Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

75,526cataloged exploits
34,478CVEs with public exploitation
24,695lab-tested
24,443 exploits
Exploit-DB
Fortinet FortiGate 4.x < 5.0.7 - SSH Backdoor Access
CVE-2016-1909remotelinux09 Jan 2016
Fortinet FortiAnalyzer before 5.0.12 and 5.2.x before 5.2.5; FortiSwitch 3.3.x before 3.3.3; FortiCache 3.0.x before 3.0
60RISK
open
Exploit-DBVexDay Proof
D-Link DCS-931L - Arbitrary File Upload (Metasploit)
CVE-2015-2049webappshardware07 Jan 2016
Unrestricted file upload vulnerability in D-Link DCS-931L with firmware 1.04 and earlier allows remote authenticated use
50RISK
open
Exploit-DB
OpenMRS Reporting Module 0.9.7 - Remote Code Execution
CVE-2013-7285webappsjava07 Jan 2016
Xstream API versions up to 1.4.6 and version 1.4.10, if the security framework has not been initialized, may allow a rem
60RISK
open
Exploit-DBVexDay Proof
Linux Kernel 4.3.3 (Ubuntu 14.04/15.10) - 'overlayfs' Local Privilege Escalation (1)
CVE-2015-8660locallinux05 Jan 2016
The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr op
43RISK
open
Exploit-DB
Ganeti - Multiple Vulnerabilities
CVE-2015-7945dosmultiple05 Jan 2016
The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11
23RISK
open
Exploit-DB
Atlassian Confluence 5.2/5.8.14/5.8.15 - Multiple Vulnerabilities
CVE-2015-8398webappsxml05 Jan 2016
Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.8.17 allows remote attackers to inject arbitra
23RISK
open
Exploit-DB
Atlassian Confluence 5.2/5.8.14/5.8.15 - Multiple Vulnerabilities
CVE-2015-8399webappsxml05 Jan 2016
Atlassian Confluence before 5.8.17 allows remote authenticated users to read configuration files via the decoratorName p
50RISK
open
Exploit-DB
Ganeti - Multiple Vulnerabilities
CVE-2015-7944dosmultiple05 Jan 2016
The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11
28RISK
open
Exploit-DBVexDay Proof
pdfium - CPDF_TextObject::CalcPositionData Heap Out-of-Bounds Read
CVE-2015-6787dosmultiple04 Jan 2016
Multiple unspecified vulnerabilities in Google Chrome before 47.0.2526.73 allow attackers to cause a denial of service o
23RISK
open
Exploit-DBVexDay Proof
pdfium - CPDF_Function::Call Stack Buffer Overflow
CVE-2015-6787dosmultiple04 Jan 2016
Multiple unspecified vulnerabilities in Google Chrome before 47.0.2526.73 allow attackers to cause a denial of service o
23RISK
open
Exploit-DBVexDay Proof
Rejetto HTTP File Server (HFS) 2.3.x - Remote Command Execution (2)
CVE-2014-6287CRITICALunder attackremotewindows04 Jan 2016
The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (aks HFS or HttpFileServer) 2.3x before 2.3c a
100RISK
open
Exploit-DBVexDay Proof
pdfium - CPDF_DIBSource::DownSampleScanline32Bit Heap Out-of-Bounds Read
CVE-2015-6787dosmultiple04 Jan 2016
Multiple unspecified vulnerabilities in Google Chrome before 47.0.2526.73 allow attackers to cause a denial of service o
23RISK
open
Exploit-DB
DeleGate 9.9.13 - Local Privilege Escalation
CVE-2015-7556locallinux30 Dec 2015
DeleGate 9.9.13 allows local users to gain privileges as demonstrated by the dgcpnod setuid program.
23RISK
open
Exploit-DB
KiTTY Portable 0.65.0.2p (Windows XP/7/10) - Chat Remote Buffer Overflow (SEH)
CVE-2015-7874remotewindows29 Dec 2015
Buffer overflow in the chat server in KiTTY Portable 0.65.0.2p and earlier allows remote attackers to execute arbitrary
28RISK
open
Exploit-DB
PHP 7.0.0 - Format String
CVE-2015-8617dosmultiple23 Dec 2015
Format string vulnerability in the zend_throw_or_error function in Zend/zend_execute_API.c in PHP 7.x before 7.0.1 allow
28RISK
open
Exploit-DBVexDay Proof
Wireshark - 'infer_pkt_encap' Heap Out-of-Bounds Read
CVE-2015-8733dosmultiple22 Dec 2015
The ngsniffer_process_record function in wiretap/ngsniffer.c in the Sniffer file parser in Wireshark 1.12.x before 1.12.
23RISK
open
Exploit-DBVexDay Proof
Wireshark - 'AirPDcapDecryptWPABroadcastKey' Heap Out-of-Bounds Read (1)
CVE-2015-8724dosmultiple22 Dec 2015
The AirPDcapDecryptWPABroadcastKey function in epan/crypt/airpdcap.c in the 802.11 dissector in Wireshark 1.12.x before
23RISK
open
Exploit-DBVexDay Proof
Adobe Flash Sound.setTransform - Use-After-Free
CVE-2015-8434doswindows_x86-6421 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash TextField.text Setter - Use-After-Free
CVE-2015-8430doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash TextField.htmlText Setter - Use-After-Free
CVE-2015-8428doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - TextField.Variable Setter Use-After-Free
CVE-2015-8427doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 8.1 - 'win32k' Local Privilege Escalation (MS15-010)
CVE-2015-0057localwindows_x86-6418 Dec 2015
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 a
28RISK
open
Exploit-DBVexDay Proof
Adobe Flash MovieClip.startDrag - Use-After-Free
CVE-2015-8411doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash MovieClip.attachBitmap - Use-After-Free
CVE-2015-8410doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash TextField.setFormat - Use-After-Free
CVE-2015-8422doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash TextField.type Setter - Use-After-Free
CVE-2015-8429doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash TextField.tabIndex Setter - Use-After-Free
CVE-2015-8431doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DB
Joomla! 1.5 < 3.4.6 - Object Injection 'x-forwarded-for' Header Remote Code Execution
CVE-2015-8562webappsphp18 Dec 2015
Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbi
60RISK
open
Exploit-DBVexDay Proof
Adobe Flash TextField.replaceSel - Use-After-Free
CVE-2015-8423doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash TextField.replaceText - Use-After-Free
CVE-2015-8424doswindows18 Dec 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and
35RISK
open
previouspage 176 / 815next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.