Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,967GitHub PoC 13,264VulnCheck XDB 8,156Nuclei 4,201Metasploit 3,462✓ verified onlyrecentpopularrisk
22,786 exploits
Exploit-DB
WordPress Plugin Contact Form 7 to Database Extension 2.10.32 - CSV Injection
CSV Injection vulnerability in ExportToCsvUtf8.php of the Contact Form 7 to Database Extension plugin 2.10.32 for WordPr
23RISK
open ↗Exploit-DB
Joomla! Component AcySMS 3.5.0 - CSV Macro Injection
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcySMS extensio
23RISK
open ↗Exploit-DB
Homematic CCU2 2.29.23 - Arbitrary File Write
Directory Traversal / Arbitrary File Write / Remote Code Execution in the User.setLanguage method in eQ-3 AG Homematic C
35RISK
open ↗Exploit-DB
Systematic SitAware - NVG Denial of Service
Systematic SitaWare 6.4 SP2 does not validate input from other sources sufficiently. e.g., information utilizing the NVG
23RISK
open ↗Exploit-DB
Cisco Smart Install - Crash (PoC)
A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthentica
100RISK
open ↗Exploit-DB
Joomla! Component Fields - SQLi Remote Code Execution (Metasploit)
SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspeci
60RISK
open ↗Exploit-DB
GitStack - Unsanitized Argument Remote Code Execution (Metasploit)
An issue was discovered in GitStack through 2.3.10. User controlled input is not sufficiently filtered, allowing an unau
60RISK
open ↗Exploit-DB
Exodus Wallet (ElectronJS Framework) - Remote Code Execution (Metasploit)
GitHub Electron versions 1.8.2-beta.3 and earlier, 1.7.10 and earlier, 1.6.15 and earlier has a vulnerability in the pro
60RISK
open ↗Exploit-DB
Open-AuditIT Professional 2.1 - Cross-Site Scripting
Open-AudIT Professional 2.1 allows XSS via the Name or Description field on the Credentials screen.
23RISK
open ↗Exploit-DB
TwonkyMedia Server 7.0.11-8.5 - Persistent Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in Twonky Server 7.0.11 through 8.5 allows remote attackers to inject arbitrary
23RISK
open ↗Exploit-DB
Microsoft Windows Remote Assistance - XML External Entity Injection
Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Window
33RISK
open ↗Exploit-DB
TwonkyMedia Server 7.0.11-8.5 - Directory Traversal
Directory traversal vulnerability in Twonky Server 7.0.11 through 8.5 allows remote attackers to share the contents of a
28RISK
open ↗Exploit-DB
DLINK DCS-5020L - Remote Code Execution (PoC)
On D-Link DCS-5009 devices with firmware 1.08.11 and earlier, DCS-5010 devices with firmware 1.14.09 and earlier, and DC
28RISK
open ↗Exploit-DB
Laravel Log Viewer < 0.13.0 - Local File Download
rap2hpoutre Laravel Log Viewer before v0.13.0 relies on Base64 encoding for l, dl, and del requests, which makes it easi
28RISK
open ↗Exploit-DB
Acrolinx Server < 5.2.5 - Directory Traversal
Acrolinx Server before 5.2.5 on Windows allows Directory Traversal.
50RISK
open ↗Exploit-DB
Microsoft Windows Manager (7 x86) - Menu Management Component UAF Privilege Elevation
The kernel-mode drivers in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012
76RISK
open ↗Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length decrement operation. Th
23RISK
open ↗Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length decrement operation. Th
23RISK
open ↗Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
In bnep_process_control_packet of bnep_utils.cc, there is a possible out of bounds read due to a missing bounds check. T
23RISK
open ↗Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open ↗Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open ↗Exploit-DB
Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open ↗Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
23RISK
open ↗Exploit-DB
Dell EMC NetWorker - Denial of Service
In Dell EMC NetWorker versions prior to 9.2.1.1, versions prior to 9.1.1.6, 9.0.x, and versions prior to 8.2.4.11, the '
28RISK
open ↗Exploit-DB
Android Bluetooth - BNEP bnep_data_ind() Remote Heap Disclosure
In bnep_process_control_packet of bnep_utils.cc, there is a possible out of bounds read due to a missing bounds check. T
23RISK
open ↗Exploit-DB
WordPress Plugin Site Editor 1.1.1 - Local File Inclusion
A Local File Inclusion vulnerability in the Site Editor plugin through 1.1.1 for WordPress allows remote attackers to re
50RISK
open ↗Exploit-DB
Linux Kernel < 4.15.4 - 'show_floppy' KASLR Address Leak
In the Linux kernel through 4.15.4, the floppy driver reveals the addresses of kernel functions and global variables usi
23RISK
open ↗Exploit-DB
Vehicle Sales Management System - Multiple Vulnerabilities
Soyket Chowdhury Vehicle Sales Management System version 2017-07-30 is vulnerable to multiple SQL Injecting in login/veh
23RISK
open ↗Exploit-DB
Intelbras Telefone IP TIP200 LITE - Local File Disclosure
Intelbras TELEFONE IP TIP200/200 LITE 60.0.75.29 devices allow remote authenticated admins to read arbitrary files via t
23RISK
open ↗Exploit-DB
Coship RT3052 Wireless Router - Persistent Cross-Site Scripting
Coship RT3052 4.0.0.48 devices allow XSS via a crafted SSID field on the "Wireless Setting - Basic" screen.
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.