Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
77,286cataloged exploits
35,467CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,451Referência 22,301GitHub PoC 14,136VulnCheck XDB 8,635Nuclei 4,289Metasploit 3,474✓ verified onlyrecentpopularrisk
77,231 exploits
VulnCheck XDB
client-side
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISK
open ↗GitHub PoC
RomainBayle08/CVE-2023-38831
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISK
open ↗VulnCheck XDB
local
A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities wa
86RISK
open ↗GitHub PoC★ 6
An Ansible Role that installs the xz backdoor (CVE-2024-3094) on a Debian host and optionally installs the xzbot tool.
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC
churamanib/CVE-2023-0386
A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities wa
86RISK
open ↗VulnCheck XDB
initial-access
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISK
open ↗VulnCheck XDB
local
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open ↗GitHub PoC
DirtyCOW 笔记
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open ↗GitHub PoC
Scans liblzma from xu-utils for backdoor (CVE-2024-3094)
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 3
A tutorial on how to detect the CVE 2024-3094
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 4
Ansible playbooks designed to check and remediate CVE-2024-3094 (XZ Backdoor)
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 1
A small repo with a single playbook.
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 2
Verify if your installed version of xz-utils is vulnerable to CVE-2024-3094 backdoor
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC
The repository consists of a checker file that confirms if your xz version and xz-utils package is vulnerable to CVE-2024-3094.
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 1
The CVE-2024-3094 Checker is a Bash tool for identifying if Linux systems are at risk from the CVE-2024-3094 flaw in XZ/LZMA utilities. It checks XZ versions, SSHD's LZMA linkage, and scans for specific byte patterns, delivering results in a concise table format.
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC
This is a container environment running CVE-2024-3094 sshd backdoor instance, working with https://github.com/amlweems/xzbot project. IT IS NOT Docker, just implemented by chroot.
Xz: malicious code in distributed source
70RISK
open ↗VulnCheck XDB
initial-access
An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the
56RISK
open ↗GitHub PoC★ 2
Collection of Detection, Fix, and exploit for CVE-2024-3094
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 3
Alicey0719/docker-POC_CVE-2024-1086
Use-after-free in Linux kernel's netfilter: nf_tables component
76RISK
open ↗GitHub PoC
LAB: TẤN CÔNG HỆ ĐIỀU HÀNH WINDOWS DỰA VÀO LỖ HỔNG GIAO THỨC SMB.
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows
100RISK
open ↗Exploit-DB
Axigen < 10.5.7 - Persistent Cross-Site Scripting
Cross Site Scripting vulnerability in Axigen WebMail prior to 10.3.3.61 allows a remote attacker to escalate privileges
48RISK
open ↗GitHub PoC★ 1
This Repository Includes Kubernetes manifest files for configuration of Honeypot system and Falco IDS in K8s environment. There are also Demo Application written with Node.js which is containing Remote Code Execution Vulnerability (CVE-2023-32314) for demonstrating all addvantages of this architecture to manage Honeypot systems
Sandbox Escape
48RISK
open ↗GitHub PoC
Em fevereiro de 2024, foi identificado duas novas vulnerabilidades que afetam o servidor JetBrains TeamCity (CVE-2024-27198 e CVE-2024-27199)
In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
100RISK
open ↗GitHub PoC
YangHyperData/LOGJ4_PocShell_CVE-2021-44228
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open ↗Exploit-DB
Casdoor < v1.331.0 - '/api/set-password' CSRF
Casdoor v1.331.0 and below was discovered to contain a Cross-Site Request Forgery (CSRF) in the endpoint /api/set-passwo
23RISK
open ↗Exploit-DB
Microsoft Windows 10.0.17763.5458 - Kernel Privilege Escalation
Windows Kernel Elevation of Privilege Vulnerability
83RISK
open ↗VulnCheck XDB
initial-access
Improper limitation of a pathname to a restricted directory (“path traversal”)
100RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.