Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

75,589cataloged exploits
34,508CVEs with public exploitation
24,695lab-tested
24,443 exploits
Exploit-DBVexDay Proof
Adobe Flash - createTextField Use-After-Free
CVE-2015-5556dosmultiple19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash AS2 - MovieClip.scrollRect Use-After-Free
CVE-2015-5130doswindows19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Setting Value Use-After-Free
CVE-2015-5539dosmultiple19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Heap Buffer Overflow Due to Indexing Error When Loading FLV File
CVE-2015-5118doslinux_x86-6419 Aug 2015
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows an
28RISK
open
Exploit-DBVexDay Proof
Adobe Flash - NetConnection.connect Use-After-Free
CVE-2015-3107dosmultiple19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Drawing Methods 'this' Use-After-Free
CVE-2015-3137dosmultiple19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - '.SWF' Out-of-Bounds Memory Read (2)
CVE-2015-5132doswindows19 Aug 2015
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Overflow in ID3 Tag Parsing
CVE-2015-5560dosmultiple19 Aug 2015
Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR
35RISK
open
Exploit-DBVexDay Proof
Flash - PCRE Regex Compilation Zero-Length Assertion Arbitrary Bytecode Execution
CVE-2015-3042doslinux19 Aug 2015
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457
35RISK
open
Exploit-DBVexDay Proof
Flash Broker-Based - Sandbox Escape via Forward Slash Instead of Backslash
CVE-2015-3082remotewindows19 Aug 2015
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - XMLSocket Destructor Not Cleared Before Setting User Data in connect
CVE-2015-5554doslinux_x86-6419 Aug 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - '.SWF' Out-of-Bounds Memory Read (1)
CVE-2015-5131doswindows19 Aug 2015
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR
35RISK
open
Exploit-DBVexDay Proof
Flash Broker-Based - Sandbox Escape via Unexpected Directory Lock
CVE-2015-3083remotewindows19 Aug 2015
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Pointer Crash in Drawing and Bitmap Handling
CVE-2015-5544doslinux19 Aug 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Pointer Crash After Continuing Slow Script
CVE-2015-5545doslinux19 Aug 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISK
open
Exploit-DBVexDay Proof
Flash Broker-Based - Sandbox Escape via Timing Attack Against File Moving
CVE-2015-3081remotewindows19 Aug 2015
Race condition in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and b
28RISK
open
Exploit-DBVexDay Proof
Adobe Flash (Linux x64) - Bad Dereference at 0x23c
CVE-2015-5546doslinux_x86-6419 Aug 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - 'Setting' Use-After-Free
CVE-2015-5134dosmultiple19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Out-of-Bounds Memory Read While Parsing a Mutated '.TTF' File Embedded in SWF
CVE-2015-5133doswindows19 Aug 2015
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Pointer Crash in Button Handling
CVE-2015-5547doslinux19 Aug 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash AS2 - DisplacementMapFilter.mapBitmap Use-After-Free (2)
CVE-2015-5127doswindows19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Heap Buffer Overflow Loading '.FLV' File with Nellymoser Audio Codec
CVE-2015-4432doslinux_x86-6419 Aug 2015
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows an
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash AS2 - Color.setRGB Use-After-Free
CVE-2015-3128doswindows19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows
35RISK
open
Exploit-DBVexDay Proof
Flash - Uninitialized Stack Variable MPD Parsing Memory Corruption
CVE-2015-3089doswindows19 Aug 2015
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460
35RISK
open
Exploit-DBVexDay Proof
Flash Boundless Tunes - Universal SOP Bypass Through ActionSctipt's Sound Object
CVE-2015-5116remotemultiple19 Aug 2015
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481
28RISK
open
Exploit-DBVexDay Proof
Flash Player - Integer Overflow in Function.apply
CVE-2015-3087doswindows19 Aug 2015
Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and
45RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Display List Handling Use-After-Free
CVE-2015-3124doswindows19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows
35RISK
open
Exploit-DBVexDay Proof
Flash - Issues in DefineBitsLossless and DefineBitsLossless2 Leads to Using Uninitialized Memory
CVE-2015-3093doswindows19 Aug 2015
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460
35RISK
open
Exploit-DBVexDay Proof
Adobe Flash AS2 - textfield.filters Use-After-Free (2)
CVE-2015-3118doswindows19 Aug 2015
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows
35RISK
open
Exploit-DB
Cisco Unified Communications Manager - Multiple Vulnerabilities
CVE-2014-8008webappsmultiple18 Aug 2015
Absolute path traversal vulnerability in the Real-Time Monitoring Tool (RTMT) API in Cisco Unified Communications Manage
23RISK
open
previouspage 187 / 815next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.