Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,760cataloged exploits
32,083CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,934GitHub PoC 13,235VulnCheck XDB 8,150Nuclei 4,193Metasploit 3,462✓ verified onlyrecentpopularrisk
3,462 exploits
Metasploit400
Magix Musik Maker 16 .mmm Stack Buffer Overflow
Magix Musik Maker <= v16 .mmm Stack-Based Buffer Overflow
36RISK
open ↗Metasploit400
Wireshark packet-dect.c Stack Buffer Overflow
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allow
50RISK
open ↗Metasploit400
Wireshark packet-dect.c Stack Buffer Overflow (local)
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allow
50RISK
open ↗Metasploit600
CA Total Defense Suite reGenerateReports Stored Procedure SQL Injection
Multiple SQL injection vulnerabilities in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before S
60RISK
open ↗Metasploit300
Microsoft Windows DNSAPI.dll LLMNR Buffer Underrun DoS
DNSAPI.dll in the DNS client in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Wi
55RISK
open ↗Metasploit400
VeryTools Video Spirit Pro
Buffer overflow in VideoSpirit Pro 1.6.8.1, 1.68, and earlier; and VideoSpirit Lite 1.4.0.1 and possibly other versions;
50RISK
open ↗Metasploit400
VeryTools Video Spirit Pro
Buffer overflow in VideoSpirit Pro 1.6.8.1 and possibly earlier versions, and VideoSpirit Lite 1.4.0.1 and possibly othe
50RISK
open ↗Metasploit300
Adobe Flash Player 10.2.153.1 SWF Memory Corruption Vulnerability
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; A
100RISK
open ↗Metasploit600
Log1 CMS writeInfo() PHP Code Injection
Static code injection vulnerability in inc/function.base.php in Ajax File and Image Manager before 1.1, as used in tinym
50RISK
open ↗Metasploit300
S40 0.4.2 CMS Directory Traversal Vulnerability
S40 CMS 0.4.2 Path Traversal
36RISK
open ↗Metasploit200
VideoLAN VLC ModPlug ReadS3M Stack Buffer Overflow
Stack-based buffer overflow in the ReadS3M method in load_s3m.cpp in libmodplug before 0.8.8.2 allows remote attackers t
50RISK
open ↗Metasploit400
Blue Coat Authentication and Authorization Agent (BCAAA) 5 Buffer Overflow
Stack-based buffer overflow in the BCAAA component before build 60258, as used by Blue Coat ProxySG 4.2.3 through 6.1 an
50RISK
open ↗Metasploit300
Real Networks Arcade Games StubbyUtil.ProcessMgr ActiveX Arbitrary Code Execution
RealNetworks Arcade Games StubbyUtil.ProcessMgr ActiveX Arbitrary Code Execution
36RISK
open ↗Metasploit500
Linux PolicyKit Race Condition Privilege Escalation
Race condition in the pkexec utility and polkitd daemon in PolicyKit (aka polkit) 0.96 allows local users to gain privil
38RISK
open ↗Metasploit400
7-Technologies IGSS IGSSdataServer.exe Stack Buffer Overflow
Multiple stack-based buffer overflows in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Grap
50RISK
open ↗Metasploit300
7-Technologies IGSS 9 IGSSdataServer .RMS Rename Buffer Overflow
Multiple stack-based buffer overflows in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Grap
50RISK
open ↗Metasploit600
7-Technologies IGSS 9 Data Server/Collector Packet Handling Vulnerabilities
Directory traversal vulnerability in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Graphica
50RISK
open ↗Metasploit600
7-Technologies IGSS 9 Data Server/Collector Packet Handling Vulnerabilities
Directory traversal vulnerability in dc.exe 9.00.00.11059 and earlier in 7-Technologies Interactive Graphical SCADA Syst
50RISK
open ↗Metasploit400
VLC AMV Dangling Pointer Vulnerability
libdirectx_plugin.dll in VideoLAN VLC Media Player before 1.1.8 allows remote attackers to execute arbitrary code via a
60RISK
open ↗Metasploit600
Interactive Graphical SCADA System Remote Command Injection
Directory traversal vulnerability in dc.exe 9.00.00.11059 and earlier in 7-Technologies Interactive Graphical SCADA Syst
50RISK
open ↗Metasploit500
RealWin SCADA Server DATAC Login Buffer Overflow
Multiple stack-based buffer overflows in the HMI application in DATAC RealFlex RealWin 2.1 (Build 6.1.10.10) and earlier
60RISK
open ↗Metasploit500
DATAC RealWin SCADA Server 2 On_FC_CONNECT_FCS_a_FILE Buffer Overflow
Multiple stack-based buffer overflows in the HMI application in DATAC RealFlex RealWin 2.1 (Build 6.1.10.10) and earlier
60RISK
open ↗Metasploit200
MPlayer Lite M3U Buffer Overflow
MPlayer Lite r33064 M3U Stack-Based Buffer Overflow
36RISK
open ↗Metasploit400
Adobe Flash Player AVM Bytecode Verification Vulnerability
Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.1
98RISK
open ↗Metasploit300
Majordomo2 _list_file_get() Directory Traversal
Directory traversal vulnerability in the _list_file_get function in lib/Majordomo.pm in Majordomo 2 before 20110131 allo
60RISK
open ↗Metasploit300
Majordomo2 _list_file_get() Directory Traversal
The _list_file_get function in lib/Majordomo.pm in Majordomo 2 20110203 and earlier allows remote attackers to conduct d
60RISK
open ↗Metasploit300
Foxit PDF Reader 4.2 Javascript File Write
Foxit PDF Reader < 4.3.1.0218 JavaScript File Write
36RISK
open ↗Metasploit600
LotusCMS 3.0 eval() Remote Command Execution
Directory traversal vulnerability in core/lib/router.php in LotusCMS Fraise 3.0, when magic_quotes_gpc is disabled, allo
43RISK
open ↗Metasploit300
Wireshark CLDAP Dissector DOS
Multiple stack consumption vulnerabilities in the dissect_ms_compressed_string and dissect_mscldap_string functions in W
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.