Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,559cataloged exploits
34,978CVEs with public exploitation
24,695lab-tested
24,443 exploits
Exploit-DBVexDay Proof
RealNetworks RealPlayer - '.SMIL' Remote Buffer Overflow (Metasploit)
CVE-2005-0455remotewindows09 May 2010
Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlaye
50RISK
open
Exploit-DBVexDay Proof
FutureSoft TFTP Server 2000 - Transfer-Mode Overflow (Metasploit)
CVE-2005-1812remotewindows09 May 2010
Multiple stack-based buffer overflows in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allow remote attackers to exe
50RISK
open
Exploit-DBVexDay Proof
eFront 3.x - 'ask_chat.php' SQL Injection
CVE-2010-1918webappsphp09 May 2010
SQL injection vulnerability in ask_chat.php in eFront 3.6.2 and earlier allows remote attackers to execute arbitrary SQL
23RISK
open
Exploit-DBVexDay Proof
Oracle Secure Backup - NDMP_CONNECT_CLIENT_AUTH Buffer Overflow (Metasploit)
CVE-2008-5444remotewindows09 May 2010
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
50RISK
open
Exploit-DBVexDay Proof
Norton AntiSpam 2004 - SymSpamHelper ActiveX Control Buffer Overflow (Metasploit)
CVE-2004-0363remotewindows09 May 2010
Stack-based buffer overflow in the SymSpamHelper ActiveX component (symspam.dll) in Norton AntiSpam 2004, as used in Nor
50RISK
open
Exploit-DBVexDay Proof
Microsoft Message Queueing Service - Path Overflow (MS05-017) (Metasploit)
CVE-2005-0059remotewindows09 May 2010
Buffer overflow in the Message Queuing component of Microsoft Windows 2000 and Windows XP SP1 allows remote attackers to
60RISK
open
Exploit-DBVexDay Proof
Novell NetMail 3.52d - IMAP APPEND Buffer Overflow (Metasploit)
CVE-2006-6425remotewindows09 May 2010
Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated u
50RISK
open
Exploit-DBVexDay Proof
EMC AlphaStor Agent - Remote Buffer Overflow (Metasploit)
CVE-2008-2158remotewindows09 May 2010
Multiple stack-based buffer overflows in the Command Line Interface process in the Server Agent in EMC AlphaStor 3.1 SP1
50RISK
open
Exploit-DBVexDay Proof
RKD Software BarCode ActiveX Control 'BarCodeAx.dll' 4.9 - Remote Stack Buffer Overflow (Metasploit)
CVE-2007-3435remotewindows09 May 2010
Stack-based buffer overflow in the BeginPrint method in a certain ActiveX control in RKD Software (barcodetools.com) Bar
50RISK
open
Exploit-DBVexDay Proof
Apple iTunes 4.7 - Playlist Buffer Overflow (Metasploit)
CVE-2005-0043localwindows09 May 2010
Buffer overflow in Apple iTunes 4.7 allows remote attackers to execute arbitrary code via a long URL in (1) .m3u or (2)
50RISK
open
Exploit-DBVexDay Proof
Novell eDirectory NDS Server - Host Header Overflow (Metasploit)
CVE-2006-5478remotewindows09 May 2010
Multiple stack-based buffer overflows in Novell eDirectory 8.8.x before 8.8.1 FTF1, and 8.x up to 8.7.3.8, and Novell Ne
60RISK
open
Exploit-DBVexDay Proof
Macrovision Installshield Update Service - Remote Buffer Overflow (Metasploit)
CVE-2007-5660remotewindows09 May 2010
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXn
50RISK
open
Exploit-DBVexDay Proof
Symantec BackupExec Calendar Control - Remote Buffer Overflow (Metasploit)
CVE-2007-6016remotewindows09 May 2010
Multiple stack-based buffer overflows in the PVATLCalendar.PVCalendar.1 ActiveX control in pvcalendar.ocx in the schedul
50RISK
open
Exploit-DBVexDay Proof
YahooPOPs (YPOPS) 0.6 - Remote Buffer Overflow (Metasploit)
CVE-2004-1558remotewindows09 May 2010
Multiple stack-based buffer overflows in YPOPs! (aka YahooPOPS) 0.4 through 0.6 allow remote attackers to cause a denial
60RISK
open
Exploit-DBVexDay Proof
mIRC - IRC URL Buffer Overflow (Metasploit)
CVE-2003-1336remotewindows09 May 2010
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.
50RISK
open
Exploit-DBVexDay Proof
Novell NetMail 3.52d - IMAP Subscribe Buffer Overflow (Metasploit)
CVE-2006-6761remotewindows09 May 2010
Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated u
50RISK
open
Exploit-DBVexDay Proof
Creative Software AutoUpdate Engine - ActiveX Control Buffer Overflow (Metasploit)
CVE-2008-0955remotewindows09 May 2010
Stack-based buffer overflow in the Creative Software AutoUpdate Engine ActiveX control in CTSUEng.ocx allows remote atta
50RISK
open
Exploit-DBVexDay Proof
iseemedia / Roxio / MGI Software LPViewer - ActiveX Control Buffer Overflow (Metasploit)
CVE-2008-4384remotewindows09 May 2010
Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and
43RISK
open
Exploit-DBVexDay Proof
Symantec Altiris Deployment Solution - ActiveX Control Buffer Overflow (Metasploit)
CVE-2009-3033remotewindows09 May 2010
Buffer overflow in the RunCmd method in the Altiris eXpress NS Console Utilities ActiveX control in AeXNSConsoleUtilitie
50RISK
open
Exploit-DBVexDay Proof
CA BrightStor Discovery Service - Remote Stack Buffer Overflow (Metasploit)
CVE-2005-0260remotewindows09 May 2010
Stack-based buffer overflow in the Discovery Service for BrightStor ARCserve Backup 11.1 and earlier allows remote attac
50RISK
open
Exploit-DBVexDay Proof
Orbit Downloader - Connecting Log Creation Buffer Overflow (Metasploit)
CVE-2009-0187remotewindows09 May 2010
Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote
50RISK
open
Exploit-DBVexDay Proof
SoftiaCom wMailServer 1.0 - Remote Buffer Overflow (Metasploit)
CVE-2005-2287remotewindows09 May 2010
SoftiaCom wMailServer 1.0 and 2.0 allows remote attackers to cause a denial of service (application crash) via a large T
50RISK
open
Exploit-DBVexDay Proof
RealPlayer - 'ierpplug.dll' ActiveX Control Playlist Name Buffer Overflow (Metasploit)
CVE-2007-5601remotewindows09 May 2010
Stack-based buffer overflow in the Database Component in MPAMedia.dll in RealNetworks RealPlayer 10.5 and 11 beta, and e
50RISK
open
Exploit-DBVexDay Proof
SAP AG SAPgui EAI WebViewer3D - Remote Buffer Overflow (Metasploit)
CVE-2007-4475remotewindows09 May 2010
Stack-based buffer overflow in EAI WebViewer3D ActiveX control (webviewer3d.dll) in SAP AG SAPgui before 7.10 Patch Leve
50RISK
open
Exploit-DBVexDay Proof
Microsoft RRAS Service - Remote Overflow (MS06-025) (Metasploit)
CVE-2006-2370remotewindows09 May 2010
Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Serve
60RISK
open
Exploit-DBVexDay Proof
Novell NetWare - LSASS CIFS.NLM Driver Stack Buffer Overflow (Metasploit)
CVE-2005-2852remotenetware09 May 2010
Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a den
50RISK
open
Exploit-DBVexDay Proof
BigAnt Server 2.2 - Remote Buffer Overflow (Metasploit)
CVE-2008-1914remotewindows09 May 2010
Stack-based buffer overflow in the AntServer module (AntServer.exe) in BigAnt IM Server in BigAnt Messenger 2.2 allows r
60RISK
open
Exploit-DBVexDay Proof
MiniShare 1.4.1 - Remote Buffer Overflow (Metasploit)
CVE-2004-2271remotewindows09 May 2010
Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET req
60RISK
open
Exploit-DBVexDay Proof
freeSSHd 1.0.9 - Key Exchange Algorithm String Buffer Overflow (Metasploit)
CVE-2006-2407remotewindows09 May 2010
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other produc
60RISK
open
Exploit-DBVexDay Proof
IBM Lotus Domino Sametime - 'STMux.exe' Remote Stack Buffer Overflow (Metasploit)
CVE-2008-2499remotewindows09 May 2010
Stack-based buffer overflow in the Community Services Multiplexer (aka MUX or StMux.exe) in IBM Lotus Sametime 7.5.1 CF1
60RISK
open
previouspage 378 / 815next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.