Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,020cataloged exploits
35,276CVEs with public exploitation
24,695lab-tested
76,569 exploits
GitHub PoC
1amthebest1/CVE-2023-27372
CVE-2023-27372CRITICAL15 Aug 2024
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
VulnCheck XDB
initial-access
CVE-2023-27372CRITICAL15 Aug 2024
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
VulnCheck XDB
local
CVE-2024-30051HIGHunder attackransomware14 Aug 2024
Windows DWM Core Library Elevation of Privilege Vulnerability
71RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2024-22120CRITICAL14 Aug 2024
Time Based SQL Injection in Zabbix Server Audit Log
70RISK
open
GitHub PoC125
fortra/CVE-2024-30051
CVE-2024-30051HIGHunder attackransomware14 Aug 2024
Windows DWM Core Library Elevation of Privilege Vulnerability
71RISK
open
GitHub PoC3
This exploit was created to exploit an XXE (XML External Entity). Through it, I read the backend code of the web service and found an endpoint where I could use gopher to make internal requests on Zabbix vulnerable to RCE.
CVE-2024-22120CRITICAL14 Aug 2024
Time Based SQL Injection in Zabbix Server Audit Log
70RISK
open
GitHub PoC
Python script designed to detect specific vulnerabilities in ServiceNow instances and dump database connection details if the vulnerability is found. This tool is particularly useful for security researchers and penetration testers.
CVE-2024-4879CRITICALunder attack14 Aug 2024
Jelly Template Injection Vulnerability in ServiceNow UI Macros
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-4879CRITICALunder attack14 Aug 2024
Jelly Template Injection Vulnerability in ServiceNow UI Macros
100RISK
open
VulnCheck XDB
local
CVE-2023-22809HIGH14 Aug 2024
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environmen
68RISK
open
GitHub PoC
JolyIrsb/CVE-2024-4956
CVE-2024-4956HIGH14 Aug 2024
Nexus Repository 3 - Path Traversal
61RISK
open
GitHub PoC
jFriedli/CVE-2023-3897
CVE-2023-3897MEDIUM13 Aug 2024
Bypassing CAPTCHA & Enumerating Usernames via Password Reset Page
33RISK
open
GitHub PoC3
K7 Ultimate Security < v17.0.2019 "K7RKScan.sys" Null Pointer Dereference PoC
CVE-2024-36424MEDIUM13 Aug 2024
K7RKScan.sys in K7 Ultimate Security before 17.0.2019 allows local users to cause a denial of service (BSOD) because of
33RISK
open
GitHub PoC3
This is my exploit for CVE-2024-22120, which involves an SSRF vulnerability inside an XXE with a Gopher payload.
CVE-2024-22120CRITICAL13 Aug 2024
Time Based SQL Injection in Zabbix Server Audit Log
70RISK
open
VulnCheck XDB
initial-access
CVE-2024-34102CRITICALunder attack13 Aug 2024
XXE can expose crypt key and other secrets granting full admin access
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2024-22120CRITICAL13 Aug 2024
Time Based SQL Injection in Zabbix Server Audit Log
70RISK
open
GitHub PoC4
Adobe Commerce XXE exploit
CVE-2024-34102CRITICALunder attack13 Aug 2024
XXE can expose crypt key and other secrets granting full admin access
100RISK
open
VulnCheck XDB
infoleak
CVE-2020-6308MEDIUM12 Aug 2024
SAP BusinessObjects Business Intelligence Platform (Web Services) versions - 410, 420, 430, allows an unauthenticated at
60RISK
open
GitHub PoC
This script is a proof-of-concept exploit for pfBlockerNG <= 2.1.4_26 that allows for remote code execution. It takes a single target URL or a list of URLs, tries to upload a shell using multiple payloads, executes a command, and then deletes the shell.
CVE-2022-31814CRITICAL12 Aug 2024
pfSense pfBlockerNG through 2.1.4_26 allows remote attackers to execute arbitrary OS commands as root via shell metachar
85RISK
open
VulnCheck XDB
initial-access
CVE-2022-31814CRITICAL12 Aug 2024
pfSense pfBlockerNG through 2.1.4_26 allows remote attackers to execute arbitrary OS commands as root via shell metachar
85RISK
open
GitHub PoC
This repository contains detailed documentation and code related to the exploitation, detection, and mitigation of two significant vulnerabilities: CVE-2020-0796 (SMBGhost) and Print Spooler.
CVE-2020-0796CRITICALunder attackransomware12 Aug 2024
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC
CVE-2024-37085 unauthenticated shell upload to full administrator on domain-joined esxi hypervisors.
CVE-2024-37085MEDIUMunder attackransomware12 Aug 2024
VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) per
68RISK
open
GitHub PoC1
Wonder CMS RCE (XSS)
CVE-2023-41425MEDIUM11 Aug 2024
Cross Site Scripting vulnerability in Wonder CMS v.3.2.0 thru v.3.4.2 allows a remote attacker to execute arbitrary code
60RISK
open
VulnCheck XDB
initial-access
CVE-2023-23752MEDIUMunder attack11 Aug 2024
[20230201] - Core - Improper access check in webservice endpoints
100RISK
open
GitHub PoC
CVE-2017-16921: In OTRS 6.0.x up to and including 6.0.1, OTRS 5.0.x up to and including 5.0.24, and OTRS 4.0.x up to and including 4.0.26, an attacker who is logged into OTRS as an agent can manipulate form parameters (related to PGP) and execute arbitrary shell commands with the permissions of the OTRS or web server user.
CVE-2017-1692111 Aug 2024
In OTRS 6.0.x up to and including 6.0.1, OTRS 5.0.x up to and including 5.0.24, and OTRS 4.0.x up to and including 4.0.2
28RISK
open
GitHub PoC
A bash automation that exploits the vulnerable endpoints for the Joomla! API 4.0 - 4.2.7
CVE-2023-23752MEDIUMunder attack11 Aug 2024
[20230201] - Core - Improper access check in webservice endpoints
100RISK
open
GitHub PoC2
Perform With Massive Apache OFBiz Zero-Day Scanner & RCE
CVE-2024-38856HIGHunder attack10 Aug 2024
Apache OFBiz: Unauthenticated endpoint could allow execution of screen rendering code
100RISK
open
GitHub PoC2
A PoC Exploit for CVE-2024-3105 - The Woody code snippets – Insert Header Footer Code, AdSense Ads plugin for WordPress Remote Code Execution (RCE)
CVE-2024-3105CRITICAL10 Aug 2024
Woody code snippets – Insert Header Footer Code, AdSense Ads <= 2.5.0 -Authenticated (Contributor+) Remote Code Execution
48RISK
open
VulnCheck XDB
initial-access
CVE-2024-7954CRITICAL10 Aug 2024
SPIP porte_plume Plugin Arbitrary PHP Execution
85RISK
open
GitHub PoC13
Unauthenticated Remote Code Execution in SPIP versions up to and including 4.2.12
CVE-2024-7954CRITICAL10 Aug 2024
SPIP porte_plume Plugin Arbitrary PHP Execution
85RISK
open
GitHub PoC
lworld0x00/CVE-2024-38077-notes
CVE-2024-38077CRITICAL10 Aug 2024
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
70RISK
open
previouspage 360 / 2,553next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.