Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,900cataloged exploits
35,840CVEs with public exploitation
24,695lab-tested
77,900 exploits
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack20 Mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
GitHub PoC9
Apache APISIX < 2.12.1 Remote Code Execution and Docker Lab
CVE-2022-24112CRITICALunder attack20 Mar 2022
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISK
open
GitHub PoC
TheJoyOfHacking/saleemrashid-sudo-cve-2019-18634
CVE-2019-1863420 Mar 2022
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the
28RISK
open
VulnCheck XDB
initial-access
CVE-2017-9841CRITICALunder attack20 Mar 2022
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers to execute arbitrary PHP c
100RISK
open
GitHub PoC12
CVE-2022-24990 TerraMaster TOS unauthenticated RCE via PHP Object Instantiation
CVE-2022-24990CRITICALunder attackransomware20 Mar 2022
TerraMaster NAS 4.2.29 and earlier allows remote attackers to discover the administrative password by sending "User-Agen
100RISK
open
VulnCheck XDB
initial-access
CVE-2022-24990CRITICALunder attackransomware20 Mar 2022
TerraMaster NAS 4.2.29 and earlier allows remote attackers to discover the administrative password by sending "User-Agen
100RISK
open
GitHub PoC38
CVE-2022-24990信息泄露+RCE 一条龙
CVE-2022-24990CRITICALunder attackransomware20 Mar 2022
TerraMaster NAS 4.2.29 and earlier allows remote attackers to discover the administrative password by sending "User-Agen
100RISK
open
GitHub PoC
PoC for Dirty COW (CVE-2016-5195)
CVE-2016-5195HIGHunder attack19 Mar 2022
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open
GitHub PoC1
CVE-2021-3156
CVE-2021-3156HIGHunder attack18 Mar 2022
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
GitHub PoC18
CVE-2022-22947 memshell
CVE-2022-22947CRITICALunder attack18 Mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISK
open
GitHub PoC10
Hacked up Dirty Pipe (CVE-2022-0847) PoC that hijacks a SUID binary to spawn a root shell. (and attempts to restore the damaged binary as well)
CVE-2022-0847HIGHunder attack18 Mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
GitHub PoC
Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.
CVE-2016-182818 Mar 2022
The kernel in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers
28RISK
open
VulnCheck XDB
initial-access
CVE-2017-11882HIGHunder attackransomware18 Mar 2022
Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Mi
100RISK
open
VulnCheck XDB
local
CVE-2021-3156HIGHunder attack18 Mar 2022
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
GitHub PoC1
tzwlhack/CVE-2017-11882
CVE-2017-11882HIGHunder attackransomware18 Mar 2022
Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Mi
100RISK
open
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack18 Mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
Metasploit600
Open Web Analytics 1.7.3 - Remote Code Execution (RCE)
CVE-2022-2463718 Mar 2022
Open Web Analytics (OWA) before 1.7.4 allows an unauthenticated remote attacker to obtain sensitive user information, wh
60RISK
open
Metasploit600
User Profile Arbitrary Junction Creation Local Privilege Elevation
CVE-2022-26904HIGHunder attack17 Mar 2022
Windows User Profile Service Elevation of Privilege Vulnerability
66RISK
open
VulnCheck XDB
initial-access
CVE-2019-7609CRITICALunder attack17 Mar 2022
Kibana versions before 5.6.15 and 6.6.1 contain an arbitrary code execution flaw in the Timelion visualizer. An attacker
100RISK
open
GitHub PoC1
node-ipc is malware / protestware!
CVE-2022-23812CRITICAL17 Mar 2022
Malicious Package
48RISK
open
GitHub PoC11
CVE-2022-22947_POC_EXP
CVE-2022-22947CRITICALunder attack17 Mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISK
open
GitHub PoC2
Apache APISIX 2.12.1 Remote Code Execution by IP restriction bypass and using default admin AIP token
CVE-2022-24112CRITICALunder attack17 Mar 2022
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISK
open
VulnCheck XDB
initial-access
CVE-2022-22947CRITICALunder attack17 Mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISK
open
GitHub PoC4
Kibana <6.6.0 RCE written in python3
CVE-2019-7609CRITICALunder attack17 Mar 2022
Kibana versions before 5.6.15 and 6.6.1 contain an arbitrary code execution flaw in the Timelion visualizer. An attacker
100RISK
open
GitHub PoC15
Exploit for CVE-2022-27226
CVE-2022-2722616 Mar 2022
A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in
35RISK
open
Exploit-DB
Tiny File Manager 2.4.6 - Remote Code Execution (RCE)
CVE-2021-45010webappsphp16 Mar 2022
A path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager before 2.4.7
45RISK
open
Exploit-DB
Pluck CMS 4.7.16 - Remote Code Execution (RCE) (Authenticated)
CVE-2022-26965webappsphp16 Mar 2022
In Pluck 4.7.16, an admin user can use the theme upload functionality at /admin.php?action=themeinstall to perform remot
35RISK
open
Exploit-DB
Tiny File Manager 2.4.6 - Remote Code Execution (RCE)
CVE-2021-40964webappsphp16 Mar 2022
A Path Traversal vulnerability exists in TinyFileManager all version up to and including 2.4.6 that allows attackers to
23RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attackransomware16 Mar 2022
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC15
Apache APISIX Remote Code Execution (CVE-2022-24112) proof of concept exploit
CVE-2022-24112CRITICALunder attack16 Mar 2022
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISK
open
previouspage 599 / 2,597next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.