Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,858cataloged exploits
36,825CVEs with public exploitation
24,695lab-tested
24,475 exploits
Exploit-DBVexDay Proof
NTPsec 1.1.2 - 'ntp_control' (Authenticated) NULL Pointer Dereference (PoC)
CVE-2019-6445doslinux16 Jan 2019
An issue was discovered in NTPsec before 1.1.3. An authenticated attacker can cause a NULL pointer dereference and ntpd
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - XmlDocument Insecure Sharing Privilege Escalation
CVE-2019-0555localwindows16 Jan 2019
An elevation of privilege vulnerability exists in the Microsoft XmlDocument class that could allow an attacker to escape
23RISK
open
Exploit-DB
1Password < 7.0 - Denial of Service
CVE-2018-13042dosandroid15 Jan 2019
The 1Password application 6.8 for Android is affected by a Denial Of Service vulnerability. By starting the activity com
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - DSSVC MoveFileInheritSecurity Privilege Escalation
CVE-2019-0574localwindows14 Jan 2019
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - SSPI Network Authentication Session 0 Privilege Escalation
CVE-2019-0543HIGHunder attackransomwarelocalwindows14 Jan 2019
An elevation of privilege vulnerability exists when Windows improperly handles authentication requests, aka "Microsoft W
71RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - Browser Broker Cross Session Privilege Escalation
CVE-2019-0566localwindows14 Jan 2019
An elevation of privilege vulnerability exists in Microsoft Edge Browser Broker COM object, aka "Microsoft Edge Elevatio
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - DSSVC DSOpenSharedFile Arbitrary File Open Privilege Escalation
CVE-2019-0572localwindows14 Jan 2019
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,
28RISK
open
Exploit-DB
Portier Vision 4.4.4.2 / 4.4.4.6 - SQL Injection
CVE-2019-5722webappswindows14 Jan 2019
An issue was discovered in portier vision 4.4.4.2 and 4.4.4.6. Due to a lack of user input validation in parameter handl
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - DSSVC DSOpenSharedFile Arbitrary File Delete Privilege Escalation
CVE-2019-0573localwindows14 Jan 2019
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,
28RISK
open
Exploit-DB
AudioCode 400HD - Command Injection
CVE-2018-10093webappscgi14 Jan 2019
AudioCodes IP phone 420HD devices using firmware version 2.2.12.126 allow Remote Code Execution.
50RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - DSSVC CanonicalAndValidateFilePath Security Feature Bypass
CVE-2019-0571localwindows14 Jan 2019
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,
28RISK
open
Exploit-DBVexDay Proof
Dokany 1.2.0.1000 - Stack-Based Buffer Overflow Privilege Escalation
CVE-2018-5410localwindows14 Jan 2019
Dokan file system driver contains a stack-based buffer overflow
23RISK
open
Exploit-DB
xorg-x11-server < 1.20.3 (Solaris 11) - 'inittab Local Privilege Escalation
CVE-2018-14665localsolaris14 Jan 2019
A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options wh
43RISK
open
Exploit-DB
Hucart CMS 5.7.4 - Cross-Site Request Forgery (Add Administrator Account)
CVE-2019-6249webappsphp14 Jan 2019
An issue was discovered in HuCart v5.7.4. There is a CSRF vulnerability that can add an admin account via /adminsys/inde
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 10 - COM Desktop Broker Privilege Escalation
CVE-2019-0552localwindows14 Jan 2019
An elevation of privilege exists in Windows COM Desktop Broker, aka "Windows COM Elevation of Privilege Vulnerability."
23RISK
open
Exploit-DB
S-nail < 14.8.16 - Local Privilege Escalation
CVE-2017-5899localmultiple13 Jan 2019
Directory traversal vulnerability in the setuid root helper binary in S-nail (later S-mailx) before 14.8.16 allows local
23RISK
open
Exploit-DB
Serv-U FTP Server < 15.1.7 - Local Privilege Escalation (2)
CVE-2019-12181localmultiple13 Jan 2019
A privilege escalation vulnerability exists in SolarWinds Serv-U before 15.1.7 for Linux.
50RISK
open
Exploit-DB
OpenSSH SCP Client - Write Arbitrary Files
CVE-2019-6111MEDIUMremotemultiple11 Jan 2019
An issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses wh
45RISK
open
Exploit-DB
OpenSSH SCP Client - Write Arbitrary Files
CVE-2019-6110MEDIUMremotemultiple11 Jan 2019
In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-T
38RISK
open
Exploit-DB
OpenSource ERP 6.3.1. - SQL Injection
CVE-2019-5893webappsmultiple10 Jan 2019
Nelson Open Source ERP v6.3.1 allows SQL Injection via the db/utils/query/data.xml query parameter.
28RISK
open
Exploit-DB
PEAR Archive_Tar < 1.4.4 - PHP Object Injection
CVE-2018-1000888webappsphp10 Jan 2019
PEAR Archive_Tar version 1.4.3 and earlier contains a CWE-502, CWE-915 vulnerability in the Archive_Tar class. There are
28RISK
open
Exploit-DB
BlogEngine 3.3 - XML External Entity Injection
CVE-2018-14485webappswindows09 Jan 2019
BlogEngine.NET 3.3 allows XXE attacks via the POST body to metaweblog.axd.
28RISK
open
Exploit-DB
ZTE MF65 BD_HDV6MF65V1.0.0B05 - Cross-Site Scripting
CVE-2018-7355webappshardware09 Jan 2019
All versions up to V1.0.0B05 of ZTE MF65 and all versions up to V1.0.0B02 of ZTE MF65M1 are impacted by cross-site scrip
23RISK
open
Exploit-DB
Microsoft Office SharePoint Server 2016 - Denial of Service (Metasploit)
CVE-2018-8269doswindows09 Jan 2019
A denial of service vulnerability exists when OData Library improperly handles web requests, aka "OData Denial of Servic
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - DSSVC CheckFilePermission Arbitrary File Deletion
CVE-2018-8584localwindows09 Jan 2019
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (A
23RISK
open
Exploit-DB
MyBB OUGC Awards Plugin 1.8.3 - Persistent Cross-Site Scripting
CVE-2019-3501webappsphp07 Jan 2019
The OUGC Awards plugin before 1.8.19 for MyBB allows XSS via a crafted award reason that is mishandled on the awards pag
23RISK
open
Exploit-DB
Roxy Fileman 1.4.5 - Unrestricted File Upload / Directory Traversal
CVE-2018-20526webappsphp07 Jan 2019
Roxy Fileman 1.4.5 allows unrestricted file upload in upload.php.
60RISK
open
Exploit-DB
LayerBB 1.1.1 - Persistent Cross-Site Scripting
CVE-2018-17997webappsphp07 Jan 2019
LayerBB 1.1.1 allows XSS via the titles of conversations (PMs).
23RISK
open
Exploit-DB
Huawei E5330 21.210.09.00.158 - Cross-Site Request Forgery (Send SMS)
CVE-2014-5395webappshardware07 Jan 2019
Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei HiLink E3276 and E3236 TCPU before V200R002B470D13S
23RISK
open
Exploit-DB
KioWare Server Version 4.9.6 - Weak Folder Permissions Privilege Escalation
CVE-2018-18435localwindows07 Jan 2019
KioWare Server version 4.9.6 and older installs by default to "C:\kioware_com" with weak folder permissions granting any
23RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.