Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,107cataloged exploits
36,322CVEs with public exploitation
24,695lab-tested
24,695 exploits
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3153remotewindows10 Sep 2013
Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
28RISK
open
Exploit-DBVexDay Proof
HP SiteScope (Windows) - Remote Code Execution (Metasploit)
CVE-2013-2367remotewindows10 Sep 2013
Multiple unspecified vulnerabilities in HP SiteScope 11.20 and 11.21, when SOAP is used, allow remote attackers to execu
50RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3152remotewindows10 Sep 2013
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory co
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3150remotewindows10 Sep 2013
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3163HIGHunder attackremotewindows10 Sep 2013
Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
100RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3166remotewindows10 Sep 2013
Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to inject a
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3846remotewindows10 Sep 2013
Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code o
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3143remotewindows10 Sep 2013
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (mem
35RISK
open
Exploit-DBVexDay Proof
AjaXplorer 1.0 - Multiple Vulnerabilities
CVE-2013-5689webappsphp10 Sep 2013
20RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3146remotewindows10 Sep 2013
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory co
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3145remotewindows10 Sep 2013
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3144remotewindows10 Sep 2013
Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3149remotewindows10 Sep 2013
Microsoft Internet Explorer 7 and 8 allows remote attackers to execute arbitrary code or cause a denial of service (memo
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3161remotewindows10 Sep 2013
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (mem
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3162remotewindows10 Sep 2013
Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3164remotewindows10 Sep 2013
Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3148remotewindows10 Sep 2013
Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
CVE-2013-3147remotewindows10 Sep 2013
Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (
28RISK
open
Exploit-DBVexDay Proof
Sophos Web Protection Appliance - Multiple Vulnerabilities
CVE-2013-4983webappslinux09 Sep 2013
The get_referers function in /opt/ws/bin/sblistpack in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1.1 allows
60RISK
open
Exploit-DBVexDay Proof
Sophos Web Protection Appliance - Multiple Vulnerabilities
CVE-2013-4984webappslinux09 Sep 2013
The close_connections function in /opt/cma/bin/clear_keys.pl in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1
38RISK
open
Exploit-DBVexDay Proof
Watchguard Server Center - Local Privilege Escalation
CVE-2013-5701localwindows08 Sep 2013
Multiple untrusted search path vulnerabilities in (1) Watchguard Log Collector (wlcollector.exe) and (2) Watchguard WebB
23RISK
open
Exploit-DBVexDay Proof
IKE and AuthIP IPsec Keyring Modules Service (IKEEXT) - Missing DLL (Metasploit)
CVE-2012-5380MEDIUMlocalwindows06 Sep 2013
Untrusted search path vulnerability in the installation functionality in Ruby 1.9.3-p194, when installed in the top-leve
33RISK
open
Exploit-DBVexDay Proof
IKE and AuthIP IPsec Keyring Modules Service (IKEEXT) - Missing DLL (Metasploit)
CVE-2012-5383localwindows06 Sep 2013
Untrusted search path vulnerability in the installation functionality in Oracle MySQL 5.5.28, when installed in the top-
23RISK
open
Exploit-DBVexDay Proof
IKE and AuthIP IPsec Keyring Modules Service (IKEEXT) - Missing DLL (Metasploit)
CVE-2012-5377localwindows06 Sep 2013
Untrusted search path vulnerability in the installation functionality in ActivePerl 5.16.1.1601, when installed in the t
23RISK
open
Exploit-DBVexDay Proof
IKE and AuthIP IPsec Keyring Modules Service (IKEEXT) - Missing DLL (Metasploit)
CVE-2012-5382localwindows06 Sep 2013
Untrusted search path vulnerability in the installation functionality in Zend Server 5.6.0 SP4, when installed in the to
23RISK
open
Exploit-DBVexDay Proof
IKE and AuthIP IPsec Keyring Modules Service (IKEEXT) - Missing DLL (Metasploit)
CVE-2012-5379HIGHlocalwindows06 Sep 2013
Untrusted search path vulnerability in the installation functionality in ActivePython 3.2.2.3, when installed in the top
41RISK
open
Exploit-DBVexDay Proof
IKE and AuthIP IPsec Keyring Modules Service (IKEEXT) - Missing DLL (Metasploit)
CVE-2012-5381localwindows06 Sep 2013
Untrusted search path vulnerability in the installation functionality in PHP 5.3.17, when installed in the top-level C:\
23RISK
open
Exploit-DBVexDay Proof
IKE and AuthIP IPsec Keyring Modules Service (IKEEXT) - Missing DLL (Metasploit)
CVE-2012-5378localwindows06 Sep 2013
Untrusted search path vulnerability in the installation functionality in ActiveTcl 8.5.12, when installed in the top-lev
23RISK
open
Exploit-DBVexDay Proof
KingView 6.53 - 'KChartXY' ActiveX File Creation / Overwrite
CVE-2013-6128localwindows04 Sep 2013
The KCHARTXYLib.KChartXY ActiveX control in KChartXY.ocx before 65.30.30000.10002 in WellinTech KingView before 6.53 doe
23RISK
open
Exploit-DBVexDay Proof
HP LoadRunner - lrFileIOService ActiveX WriteFileString Remote Code Execution (Metasploit)
CVE-2013-4798remotewindows04 Sep 2013
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown ve
50RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.