Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,760cataloged exploits
32,083CVEs with public exploitation
1,932lab-tested
3,462 exploits
Metasploit600
Exim4 string_format Function Heap Buffer Overflow
CVE-2010-4344CRITICALunder attack07 Dec 2010
Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to exe
100RISK
open
Metasploit600
Exim4 string_format Function Heap Buffer Overflow
CVE-2010-4345HIGHunder attack07 Dec 2010
Exim 4.72 and earlier allows local users to gain privileges by leveraging the ability of the exim user account to specif
91RISK
open
Metasploit600
ProFTPD 1.3.3c Backdoor Command Execution
CVE-2010-20103CRITICAL02 Dec 2010
ProFTPD 1.3.3c Backdoor Command Execution
63RISK
open
Metasploit600
Pandora FMS v3.1 Auth Bypass and Arbitrary File Upload Vulnerability
CVE-2010-427930 Nov 2010
The default configuration of Pandora FMS 3.1 and earlier specifies an empty string for the loginhash_pwd field, which al
50RISK
open
Metasploit400
MS11-003 Microsoft Internet Explorer CSS Recursive Import Use After Free
CVE-2010-397129 Nov 2010
Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in msh
60RISK
open
Metasploit500
Xion Audio Player 1.0.126 Unicode Stack Buffer Overflow
CVE-2010-20042HIGH23 Nov 2010
Xion Audio Player ≤ 1.0.126 Unicode Stack Buffer Overflow
36RISK
open
Metasploit500
DATAC RealWin SCADA Server SCPC_TXTEVENT Buffer Overflow
CVE-2010-414218 Nov 2010
Multiple stack-based buffer overflows in DATAC RealWin 2.0 Build 6.1.8.10 and earlier allow remote attackers to cause a
50RISK
open
Metasploit600
SystemTap MODPROBE_OPTIONS Privilege Escalation
CVE-2010-417017 Nov 2010
The staprun runtime tool in SystemTap 1.3 does not properly clear the environment before executing modprobe, which allow
38RISK
open
Metasploit300
Novell iPrint Client ActiveX Control Buffer Overflow
CVE-2010-432115 Nov 2010
Stack-based buffer overflow in an ActiveX control in ienipp.ocx in Novell iPrint Client 5.52 allows remote attackers to
50RISK
open
Metasploit600
CakePHP Cache Corruption Code Execution
CVE-2010-433515 Nov 2010
The _validatePost function in libs/controller/components/security.php in CakePHP 1.3.x through 1.3.5 and 1.2.8 allows re
50RISK
open
Metasploit300
RealNetworks RealPlayer CDDA URI Initialization Vulnerability
CVE-2010-374715 Nov 2010
An ActiveX control in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterpr
50RISK
open
Metasploit500
Foxit PDF Reader v4.1.1 Title Stack Buffer Overflow
CVE-2010-20010HIGH13 Nov 2010
Foxit PDF Reader < 4.2.0.0928 Title Stack Buffer Overflow
36RISK
open
Metasploit500
MS10-087 Microsoft Word RTF pFragments Stack Buffer Overflow (File Format)
CVE-2010-3333HIGHunder attack09 Nov 2010
Stack-based buffer overflow in Microsoft Office XP SP3, Office 2003 SP3, Office 2007 SP2, Office 2010, Office 2004 and 2
100RISK
open
Metasploit500
FreeNAS exec_raw.php Arbitrary Command Execution
CVE-2010-20059CRITICAL06 Nov 2010
FreeNAS < 0.7.2 rev 5543 exec_raw.php Arbitrary Command Execution
43RISK
open
Metasploit400
MS10-090 Microsoft Internet Explorer CSS SetUserClip Memory Corruption
CVE-2010-3962HIGHunder attack03 Nov 2010
Use-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary cod
100RISK
open
Metasploit500
ProFTPD 1.3.2rc3 - 1.3.3b Telnet IAC Buffer Overflow (Linux)
CVE-2010-422101 Nov 2010
Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow rem
60RISK
open
Metasploit500
ProFTPD 1.3.2rc3 - 1.3.3b Telnet IAC Buffer Overflow (FreeBSD)
CVE-2010-422101 Nov 2010
Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow rem
60RISK
open
Metasploit300
Adobe Flash Player "Button" Remote Code Execution
CVE-2010-365428 Oct 2010
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 o
50RISK
open
Metasploit300
Mozilla Firefox Interleaved document.write/appendChild Memory Corruption
CVE-2010-3765CRITICALunder attack25 Oct 2010
Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, a
100RISK
open
Metasploit300
Adobe Shockwave rcsL Memory Corruption
CVE-2010-365321 Oct 2010
The Director module (dirapi.dll) in Adobe Shockwave Player before 11.5.9.615 allows remote attackers to execute arbitrar
60RISK
open
Metasploit500
MOXA Device Manager Tool 2.1 Buffer Overflow
CVE-2010-474120 Oct 2010
Stack-based buffer overflow in MDMUtil.dll in MDMTool.exe in MDM Tool before 2.3 in Moxa Device Manager allows remote MD
43RISK
open
Metasploit500
Reliable Datagram Sockets (RDS) rds_page_copy_user Privilege Escalation
CVE-2010-3904HIGHunder attack20 Oct 2010
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the
91RISK
open
Metasploit200
MOXA MediaDBPlayback ActiveX Control Buffer Overflow
CVE-2010-474219 Oct 2010
Stack-based buffer overflow in a certain ActiveX control in MediaDBPlayback.DLL 2.2.0.5 in the Moxa ActiveX SDK allows r
50RISK
open
Metasploit600
glibc '$ORIGIN' Expansion Privilege Escalation
CVE-2010-384718 Oct 2010
elf/dl-load.c in ld.so in the GNU C Library (aka glibc or libc6) through 2.11.2, and 2.12.x through 2.12.1, does not pro
38RISK
open
Metasploit600
glibc LD_AUDIT Arbitrary DSO Load Privilege Escalation
CVE-2010-385618 Oct 2010
ld.so in the GNU C Library (aka glibc or libc6) before 2.11.3, and 2.12.x before 2.12.2, does not properly restrict use
43RISK
open
Metasploit600
glibc LD_AUDIT Arbitrary DSO Load Privilege Escalation
CVE-2010-384718 Oct 2010
elf/dl-load.c in ld.so in the GNU C Library (aka glibc or libc6) through 2.11.2, and 2.12.x through 2.12.1, does not pro
38RISK
open
Metasploit300
Fat Player Media Player 0.6b0 Buffer Overflow
CVE-2009-496218 Oct 2010
Stack-based buffer overflow in Fat Player 0.6b allows remote attackers to execute arbitrary code via a long string in a
50RISK
open
Metasploit500
DATAC RealWin SCADA Server SCPC_INITIALIZE Buffer Overflow
CVE-2010-414215 Oct 2010
Multiple stack-based buffer overflows in DATAC RealWin 2.0 Build 6.1.8.10 and earlier allow remote attackers to cause a
50RISK
open
Metasploit500
DATAC RealWin SCADA Server SCPC_INITIALIZE_RF Buffer Overflow
CVE-2010-414215 Oct 2010
Multiple stack-based buffer overflows in DATAC RealWin 2.0 Build 6.1.8.10 and earlier allow remote attackers to cause a
50RISK
open
Metasploit300
Oracle DB SQL Injection via SYS.DBMS_CDC_PUBLISH.CREATE_CHANGE_SET
CVE-2010-241513 Oct 2010
Unspecified vulnerability in the Change Data Capture component in Oracle Database Server 10.1.0.5, 10.2.0.4, 11.1.0.7, a
18RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.