Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
3,462 exploits
Metasploit300
Cyrus IMAPD pop3d popsubfolders USER Buffer Overflow
CVE-2006-250221 May 2006
Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allow
50RISK
open
Metasploit300
RealVNC NULL Authentication Mode Bypass
CVE-2006-236915 May 2006
RealVNC 4.1.1, and other products that use RealVNC such as AdderLink IP and Cisco CallManager, allows remote attackers t
60RISK
open
Metasploit200
FreeFTPd 1.0.10 Key Exchange Algorithm String Buffer Overflow
CVE-2006-240712 May 2006
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other produc
60RISK
open
Metasploit200
FreeSSHd 1.0.9 Key Exchange Algorithm String Buffer Overflow
CVE-2006-240712 May 2006
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other produc
60RISK
open
Metasploit600
AWStats migrate Remote Command Execution
CVE-2006-223704 May 2006
The web interface for AWStats 6.4 and 6.5, when statistics updates are enabled, allows remote attackers to execute arbit
50RISK
open
Metasploit300
Juniper SSL-VPN IVE JuniperSetupDLL.dll ActiveX Control Buffer Overflow
CVE-2006-208626 Apr 2006
Buffer overflow in JuniperSetupDLL.dll, loaded from JuniperSetup.ocx by the Juniper SSL-VPN Client when accessing a Juni
50RISK
open
Metasploit300
Oracle DB SQL Injection via DBMS_EXPORT_EXTENSION
CVE-2006-208126 Apr 2006
Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via the GET_DOMAIN_INDEX_METADA
43RISK
open
Metasploit200
Novell Messenger Server 2.0 Accept-Language Overflow
CVE-2006-099213 Apr 2006
Stack-based buffer overflow in Novell GroupWise Messenger before 2.0 Public Beta 2 allows remote attackers to execute ar
60RISK
open
Metasploit600
MS06-014 Microsoft Internet Explorer COM CreateObject Code Execution
CVE-2006-000311 Apr 2006
Unspecified vulnerability in the RDS.Dataspace ActiveX control, which is contained in ActiveX Data Objects (ADO) and dis
60RISK
open
Metasploit600
MS06-014 Microsoft Internet Explorer COM CreateObject Code Execution
CVE-2006-470411 Apr 2006
Cross-zone scripting vulnerability in the WMI Object Broker (WMIScriptUtils.WMIObjectBroker2) ActiveX control (WmiScript
50RISK
open
Metasploit300
UltraVNC 1.0.1 Client Buffer Overflow
CVE-2006-165204 Apr 2006
Multiple buffer overflows in (a) UltraVNC (aka Ultr@VNC) 1.0.1 and earlier and (b) tabbed_viewer 1.29 (1) allow user-ass
50RISK
open
Metasploit600
PAJAX Remote Command Execution
CVE-2006-155130 Mar 2006
Eval injection vulnerability in pajax_call_dispatcher.php in PAJAX 0.5.1 and earlier allows remote attackers to execute
50RISK
open
Metasploit300
MS06-013 Microsoft Internet Explorer createTextRange() Code Execution
CVE-2006-135919 Mar 2006
Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arb
50RISK
open
Metasploit200
Mercur v5.0 IMAP SP3 SELECT Buffer Overflow
CVE-2006-125517 Mar 2006
Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause
50RISK
open
Metasploit200
Mercur Messaging 2005 IMAP Login Buffer Overflow
CVE-2006-125517 Mar 2006
Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause
50RISK
open
Metasploit200
PeerCast URL Handling Buffer Overflow
CVE-2006-114808 Mar 2006
Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow rem
60RISK
open
Metasploit200
PeerCast URL Handling Buffer Overflow
CVE-2006-114808 Mar 2006
Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow rem
60RISK
open
Metasploit0
Mail.app Image Attachment Command Execution
CVE-2007-616501 Mar 2006
Mail in Apple Mac OS X Leopard (10.5.1) allows user-assisted remote attackers to execute arbitrary code via an AppleDoub
50RISK
open
Metasploit0
Mail.app Image Attachment Command Execution
CVE-2006-039501 Mar 2006
The Download Validation in Mail in Mac OS X 10.4 does not properly recognize attachment file types to warn a user of an
50RISK
open
Metasploit300
Microsoft Internet Explorer isComponentInstalled Overflow
CVE-2006-101624 Feb 2006
Buffer overflow in the IsComponentInstalled method in Internet Explorer 6.0, when used on Windows 2000 before SP4 or Win
50RISK
open
Metasploit600
Safari Archive Metadata Command Execution
CVE-2006-084821 Feb 2006
The "Open 'safe' files after downloading" option in Safari on Apple Mac OS X allows remote user-assisted attackers to ex
50RISK
open
Metasploit200
Bomberclone 0.11.6 Buffer Overflow
CVE-2006-046016 Feb 2006
Multiple buffer overflows in BomberClone before 0.11.6.2 allow remote attackers to execute arbitrary code via long error
50RISK
open
Metasploit400
HTML Help Workshop 4.74 (hhp Project File) Buffer Overflow
CVE-2006-056406 Feb 2006
Stack-based buffer overflow in Microsoft HTML Help Workshop 4.74.8702.0, and possibly earlier versions, and as included
60RISK
open
Metasploit400
HTML Help Workshop 4.74 (hhp Project File) Buffer Overflow
CVE-2006-056406 Feb 2006
Stack-based buffer overflow in Microsoft HTML Help Workshop 4.74.8702.0, and possibly earlier versions, and as included
60RISK
open
Metasploit300
Firefox location.QueryInterface() Code Execution
CVE-2006-029502 Feb 2006
Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript is enabled in mail, and SeaMonkey before 1.0 might allow remote attac
60RISK
open
Metasploit500
Winamp Playlist UNC Path Computer Name Overflow
CVE-2006-047629 Jan 2006
Buffer overflow in Nullsoft Winamp 5.12 allows remote attackers to execute arbitrary code via a playlist (pls) file with
60RISK
open
Metasploit300
KarjaSoft Sami FTP Server v2.0.2 USER Overflow
CVE-2006-044124 Jan 2006
Stack-based buffer overflow in Sami FTP Server 2.0.1 allows remote attackers to execute arbitrary code via a long USER c
60RISK
open
Metasploit300
KarjaSoft Sami FTP Server v2.0.2 USER Overflow
CVE-2006-221224 Jan 2006
Buffer overflow in KarjaSoft Sami FTP Server 2.0.2 and earlier allows remote attackers to execute arbitrary code via a l
50RISK
open
Metasploit500
Windows XP/2003/Vista Metafile Escape() SetAbortProc Code Execution
CVE-2005-456027 Dec 2005
The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbit
60RISK
open
Metasploit500
Qualcomm WorldMail 3.0 IMAPD LIST Buffer Overflow
CVE-2005-426720 Dec 2005
Stack-based buffer overflow in Qualcomm WorldMail 3.0 allows remote attackers to execute arbitrary code via a long IMAP
50RISK
open
previouspage 100 / 116next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.