Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,401cataloged exploits
35,511CVEs with public exploitation
24,695lab-tested
24,451 exploits
Exploit-DBVexDay Proof
Advanced Guestbook 2.4.2 - 'picture.php' Cross-Site Scripting
CVE-2007-0605webappsphp08 May 2007
Cross-site scripting (XSS) vulnerability in picture.php in Advanced Guestbook 2.4.2 allows remote attackers to inject ar
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - '/implementation/Management/configuration.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Taltech Tal Bar Code - ActiveX Control Buffer Overflow
CVE-2007-2566remotewindows08 May 2007
The SaveBarCode function in the Taltech Tal Bar Code ActiveX control allows remote attackers to cause a denial of servic
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'Alias.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'Country.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'article.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'DatabaseObject.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
IncrediMail IMMenuShellExt - ActiveX Control Buffer Overflow
CVE-2007-1683remotewindows08 May 2007
Stack-based buffer overflow in the DoWebMenuAction function in the IncrediMail IMMenuShellExt ActiveX control (ImShExt.d
35RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'ArticleTopic.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'ArticleTypeField.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'ArticleData.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
SmartCode VNC Manager 3.6 - 'scvncctrl.dll' Denial of Service
CVE-2007-2526doswindows08 May 2007
Heap-based buffer overflow in the ConnectAsyncEx function in VNC Viewer ActiveX control (scvncctrl.dll) in the SmartCode
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - '/implementation/Management/db_connect.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'ArticleType.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'TimeUnit.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
HP Tru64 5.0.1 - DOP Command Privilege Escalation
CVE-2007-2553localunix08 May 2007
Unspecified vulnerability in dop in HP Tru64 UNIX 5.1B-4, 5.1B-3, and 5.1A PK6 allows local users to gain privileges via
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'template.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Python 2.5 - 'PyLocale_strxfrm' Remote Information Leak
CVE-2007-2052remotelinux08 May 2007
Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and 2.5 causes an incorrect
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5.0.1 - 'TBLinf32.dll' ActiveX Control Remote Code Execution
CVE-2007-2216remotewindows08 May 2007
The tblinf32.dll (aka vstlbinf.dll) ActiveX control for Internet Explorer 5.01, 6 SP1, and 7 uses an incorrect IObjectsa
35RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'ArticleImage.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'ArticleIndex.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'ArticlePublish.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'Event.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'image.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'IPAccess.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'issue.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'IssuePublish.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'Language.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'UserType.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
Exploit-DBVexDay Proof
Campsite 2.6.1 - 'LocalizerConfig.php?g_documentRoot' Remote File Inclusion
CVE-2006-5911webappsphp08 May 2007
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISK
open
previouspage 531 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.