Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
3,462 exploits
Metasploit500
ToolTalk rpc.ttdbserverd _tt_internal_realpath Buffer Overflow (AIX)
CVE-2009-272717 Jun 2009
Stack-based buffer overflow in the _tt_internal_realpath function in the ToolTalk library (libtt.a) in IBM AIX 5.2.0, 5.
43RISK
open
Metasploit300
Slowloris Denial of Service Attack
CVE-2010-222717 Jun 2009
Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 beta does not properly handle an invalid Transfer-En
30RISK
open
Metasploit300
Slowloris Denial of Service Attack
CVE-2007-675017 Jun 2009
The Apache HTTP Server 1.x and 2.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP
40RISK
open
Metasploit300
Green Dam URL Processing Buffer Overflow
CVE-2009-20008HIGH11 Jun 2009
Green Dam 3.17 URL Processing Buffer Overflow
36RISK
open
Metasploit600
Worldweaver DX Studio Player shell.execute() Command Execution
CVE-2009-201109 Jun 2009
Worldweaver DX Studio Player 3.0.29.0, 3.0.22.0, 3.0.12.0, and probably other versions before 3.0.29.1, when used as a p
50RISK
open
Metasploit600
PeaZip Zip Processing Command Injection
CVE-2009-226105 Jun 2009
PeaZIP 2.6.1, 2.5.1, and earlier on Windows allows user-assisted remote attackers to execute arbitrary commands via a .z
50RISK
open
Metasploit500
Apple OS X iTunes 8.1.1 ITMS Overflow
CVE-2009-095001 Jun 2009
Stack-based buffer overflow in Apple iTunes before 8.2 allows remote attackers to execute arbitrary code or cause a deni
43RISK
open
Metasploit200
SafeNet SoftRemote IKE Service Buffer Overflow
CVE-2009-194301 Jun 2009
Stack-based buffer overflow in the IKE service (ireIke.exe) in SafeNet SoftRemote before 10.8.6 allows remote attackers
60RISK
open
Metasploit300
Winamp MAKI Buffer Overflow
CVE-2009-183120 May 2009
The Nullsoft Modern Skins Support module (gen_ff.dll) in Nullsoft Winamp before 5.552 allows remote attackers to execute
50RISK
open
Metasploit300
AOL Radio AmpX ActiveX Control ConvertFile() Buffer Overflow
CVE-2007-575519 May 2009
Multiple stack-based buffer overflows in the AOL AmpX ActiveX control in AmpX.dll 2.6.1.11 in AOL Radio allow remote att
23RISK
open
Metasploit600
NetDecision 4.2 TFTP Writable Directory Traversal Execution
CVE-2009-173016 May 2009
Multiple directory traversal vulnerabilities in NetMechanica NetDecision TFTP Server 4.2 allow remote attackers to read
50RISK
open
Metasploit300
NetDecision 4.2 TFTP Directory Traversal
CVE-2009-173016 May 2009
Multiple directory traversal vulnerabilities in NetMechanica NetDecision TFTP Server 4.2 allow remote attackers to read
50RISK
open
Metasploit300
Oracle DB SQL Injection via SYS.LT.ROLLBACKWORKSPACE
CVE-2009-097804 May 2009
Unspecified vulnerability in the Workspace Manager component in Oracle Database 10.2.0.4 and 11.1.0.6 allows remote auth
23RISK
open
Metasploit300
BaoFeng Storm mps.dll ActiveX OnBeforeVideoDownload Buffer Overflow
CVE-2009-161230 Apr 2009
Stack-based buffer overflow in the MPS.StormPlayer.1 ActiveX control in mps.dll 3.9.4.27 in Baofeng Storm allows remote
50RISK
open
Metasploit400
Symantec Alert Management System Intel Alert Originator Service Buffer Overflow
CVE-2009-143028 Apr 2009
Multiple stack-based buffer overflows in IAO.EXE in the Intel Alert Originator Service in Symantec Alert Management Syst
50RISK
open
Metasploit600
Symantec System Center Alert Management System (xfr.exe) Arbitrary Command Execution
CVE-2009-142928 Apr 2009
The Intel LANDesk Common Base Agent (CBA) in Symantec Alert Management System 2 (AMS2), as used in Symantec System Cente
60RISK
open
Metasploit500
Linux udev Netlink Local Privilege Escalation
CVE-2009-118516 Apr 2009
udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to ga
60RISK
open
Metasploit300
Microsoft Whale Intelligent Application Gateway ActiveX Control Buffer Overflow
CVE-2007-223815 Apr 2009
Multiple stack-based buffer overflows in the Whale Client Components ActiveX control (WhlMgr.dll), as used in Microsoft
50RISK
open
Metasploit600
EnjoySAP SAP GUI ActiveX Control Arbitrary File Download
CVE-2008-483015 Apr 2009
Insecure method vulnerability in the KWEdit ActiveX control in SAP GUI 6.40 Patch 29 (KWEDIT.DLL 6400.1.1.41) and 7.10 P
43RISK
open
Metasploit500
Novell NetIdentity Agent XTIERRPCPIPE Named Pipe Buffer Overflow
CVE-2009-135006 Apr 2009
Unspecified vulnerability in xtagent.exe in Novell NetIdentity Client before 1.2.4 allows remote attackers to execute ar
50RISK
open
Metasploit500
UltraISO CCD File Parsing Buffer Overflow
CVE-2009-126003 Apr 2009
Multiple stack-based buffer overflows in UltraISO 9.3.3.2685 and earlier allow remote attackers to cause a denial of ser
50RISK
open
Metasploit300
SAP AG SAPgui EAI WebViewer3D Buffer Overflow
CVE-2007-447531 Mar 2009
Stack-based buffer overflow in EAI WebViewer3D ActiveX control (webviewer3d.dll) in SAP AG SAPgui before 7.10 Patch Leve
50RISK
open
Metasploit300
XM Easy Personal FTP Server 5.7.0 NLST DoS
CVE-2008-562627 Mar 2009
XM Easy Personal FTP Server 5.6.0 allows remote authenticated users to cause a denial of service via a crafted argument
50RISK
open
Metasploit400
Adobe Collab.getIcon() Buffer Overflow
CVE-2009-0927HIGHunder attack24 Mar 2009
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows r
100RISK
open
Metasploit600
phpMyAdmin Config File Code Injection
CVE-2009-1151CRITICALunder attack24 Mar 2009
Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remo
100RISK
open
Metasploit300
IBM Access Support ActiveX Control Buffer Overflow
CVE-2009-021524 Mar 2009
Stack-based buffer overflow in the GetXMLValue method in the IBM Access Support ActiveX control in IbmEgath.dll, as dist
50RISK
open
Metasploit600
phpMyAdmin Config File Code Injection
CVE-2009-128524 Mar 2009
Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x be
23RISK
open
Metasploit400
Adobe Collab.getIcon() Buffer Overflow
CVE-2009-0927HIGHunder attack24 Mar 2009
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows r
100RISK
open
Metasploit300
Talkative IRC v0.4.4.16 Response Buffer Overflow
CVE-2009-20007CRITICAL17 Mar 2009
Talkative IRC v0.4.4.16 Response Buffer Overflow
63RISK
open
Metasploit600
IBM System Director Agent DLL Injection
CVE-2009-088010 Mar 2009
Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows rem
50RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.