnCheck XDB 8,127Nuclei 4,191Metasploit 3,462✓ verified onlyrecentpopularrisk
3,462 exploits
Metasploit600
WordPress WP-Property PHP File Upload Vulnerability
WordPress Plugin WP-Property <= 1.35.0 PHP File Upload
63RISK
open ↗Metasploit300
FlexNet License Server Manager lmgrd Buffer Overflow
Multiple directory traversal vulnerabilities in lmgrd in Flexera FlexNet Publisher 11.10 (aka FlexNet License Server Man
30RISK
open ↗Metasploit400
TFM MMPlayer (m3u/ppl File) Buffer Overflow
Stack-based buffer overflow in TFM MMPlayer 2.0, and possibly 2.0.0.30, allows remote attackers to execute arbitrary cod
50RISK
open ↗Metasploit300
Cisco Linksys PlayerPT ActiveX Control Buffer Overflow
Stack-based buffer overflow in the SetSource method in the Cisco Linksys PlayerPT ActiveX control 1.0.0.15 in PlayerPT.o
50RISK
open ↗Metasploit0
FreePBX 2.10.0 / 2.9.0 callmenum Remote Code Execution
The callme_startcall function in recordings/misc/callme_page.php in FreePBX 2.9, 2.10, and earlier allows remote attacke
60RISK
open ↗Metasploit300
MS12-020 Microsoft Remote Desktop Use-After-Free DoS
The Remote Desktop Protocol (RDP) implementation in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows V
60RISK
open ↗Metasploit300
VLC MMS Stream Handling Buffer Overflow
Stack-based buffer overflow in VideoLAN VLC media player before 2.0.1 allows remote attackers to execute arbitrary code
50RISK
open ↗Metasploit300
Sockso Music Host Server 1.5 Directory Traversal
Sockso Music Host Server <= 1.5 Path Traversal
36RISK
open ↗Metasploit300
HP Data Protector Create New Folder Buffer Overflow
Unspecified vulnerability in HP Data Protector Express (aka DPX) 5.0.00 before build 59287 and 6.0.00 before build 11974
50RISK
open ↗Metasploit300
NetDecision NOCVision Server Directory Traversal
Stack-based buffer overflow in the HTTP Server in NetMechanica NetDecision before 4.6.1 allows remote attackers to cause
43RISK
open ↗Metasploit300
Ricoh DC DL-10 SR10 FTP USER Command Buffer Overflow
Stack-based buffer overflow in SR10 FTP server (SR10.exe) 1.1.0.6 in Ricoh DC Software DL-10 4.5.0.1, when the Log file
50RISK
open ↗Metasploit300
IBM Tivoli Provisioning Manager Express for Software Distribution Isig.isigCtl.1 ActiveX RunAndUploadFile() Method Overflow
Stack-based buffer overflow in the RunAndUploadFile method in the Isig.isigCtl.1 ActiveX control in IBM Tivoli Provision
50RISK
open ↗Metasploit500
IBM Personal Communications iSeries Access WorkStation 5.9 Profile
Stack-based buffer overflow in pcspref.dll in pcsws.exe in IBM Personal Communications 5.9.x before 5.9.8 and 6.0.x befo
50RISK
open ↗Metasploit300
Sysax 5.53 SSH Username Buffer Overflow
Sysax Multi Server < 5.55 SSH Username Buffer Overflow
63RISK
open ↗Metasploit300
NetDecision 4.5.1 HTTP Server Buffer Overflow
Stack-based buffer overflow in the HTTP Server in NetMechanica NetDecision before 4.6.1 allows remote attackers to cause
43RISK
open ↗Metasploit300
Csound hetro File Handling Stack Buffer Overflow
Multiple stack-based buffer overflows in Csound before 5.16.6 allow remote attackers to execute arbitrary code via a cra
50RISK
open ↗Metasploit300
Novell ZENworks Configuration Management Preboot Service 0x4c Buffer Overflow
Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allo
50RISK
open ↗Metasploit300
Novell ZENworks Configuration Management Preboot Service 0x6c Buffer Overflow
Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allo
50RISK
open ↗Metasploit300
ASUS Net4Switch ipswcom.dll ActiveX Stack Buffer Overflow
Buffer overflow in the CxDbgPrint function in the ipswcom.dll ActiveX component 1.0.0.1 for ASUS Net4Switch 1.0.0020 all
50RISK
open ↗Metasploit600
LANDesk Lenovo ThinkManagement Console Remote Command Execution
Unrestricted file upload vulnerability in andesk/managementsuite/core/core.anonymous/ServerSetup.asmx in the ServerSetup
50RISK
open ↗Metasploit300
Adobe Flash Player MP4 'cprt' Overflow
Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.
100RISK
open ↗Metasploit600
LANDesk Lenovo ThinkManagement Console Remote Command Execution
Directory traversal vulnerability in the VulCore web service (WSVulnerabilityCore/VulCore.asmx) in Lenovo ThinkManagemen
50RISK
open ↗Metasploit600
Java AtomicReferenceArray Type Violation Vulnerability
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Up
100RISK
open ↗Metasploit600
Sun Java Web Start Plugin Command Line Argument Injection
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Up
50RISK
open ↗Metasploit600
Horde 3.3.12 Backdoor Arbitrary PHP Code Execution
Horde 3.3.12, Horde Groupware 1.2.10, and Horde Groupware Webmail Edition 1.2.10, as distributed by FTP between November
60RISK
open ↗Metasploit300
RabidHamster R4 Log Entry sprintf() Buffer Overflow
RabidHamster R4 Log Entry sprintf() Buffer Overflow
63RISK
open ↗Metasploit600
vBSEO proc_deutf() Remote PHP Code Injection
The proc_deutf function in includes/functions_vbseocp_abstract.php in vBSEO 3.5.0, 3.5.1, 3.5.2, 3.6.0, and earlier allo
50RISK
open ↗Metasploit600
PolarBear CMS PHP File Upload Vulnerability
A PHP File Upload Vulnerability exists in PolarBear CMS 2.5 via upload.php, which could let a malicious user execute arb
60RISK
open ↗Metasploit300
General Electric D20 Password Recovery
General Electric D20ME devices are not properly configured and reveal plaintext passwords.
18RISK
open ↗Metasploit600
appRain CMF Arbitrary PHP File Upload Vulnerability
Unrestricted file upload vulnerability in addons/uploadify/uploadify.php in appRain CMF 0.1.5 and earlier allows remote
50RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.