Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
3,462 exploits
Metasploit500
EFS Easy Chat Server Authentication Request Handling Buffer Overflow
CVE-2004-246614 Aug 2007
chat.ghp in Easy Chat Server 1.2 allows remote attackers to cause a denial of service (server crash) via a long username
60RISK
open
Metasploit200
HP OpenView Operations OVTrace Buffer Overflow
CVE-2007-387209 Aug 2007
Multiple stack-based buffer overflows in the Shared Trace Service (OVTrace) service for HP OpenView Operations A.07.50 f
50RISK
open
Metasploit200
Borland Interbase Create-Request Buffer Overflow
CVE-2007-356624 Jul 2007
Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before SP2 allows remote at
50RISK
open
Metasploit200
Windows RSH Daemon Buffer Overflow
CVE-2007-400624 Jul 2007
Buffer overflow in Mike Dubman Windows RSH daemon (rshd) 1.7 has unknown impact and remote attack vectors, aka ZD-000000
50RISK
open
Metasploit200
Ipswitch IMail IMAP SEARCH Buffer Overflow
CVE-2007-392518 Jul 2007
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote au
60RISK
open
Metasploit0
SquirrelMail PGP Plugin Command Execution (SMTP)
CVE-2003-099009 Jul 2007
The parseAddress code in (1) SquirrelMail 1.4.0 and (2) GPG Plugin 1.1 allows remote attackers to execute commands via s
43RISK
open
Metasploit300
McAfee Visual Trace ActiveX Control Buffer Overflow
CVE-2006-670707 Jul 2007
Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Ex
50RISK
open
Metasploit300
EnjoySAP SAP GUI ActiveX Control Buffer Overflow
CVE-2007-360505 Jul 2007
Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEnd\SapGui\kwedit.dll in the EnjoySAP
50RISK
open
Metasploit500
SAP DB 7.4 WebTools Buffer Overflow
CVE-2007-361405 Jul 2007
Multiple stack-based buffer overflows in waHTTP.exe (aka the SAP DB Web Server) in SAP DB, possibly 7.3 through 7.5, all
60RISK
open
Metasploit400
Trend Micro OfficeScan Remote Stack Buffer Overflow
CVE-2008-136528 Jun 2007
Stack-based buffer overflow in Trend Micro OfficeScan Corporate Edition 8.0 Patch 2 build 1189 and earlier, and 7.3 Patc
50RISK
open
Metasploit300
RKD Software BarCodeAx.dll v4.9 ActiveX Remote Stack Buffer Overflow
CVE-2007-343522 Jun 2007
Stack-based buffer overflow in the BeginPrint method in a certain ActiveX control in RKD Software (barcodetools.com) Bar
50RISK
open
Metasploit400
Altap Salamander 2.5 PE Viewer Buffer Overflow
CVE-2007-331419 Jun 2007
Stack-based buffer overflow in peviewer.spl in Altap Servant Salamander 2.5 with Portable Executable Viewer 2.02 (Englis
50RISK
open
Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer Buffer Overflow
CVE-2007-321606 Jun 2007
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops a
50RISK
open
Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer rxsSetDataGrowthScheduleAndFilter Buffer Overflow
CVE-2007-321606 Jun 2007
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops a
50RISK
open
Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer Buffer Overflow
CVE-2007-500306 Jun 2007
Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r1
50RISK
open
Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer Multiple Commands Buffer Overflow
CVE-2007-321606 Jun 2007
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops a
50RISK
open
Metasploit300
FlipViewer FViewerLoading ActiveX Control Buffer Overflow
CVE-2007-291906 Jun 2007
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipView
50RISK
open
Metasploit400
CA Antivirus Engine CAB Buffer Overflow
CVE-2007-286405 Jun 2007
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associ
50RISK
open
Metasploit600
PostgreSQL for Linux Payload Execution
CVE-2007-328005 Jun 2007
The Database Link library (dblink) in PostgreSQL 8.1 implements functions via CREATE statements that map to arbitrary li
23RISK
open
Metasploit400
Yahoo! Messenger 8.1.0.249 ActiveX Control Buffer Overflow
CVE-2007-314705 Jun 2007
Buffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows
50RISK
open
Metasploit300
DVD X Player 5.5 .plf PlayList Buffer Overflow
CVE-2007-306802 Jun 2007
Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF
50RISK
open
Metasploit300
Logitech VideoCall ActiveX Control Buffer Overflow
CVE-2007-291831 May 2007
Multiple stack-based buffer overflows in ActiveX controls (1) VibeC in (a) vibecontrol.dll, (2) CallManager and (3) View
50RISK
open
Metasploit600
Zenturi ProgramChecker ActiveX Control Arbitrary File Download
CVE-2007-298729 May 2007
Multiple buffer overflows in certain ActiveX controls in sasatl.dll in Zenturi ProgramChecker allow remote attackers to
50RISK
open
Metasploit200
Mac OS X mDNSResponder UPnP Location Overflow
CVE-2007-238625 May 2007
Buffer overflow in mDNSResponder in Apple Mac OS X 10.4 up to 10.4.9 allows remote attackers to cause a denial of servic
50RISK
open
Metasploit500
UltraISO CUE File Parsing Buffer Overflow
CVE-2007-288824 May 2007
Stack-based buffer overflow in UltraISO 8.6.2.2011 and earlier allows user-assisted remote attackers to execute arbitrar
50RISK
open
Metasploit300
Symantec Norton Internet Security 2004 ActiveX Control Buffer Overflow
CVE-2007-168916 May 2007
Buffer overflow in the ISAlertDataCOM ActiveX control in ISLALERT.DLL for Norton Personal Firewall 2004 and Internet Sec
50RISK
open
Metasploit200
Samba lsa_io_trans_names Heap Overflow
CVE-2007-244614 May 2007
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RISK
open
Metasploit600
Samba "username map script" Command Execution
CVE-2007-244714 May 2007
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RISK
open
Metasploit200
Samba lsa_io_trans_names Heap Overflow
CVE-2007-244614 May 2007
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RISK
open
Metasploit400
Samba lsa_io_trans_names Heap Overflow
CVE-2007-244614 May 2007
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.