Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,900cataloged exploits
36,847CVEs with public exploitation
24,695lab-tested
24,475 exploits
Exploit-DB
WebkitGTK+ 2.20.3 - 'ImageBufferCairo::getImageData()' Buffer Overflow (PoC)
CVE-2018-12293locallinux16 Aug 2018
The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKi
28RISK
open
Exploit-DBVexDay Proof
OpenEMR 5.0.1.3 - (Authenticated) Arbitrary File Actions
CVE-2018-15142webappslinux16 Aug 2018
Directory traversal in portal/import_template.php in versions of OpenEMR before 5.0.1.4 allows a remote attacker authent
28RISK
open
Exploit-DB
Pimcore 5.2.3 - SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery
CVE-2018-14057webappsphp16 Aug 2018
Pimcore before 5.3.0 allows remote attackers to conduct cross-site request forgery (CSRF) attacks by leveraging validati
23RISK
open
Exploit-DB
JioFi 4G M2S 1.0.2 - Denial of Service (PoC)
CVE-2018-15181doshardware15 Aug 2018
JioFi 4G Hotspot M2S devices allow attackers to cause a denial of service (secure configuration outage) via an XSS paylo
23RISK
open
Exploit-DB
ASUSTOR ADM 3.1.0.RFQ3 - Remote Command Execution / SQL Injection
CVE-2018-11511webappscgi15 Aug 2018
The tree list functionality in the photo gallery application in ASUSTOR ADM 3.1.0.RFQ3 has a SQL injection vulnerability
43RISK
open
Exploit-DB
ASUSTOR ADM 3.1.0.RFQ3 - Remote Command Execution / SQL Injection
CVE-2018-11510webappscgi15 Aug 2018
The ASUSTOR ADM 3.1.0.RFQ3 NAS portal suffers from an unauthenticated remote code execution vulnerability in the portal/
35RISK
open
Exploit-DB
ASUSTOR ADM 3.1.0.RFQ3 - Remote Command Execution / SQL Injection
CVE-2018-11509webappscgi15 Aug 2018
ASUSTOR ADM 3.1.0.RFQ3 uses the same default root:admin username and password as it does for the NAS itself for applicat
28RISK
open
Exploit-DB
cgit 1.2.1 - Directory Traversal (Metasploit)
CVE-2018-14912webappslinux14 Aug 2018
cgit_clone_objects in CGit before 1.2.1 has a directory traversal vulnerability when `enable-http-clone=1` is not turned
60RISK
open
Exploit-DBVexDay Proof
Oracle GlassFish Server Open Source Edition 4.1 - Path Traversal (Metasploit)
CVE-2017-1000028webappswindows14 Aug 2018
Oracle, GlassFish Server Open Source Edition 4.1 is vulnerable to both authenticated and unauthenticated Directory Trave
60RISK
open
Exploit-DB
Cloudme 1.9 - Buffer Overflow (DEP) (Metasploit)
CVE-2018-6892remotewindows_x86-6414 Aug 2018
An issue was discovered in CloudMe before 1.11.0. An unauthenticated remote attacker that can connect to the "CloudMe Sy
60RISK
open
Exploit-DB
Oracle Glassfish OSE 4.1 - Path Traversal (Metasploit)
CVE-2017-1000028webappslinux14 Aug 2018
Oracle, GlassFish Server Open Source Edition 4.1 is vulnerable to both authenticated and unauthenticated Directory Trave
60RISK
open
Exploit-DB
PostgreSQL 9.4-0.5.3 - Privilege Escalation
CVE-2017-14798HIGHlocallinux13 Aug 2018
local privilege escalation in SUSE postgresql init script
41RISK
open
Exploit-DBVexDay Proof
Android - Directory Traversal over USB via Injection in blkid Output
CVE-2018-9445localandroid13 Aug 2018
In readMetadata of Utils.cpp, there is a possible path traversal bug due to a confused deputy. This could lead to local
23RISK
open
Exploit-DBVexDay Proof
Oracle Weblogic Server - Deserialization Remote Code Execution (Metasploit)
CVE-2018-2628CRITICALunder attackremotewindows13 Aug 2018
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). S
100RISK
open
Exploit-DBVexDay Proof
IBM Sterling B2B Integrator 5.2.0.1/5.2.6.3 - Cross-Site Scripting
CVE-2018-1513MEDIUMwebappsmultiple13 Aug 2018
IBM Sterling B2B Integrator Standard Edition 5.2.0 through 5.2.6 is vulnerable to cross-site scripting. This vulnerabili
33RISK
open
Exploit-DBVexDay Proof
IBM Sterling B2B Integrator 5.2.0.1/5.2.6.3 - Cross-Site Scripting
CVE-2018-1563MEDIUMwebappsmultiple13 Aug 2018
IBM Sterling B2B Integrator Standard Edition (IBM Sterling File Gateway 2.2.0 through 2.2.6) is vulnerable to cross-site
33RISK
open
Exploit-DB
Zimbra 8.6.0_GA_1153 - Cross-Site Scripting
CVE-2016-3411webappsphp10 Aug 2018
Cross-site scripting (XSS) vulnerability in Zimbra Collaboration before 8.7.0 allows remote attackers to inject arbitrar
23RISK
open
Exploit-DB
MyBB Thank You/Like Plugin 3.0.0 - Cross-Site Scripting
CVE-2018-14888webappsphp10 Aug 2018
inc/plugins/thankyoulike.php in the Eldenroot Thank You/Like plugin before 3.1.0 for MyBB allows XSS via a post or threa
23RISK
open
Exploit-DB
reSIProcate 1.10.2 - Heap Overflow
CVE-2018-12584dosmultiple09 Aug 2018
The ConnectionBase::preparseNewBytes function in resip/stack/ConnectionBase.cxx in reSIProcate through 1.10.2 allows rem
28RISK
open
Exploit-DB
Linux Kernel 4.14.7 (Ubuntu 16.04 / CentOS 7) - (KASLR & SMEP Bypass) Arbitrary File Read
CVE-2017-18344locallinux09 Aug 2018
The timer_create syscall implementation in kernel/time/posix-timers.c in the Linux kernel before 4.14.8 doesn't properly
23RISK
open
Exploit-DB
osTicket 1.10.1 - Arbitrary File Upload
CVE-2017-15580webappswindows08 Aug 2018
osTicket 1.10.1 provides a functionality to upload 'html' files with associated formats. However, it does not properly v
28RISK
open
Exploit-DB
Subrion CMS 4.2.1 - Cross-Site Scripting
CVE-2018-14840webappsphp06 Aug 2018
uploads/.htaccess in Subrion CMS 4.2.1 allows XSS because it does not block .html file uploads (but does block, for exam
23RISK
open
Exploit-DB
Open-AudIT Community 2.2.6 - Cross-Site Scripting
CVE-2018-14493webappswindows06 Aug 2018
Cross-site scripting (XSS) vulnerability in the Groups Page in Open-Audit Community 2.2.6 allows remote attackers to inj
35RISK
open
Exploit-DB
Sitecore.Net 8.1 - Directory Traversal
CVE-2018-7669webappsaspx06 Aug 2018
An issue was discovered in Sitecore Sitecore.NET 8.1 rev. 151207 Hotfix 141178-1 and above. The 'Log Viewer' application
28RISK
open
Exploit-DB
LAMS < 3.1 - Cross-Site Scripting
CVE-2018-12090webappsjava06 Aug 2018
There is unauthenticated reflected cross-site scripting (XSS) in LAMS before 3.1 that allows a remote attacker to introd
23RISK
open
Exploit-DBVexDay Proof
Fortinet FortiClient 5.2.3 (Windows 10 x64 Creators) - Local Privilege Escalation
CVE-2015-4077localwindows_x86-6405 Aug 2018
The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient b
23RISK
open
Exploit-DBVexDay Proof
Fortinet FortiClient 5.2.3 (Windows 10 x64 Creators) - Local Privilege Escalation
CVE-2015-5736localwindows_x86-6405 Aug 2018
The Fortishield.sys driver in Fortinet FortiClient before 5.2.4 allows local users to execute arbitrary code with kernel
23RISK
open
Exploit-DB
PHP Template Store Script 3.0.6 - Cross-Site Scripting
CVE-2018-14869webappsphp03 Aug 2018
PHP Template Store Script 3.0.6 allows XSS via the Address line 1, Address Line 2, Bank name, or A/C Holder name field i
23RISK
open
Exploit-DB
Plex Media Server 1.13.2.5154 - SSDP Processing XML External Entity Injection
CVE-2018-13415webappsxml03 Aug 2018
In Plex Media Server 1.13.2.5154, the XML parsing engine for SSDP/UPnP functionality is vulnerable to an XML External En
35RISK
open
Exploit-DBVexDay Proof
Linux Kernel - UDP Fragmentation Offset 'UFO' Privilege Escalation (Metasploit)
CVE-2017-1000112locallinux03 Aug 2018
Linux kernel: Exploitable memory corruption due to UFO to non-UFO path switch. When building a UFO packet with MSG_MORE
43RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.