Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,542cataloged exploits
34,971CVEs with public exploitation
24,695lab-tested
13,947 exploits
GitHub PoC2
coldfusion exploit based on https://cvedetails.com/cve/CVE-2009-2265/
CVE-2009-226502 Oct 2020
Multiple directory traversal vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to create executable fil
60RISK
open
GitHub PoC
Ken-Abruzzi/CVE-2020-0674
CVE-2020-0674HIGHunder attack30 Sep 2020
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet
93RISK
open
GitHub PoC2
Protect your domain controllers against Zerologon (CVE-2020-1472).
CVE-2020-1472MEDIUMunder attackransomware30 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC5
CVE-2019-18935
CVE-2019-18935CRITICALunder attackransomware30 Sep 2020
Progress Telerik UI for ASP.NET AJAX through 2019.3.1023 contains a .NET deserialization vulnerability in the RadAsyncUp
100RISK
open
GitHub PoC
Ken-Abruzzi/cve-2020-1472
CVE-2020-1472MEDIUMunder attackransomware30 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC11
POC for checking multiple hosts for Zerologon vulnerability
CVE-2020-1472MEDIUMunder attackransomware29 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC22
Zerologon AutoExploit Tool | CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware29 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware28 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
Fa1c0n35/CVE-2020-1472-02-
CVE-2020-1472MEDIUMunder attackransomware28 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC24
Just basic scanner abusing CVE-2020-3452 to enumerate the standard files accessible in the Web Directory of the CISCO ASA applicances.
CVE-2020-3452HIGHunder attack28 Sep 2020
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability
100RISK
open
GitHub PoC3
To crash Windows-10 easily
CVE-2020-0796CRITICALunder attackransomware28 Sep 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC5
striveben/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware26 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC42
PoCs and technical analysis of three vulnerabilities found on Cisco AnyConnect for Windows: CVE-2020-3433, CVE-2020-3434 and CVE-2020-3435
CVE-2020-3433HIGHunder attackransomware25 Sep 2020
Cisco AnyConnect Secure Mobility Client for Windows DLL Hijacking Vulnerability
91RISK
open
GitHub PoC
CVE 2020-1472 Script de validación
CVE-2020-1472MEDIUMunder attackransomware24 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
This repository holds the advisory, exploits and vulnerable software of the CVE-2020-15492
CVE-2020-1549224 Sep 2020
An issue was discovered in INNEO Startup TOOLS 2017 M021 12.0.66.3784 through 2018 M040 13.0.70.3804. The sut_srv.exe we
28RISK
open
GitHub PoC1
PHPGurukul hostel-management-system 2.1 allows XSS via Guardian Name, Guardian Relation, Guardian Contact no, Address, City
CVE-2020-2527023 Sep 2020
PHPGurukul hostel-management-system 2.1 allows XSS via Guardian Name, Guardian Relation, Guardian Contact no, Address, o
23RISK
open
GitHub PoC
t31m0/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware21 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
johnpathe/zerologon-cve-2020-1472-notes
CVE-2020-1472MEDIUMunder attackransomware20 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
hectorgie/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
A simple implementation/code smash of a bunch of other repos
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
Scripts to verify and execute CVE-2019-14287 as part of Research
CVE-2019-1428718 Sep 2020
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and se
35RISK
open
GitHub PoC10
CVE-2020-1472复现时使用的py文件整理打包
CVE-2020-1472MEDIUMunder attackransomware18 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC61
Test script for CVE-2020-1472 for both RPC/TCP and RPC/SMB
CVE-2020-1472MEDIUMunder attackransomware17 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC115
PoC exploits for CVE-2020-17382
CVE-2020-1738217 Sep 2020
The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054).
23RISK
open
GitHub PoC1
pwn3z/CVE-2018-13379-FortinetVPN
CVE-2018-13379CRITICALunder attackransomware17 Sep 2020
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.
100RISK
open
GitHub PoC1
pwn3z/CVE-2019-11510-PulseVPN
CVE-2019-11510CRITICALunder attackransomware17 Sep 2020
In Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4, an unauthent
100RISK
open
GitHub PoC70
rsmudge/CVE-2020-0796-BOF
CVE-2020-0796CRITICALunder attackransomware17 Sep 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC2
cve-2020-1472_Tool collection
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
Zabbix Template to monitor for Windows Event Viewer event's related to Netlogon Elevation of Privilege Vulnerability - CVE-2020-1472. Monitors event ID's 5827, 5828 & 5829. See: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
Fa1c0n35/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware16 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
previouspage 388 / 465next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.