Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
76,542cataloged exploits
34,971CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 21,899GitHub PoC 13,947VulnCheck XDB 8,542Nuclei 4,243Metasploit 3,468✓ verified onlyrecentpopularrisk
24,443 exploits
Exploit-DB✓ VexDay Proof
Joomla! Component Joostina - SQL Injection
SQL injection vulnerability in the Joostina (com_ezautos) component for Joomla! allows remote attackers to execute arbit
23RISK
open ↗Exploit-DB✓ VexDay Proof
Joomla! Component TimeTrack 1.2.4 - Multiple SQL Injections
SQL injection vulnerability in the TimeTrack (com_timetrack) component 1.2.4 for Joomla! allows remote attackers to exec
23RISK
open ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control call-back-url Buffer Overflow (Metasploit)
Stack-based buffer overflow in Novell iPrint Client before 5.44 allows remote attackers to execute arbitrary code via a
50RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - SMB Relay Code Execution (MS08-068) (Metasploit)
Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20
50RISK
open ↗Exploit-DB✓ VexDay Proof
wpQuiz 2.7 - Authentication Bypass
Multiple SQL injection vulnerabilities in wpQuiz 2.7 allow remote attackers to execute arbitrary SQL commands via the (1
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Shell LNK Code Execution (MS10-046) (Metasploit)
Windows Shell in Microsoft Windows XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 all
100RISK
open ↗Exploit-DB✓ VexDay Proof
mountall 2.15.2 (Ubuntu 10.04/10.10) - Local Privilege Escalation
mountall.c in mountall before 2.15.2 uses 0666 permissions for the root.rules file, which allows local users to gain pri
23RISK
open ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control 'debug' Remote Buffer Overflow (Metasploit)
The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the
50RISK
open ↗Exploit-DB✓ VexDay Proof
ibPhotohost 1.1.2 - SQL Injection
SQL injection vulnerability in index.php in ibPhotohost 1.1.2 allows remote attackers to execute arbitrary SQL commands
23RISK
open ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control ExecuteRequest Buffer Overflow (Metasploit)
Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.
50RISK
open ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control ExecuteRequest debug Buffer Overflow (Metasploit)
The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the
50RISK
open ↗Exploit-DB✓ VexDay Proof
@Mail 6.1.9 - 'MailType' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.php in @mail Webmail before 6.2.0 allows remote attackers to inject ar
23RISK
open ↗Exploit-DB✓ VexDay Proof
Sun Java - Web Start Plugin Command Line Argument Injection (Metasploit)
Unspecified vulnerability in the Java Deployment Toolkit component in Oracle Java SE and Java for Business JDK and JRE 6
50RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Excel - WOPT Record Parsing Heap Memory Corruption
Unspecified vulnerability in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Excel - WOPT Record Parsing Heap Memory Corruption
Buffer overflow in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS - ISAPI RSA WebAgent Redirect Overflow (Metasploit)
Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3
50RISK
open ↗Exploit-DB✓ VexDay Proof
Apple iPhone MobileSafari LibTIFF - 'browser' Remote Buffer Overflow (Metasploit) (1)
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft WINS - Service Memory Overwrite (MS04-045) (Metasploit)
The WINS service (wins.exe) on Microsoft Windows NT Server 4.0, Windows 2000 Server, and Windows Server 2003 allows remo
60RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Outlook - 'ATTACH_BY_REF_ONLY' File Execution (MS10-045) (Metasploit)
Microsoft Office Outlook 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 does not properly verify e-mail attachments with a PR_
50RISK
open ↗Exploit-DB✓ VexDay Proof
Lyris ListManager - MSDE Weak sa Password (Metasploit)
The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with
50RISK
open ↗Exploit-DB✓ VexDay Proof
Hummingbird Connectivity 10 SP5 - LPD Buffer Overflow (Metasploit)
Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of s
50RISK
open ↗Exploit-DB✓ VexDay Proof
Mercantec SoftCart - CGI Overflow (Metasploit)
Buffer overflow in SoftCart.exe in Mercantec SoftCart 4.00b allows remote attackers to execute arbitrary code via a long
50RISK
open ↗Exploit-DB✓ VexDay Proof
Proxy-Pro Professional GateKeeper 4.7 - GET Overflow (Metasploit)
Buffer overflow in the web proxy for GateKeeper Pro 4.7 allows remote attackers to execute arbitrary code via a long GET
50RISK
open ↗Exploit-DB✓ VexDay Proof
CA CAM (Windows x86) - 'log_security()' Remote Stack Buffer Overflow (Metasploit)
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1
60RISK
open ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Software Update - Command Execution (Metasploit)
Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (
43RISK
open ↗Exploit-DB✓ VexDay Proof
Racer 0.5.3 Beta 5 - Remote Buffer Overflow (Metasploit)
Multiple buffer overflows in the (1) client and (2) server in Racer 0.5.3 beta 5 allow remote attackers to execute arbit
50RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco WebEx Meeting Manager UCF - 'atucfobj.dll' ActiveX NewObject Method Buffer Overflow (Metasploit)
Stack-based buffer overflow in the WebexUCFObject ActiveX control in atucfobj.dll in Cisco WebEx Meeting Manager before
50RISK
open ↗Exploit-DB✓ VexDay Proof
Ultra Shareware Office Control - ActiveX HttpUpload Buffer Overflow (Metasploit)
Stack-based buffer overflow in the Ultra.OfficeControl ActiveX control in OfficeCtrl.ocx 2.0.2008.801 in Ultra Shareware
50RISK
open ↗Exploit-DB✓ VexDay Proof
Solaris LPD - Command Execution (Metasploit)
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request wit
60RISK
open ↗Exploit-DB✓ VexDay Proof
VeryPDF PDFView - OCX ActiveX OpenPDF Heap Overflow (Metasploit)
Heap-based buffer overflow in the PDFVIEW.PdfviewCtrl.1 ActiveX control in pdfview.ocx 2.0.0.1 in VeryDOC PDF Viewer OCX
50RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.