Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,151cataloged exploits
35,370CVEs with public exploitation
24,695lab-tested
24,451 exploits
Exploit-DBVexDay Proof
RM Downloader - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1325doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream Ripper 3.0.1.1 allows remote attackers to execute arbitrary code via a long U
23RISK
open
Exploit-DBVexDay Proof
ASX to MP3 Converter - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1330doswindows13 Apr 2009
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RISK
open
Exploit-DBVexDay Proof
Mini-stream Ripper - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1326doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream RM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a
23RISK
open
Exploit-DBVexDay Proof
WM Downloader - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1325doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream Ripper 3.0.1.1 allows remote attackers to execute arbitrary code via a long U
23RISK
open
Exploit-DBVexDay Proof
Mini-stream Ripper - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1324doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream ASX to MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary cod
28RISK
open
Exploit-DBVexDay Proof
Mini-stream RM-MP3 Converter 3.0.0.7 - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1330doswindows13 Apr 2009
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RISK
open
Exploit-DBVexDay Proof
Mini-stream RM-MP3 Converter 3.0.0.7 - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1327doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream WM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a
23RISK
open
Exploit-DBVexDay Proof
Mini-stream RM-MP3 Converter 3.0.0.7 - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1325doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream Ripper 3.0.1.1 allows remote attackers to execute arbitrary code via a long U
23RISK
open
Exploit-DBVexDay Proof
RM Downloader - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1327doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream WM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a
23RISK
open
Exploit-DBVexDay Proof
Mini-stream Ripper - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1330doswindows13 Apr 2009
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RISK
open
Exploit-DBVexDay Proof
Mini-stream RM-MP3 Converter 3.0.0.7 - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1329doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream Shadow Stream Recorder 3.0.1.7 allows remote attackers to execute arbitrary c
23RISK
open
Exploit-DBVexDay Proof
RM Downloader - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1324doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream ASX to MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary cod
28RISK
open
Exploit-DBVexDay Proof
Mini-stream Ripper - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1328doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream RM-MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary code vi
23RISK
open
Exploit-DBVexDay Proof
ASX to MP3 Converter - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1328doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream RM-MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary code vi
23RISK
open
Exploit-DBVexDay Proof
WM Downloader - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1330doswindows13 Apr 2009
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RISK
open
Exploit-DBVexDay Proof
Mini-stream RM-MP3 Converter 3.0.0.7 - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1326doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream RM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a
23RISK
open
Exploit-DBVexDay Proof
WM Downloader - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1326doswindows13 Apr 2009
Stack-based buffer overflow in Mini-stream RM Downloader 3.0.0.9 allows remote attackers to execute arbitrary code via a
23RISK
open
Exploit-DBVexDay Proof
RM Downloader - '.m3u' Local Stack Overflow (PoC)
CVE-2009-1330doswindows13 Apr 2009
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer 8 - File Download Denial of Service
CVE-2009-1335doswindows11 Apr 2009
Microsoft Internet Explorer 7 and 8 on Windows XP and Vista allows remote attackers to cause a denial of service (applic
28RISK
open
Exploit-DBVexDay Proof
moziloCMS 1.11 - Local File Inclusion / Full Path Disclosure / Cross-Site Scripting
CVE-2009-4209webappsphp10 Apr 2009
Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in moziloCMS 1.11.1 allow remote attackers to inj
23RISK
open
Exploit-DBVexDay Proof
moziloCMS 1.11 - Local File Inclusion / Full Path Disclosure / Cross-Site Scripting
CVE-2008-6126webappsphp10 Apr 2009
Multiple directory traversal vulnerabilities in moziloCMS 1.10.2 and earlier allow remote attackers to read arbitrary fi
23RISK
open
Exploit-DBVexDay Proof
w3bcms Gaestebuch 3.0.0 - Blind SQL Injection
CVE-2009-2337webappsphp10 Apr 2009
SQL injection vulnerability in includes/module/book/index.inc.php in w3b|cms Gaestebuch Guestbook Module 3.0.0, when mag
23RISK
open
Exploit-DBVexDay Proof
IBM Bladecenter Advanced Management Module 1.42 - Cross-Site Request Forgery
CVE-2009-1290webappsmultiple09 Apr 2009
Multiple cross-site request forgery (CSRF) vulnerabilities in the web administration interface in the Advanced Managemen
23RISK
open
Exploit-DBVexDay Proof
IBM Bladecenter Advanced Management Module 1.42 - Login 'Username' Cross-Site Scripting
CVE-2009-1288webappsmultiple09 Apr 2009
Multiple cross-site scripting (XSS) vulnerabilities in the Advanced Management Module (AMM) on the IBM BladeCenter, incl
23RISK
open
Exploit-DBVexDay Proof
Cisco Subscriber Edge Services Manager - Cross-Site Scripting / HTML Injection
CVE-2009-1287webappsjava09 Apr 2009
Cross-site scripting (XSS) vulnerability in Cisco Subscriber Edge Services Manager (SESM) allows remote attackers to inj
28RISK
open
Exploit-DBVexDay Proof
IBM Bladecenter Advanced Management Module 1.42 - '/private/file_Management.ssi?PATH' Cross-Site Scripting
CVE-2009-1288webappsmultiple09 Apr 2009
Multiple cross-site scripting (XSS) vulnerabilities in the Advanced Management Module (AMM) on the IBM BladeCenter, incl
23RISK
open
Exploit-DBVexDay Proof
Linux Kernel < 2.6.29 - 'exit_notify()' Local Privilege Escalation
CVE-2009-1337locallinux08 Apr 2009
The exit_notify function in kernel/exit.c in the Linux kernel before 2.6.30-rc1 does not restrict exit signals when the
23RISK
open
Exploit-DBVexDay Proof
FlexCMS Calendar - 'itemID' Blind SQL Injection
CVE-2009-0534webappsphp06 Apr 2009
SQL injection vulnerability in FlexCMS allows remote attackers to execute arbitrary SQL commands via the catId parameter
23RISK
open
Exploit-DBVexDay Proof
Gravity Board X 2.0 Beta - SQL Injection / (Authenticated) Code Execution
CVE-2008-2996webappsphp03 Apr 2009
Multiple SQL injection vulnerabilities in index.php in Gravity Board X (GBX) 2.0 Beta, when magic_quotes_gpc is disabled
23RISK
open
Exploit-DBVexDay Proof
glFusion 1.1.2 - 'COM_applyFilter()/cookies' Blind SQL Injection
CVE-2009-1281webappsphp03 Apr 2009
Cross-site scripting (XSS) vulnerability in glFusion before 1.1.3 allows remote attackers to inject arbitrary web script
23RISK
open
previouspage 452 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.