Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,302cataloged exploits
35,469CVEs with public exploitation
24,695lab-tested
24,451 exploits
Exploit-DBVexDay Proof
BlueCat Networks Adonis 5.0.2.8 - CLI Privilege Escalation
CVE-2007-4390locallinux16 Aug 2007
The Command Line Interface (CLI), aka Adonis Administration Console, on the BlueCat Networks Adonis DNS/DHCP appliance 5
23RISK
open
Exploit-DBVexDay Proof
Sun Java Runtime Environment 1.4.2 - Font Parsing Privilege Escalation
CVE-2007-4381remotejava15 Aug 2007
Unspecified vulnerability in the font parsing implementation in Sun JDK and JRE 5.0 Update 9 and earlier, and SDK and JR
23RISK
open
Exploit-DBVexDay Proof
Yahoo! Messenger 8.1 - 'KDU_V32M.DLL' Remote Denial of Service
CVE-2007-4391doswindows15 Aug 2007
Heap-based buffer overflow in Kakadu kdu_v32m.dll in Yahoo! Messenger 8.1.0.413 allows remote attackers to cause a denia
23RISK
open
Exploit-DBVexDay Proof
Microsoft XML Core Services 6.0 - SubstringData Integer Overflow
CVE-2007-2223remotewindows14 Aug 2007
Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringD
35RISK
open
Exploit-DBVexDay Proof
Apache Tomcat 6.0.13 - Host Manager Servlet Cross-Site Scripting
CVE-2007-3386remotemultiple14 Aug 2007
Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.
35RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5.0.1 - Vector Markup Language 'VGX.dll' Remote Buffer Overflow
CVE-2007-1749doswindows14 Aug 2007
Integer underflow in the CDownloadSink class code in the Vector Markup Language (VML) component (VGX.DLL), as used in In
35RISK
open
Exploit-DBVexDay Proof
Apache Tomcat 6.0.13 - Insecure Cookie Handling Quote Delimiter Session ID Disclosure
CVE-2007-3382remotemultiple14 Aug 2007
Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 treats single quotes
35RISK
open
Exploit-DBVexDay Proof
Zoidcom 0.6.x - Malformed Packet Denial of Service
CVE-2007-4358dosmultiple14 Aug 2007
Zoidcom 0.6.7 and earlier allows remote attackers to cause a denial of service (application crash) via a JOIN packet (ak
23RISK
open
Exploit-DBVexDay Proof
WordPress Core 1.0.7 - 'Pool index.php' Cross-Site Scripting
CVE-2007-4482webappsphp13 Aug 2007
Cross-site scripting (XSS) vulnerability in index.php in the Pool 1.0.7 theme for WordPress allows remote attackers to i
23RISK
open
Exploit-DBVexDay Proof
OWASP Stinger - Filter Bypass
CVE-2007-4385remotemultiple13 Aug 2007
OWASP Stinger before 2.5 allows remote attackers to bypass input validation routines by using multipart encoded requests
23RISK
open
Exploit-DBVexDay Proof
Savant Web Server 3.1 - GET Universal Remote Overflow
CVE-2002-1120remotewindows12 Aug 2007
Buffer overflow in Savant Web Server 3.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP G
50RISK
open
Exploit-DBVexDay Proof
Lib2 PHP Library 0.2 - 'My_Statistics.php' Remote File Inclusion
CVE-2007-4341webappsphp11 Aug 2007
PHP remote file inclusion vulnerability in adm/my_statistics.php in Omnistar Lib2 PHP 0.2 allows remote attackers to exe
23RISK
open
Exploit-DBVexDay Proof
Haudenschilt Family Connections 0.8 - 'index.php' Authentication Bypass
CVE-2007-4338webappsphp11 Aug 2007
index.php in Ryan Haudenschilt Family Connections (FCMS) before 0.9 allows remote attackers to access an arbitrary accou
23RISK
open
Exploit-DBVexDay Proof
PHP-Stats 0.1.9.2 - 'WhoIs.php' Cross-Site Scripting
CVE-2007-4334webappsphp11 Aug 2007
Cross-site scripting (XSS) vulnerability in whois.php in Php-stats 0.1.9.2 allows remote attackers to inject arbitrary w
23RISK
open
Exploit-DBVexDay Proof
ZYXEL ZyWALL 2 3.62 - '/Forms/General_1?sysSystemName' Cross-Site Scripting
CVE-2007-4318remotehardware10 Aug 2007
Cross-site scripting (XSS) vulnerability in Forms/General_1 in the management interface in ZyNOS firmware 3.62(WK.6) on
23RISK
open
Exploit-DBVexDay Proof
File Uploader 1.1 - 'datei.php?config[root_ordner]' Remote File Inclusion
CVE-2007-4327webappsphp09 Aug 2007
Multiple PHP remote file inclusion vulnerabilities in File Uploader 1.1 allow remote attackers to execute arbitrary PHP
23RISK
open
Exploit-DBVexDay Proof
File Uploader 1.1 - 'index.php?config[root_ordner]' Remote File Inclusion
CVE-2007-4327webappsphp09 Aug 2007
Multiple PHP remote file inclusion vulnerabilities in File Uploader 1.1 allow remote attackers to execute arbitrary PHP
23RISK
open
Exploit-DBVexDay Proof
Mapos-Scripts.de Gastebuch 1.5 - 'index.php' Remote File Inclusion
CVE-2007-4325webappsphp09 Aug 2007
PHP remote file inclusion vulnerability in index.php in Gaestebuch 1.5 allows remote attackers to execute arbitrary PHP
23RISK
open
Exploit-DBVexDay Proof
Web News 1.1 - 'index.php?config[root_ordner]' Remote File Inclusion
CVE-2007-4329webappsphp09 Aug 2007
Multiple PHP remote file inclusion vulnerabilities in Web News 1.1 allow remote attackers to execute arbitrary PHP code
23RISK
open
Exploit-DBVexDay Proof
Web News 1.1 - 'feed.php?config[root_ordner]' Remote File Inclusion
CVE-2007-4329webappsphp09 Aug 2007
Multiple PHP remote file inclusion vulnerabilities in Web News 1.1 allow remote attackers to execute arbitrary PHP code
23RISK
open
Exploit-DBVexDay Proof
Bilder Galerie 1.0 - 'index.php' Remote File Inclusion
CVE-2007-4328webappsphp09 Aug 2007
Multiple PHP remote file inclusion vulnerabilities in Mapos Bilder Galerie 1.0 allow remote attackers to execute arbitra
23RISK
open
Exploit-DBVexDay Proof
Generic Software Wrappers Toolkit 1.6.3 (GSWTK) - Race Condition Privilege Escalation
CVE-2007-4302locallinux09 Aug 2007
Multiple race conditions in certain system call wrappers in Generic Software Wrappers Toolkit (GSWTK) allow local users
23RISK
open
Exploit-DBVexDay Proof
Systrace - Multiple System Call Wrappers Concurrency Vulnerabilities
CVE-2007-4305localbsd09 Aug 2007
Multiple race conditions in the (1) Sudo monitor mode and (2) Sysjail policies in Systrace on NetBSD and OpenBSD allow l
23RISK
open
Exploit-DBVexDay Proof
Web News 1.1 - 'news.php?config[root_ordner]' Remote File Inclusion
CVE-2007-4329webappsphp09 Aug 2007
Multiple PHP remote file inclusion vulnerabilities in Web News 1.1 allow remote attackers to execute arbitrary PHP code
23RISK
open
Exploit-DBVexDay Proof
Shoutbox 1.0 - 'Shoutbox.php' Remote File Inclusion
CVE-2007-4330webappsphp09 Aug 2007
PHP remote file inclusion vulnerability in shoutbox.php in Shoutbox 1.0 allows remote attackers to execute arbitrary PHP
23RISK
open
Exploit-DBVexDay Proof
Cisco IOS Next Hop Resolution Protocol (NHRP) - Denial of Service
CVE-2007-4286doswindows09 Aug 2007
Buffer overflow in the Next Hop Resolution Protocol (NHRP) functionality in Cisco IOS 12.0 through 12.4 allows remote at
28RISK
open
Exploit-DBVexDay Proof
PHP 5.2.3 - 'snmpget()' object id Local Buffer Overflow (EDI)
CVE-2007-1413localwindows09 Aug 2007
Buffer overflow in the snmpget function in the snmp extension in PHP 5.2.3 and earlier, including PHP 4.4.6 and probably
28RISK
open
Exploit-DBVexDay Proof
Coppermine Photo Gallery 1.3/1.4 - 'YABBSE.INC.php' Remote File Inclusion
CVE-2007-4283webappsphp08 Aug 2007
PHP remote file inclusion vulnerability in bridge/yabbse.inc.php in Coppermine Photo Gallery (CPG) 1.3.1 allows remote a
23RISK
open
Exploit-DBVexDay Proof
PHP mSQL (msql_connect) - Local Buffer Overflow
CVE-2007-4255localwindows08 Aug 2007
Buffer overflow in the mSQL extension in PHP 5.2.3 allows context-dependent attackers to execute arbitrary code via a lo
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Media Player 11 - AU Divide-by-Zero Denial of Service
CVE-2007-4288doswindows08 Aug 2007
Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (app
28RISK
open
previouspage 518 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.