Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,329cataloged exploits
36,057CVEs with public exploitation
24,695lab-tested
78,295 exploits
VulnCheck XDB
initial-access
CVE-2019-6340HIGHunder attack01 May 2021
Drupal core - Highly critical - Remote Code Execution
100RISK
open
GitHub PoC
CVE-2003-0264 SLMail5.5_RemoteBufferOverflow
CVE-2003-026401 May 2021
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO arg
60RISK
open
GitHub PoC
CVE-2009-0182 VUPlayer2.49_LocalBufferOverflow
CVE-2009-018201 May 2021
Buffer overflow in VUPlayer 2.49 and earlier allows user-assisted attackers to execute arbitrary code via a long URL in
50RISK
open
Exploit-DB
Moodle 3.6.1 - Persistent Cross-Site Scripting (XSS)
CVE-2019-3810MEDIUMwebappsphp30 Apr 2021
A flaw was found in moodle versions 3.6 to 3.6.1, 3.5 to 3.5.3, 3.4 to 3.4.6, 3.1 to 3.1.15 and earlier unsupported vers
38RISK
open
GitHub PoC7
Apache OFBiz unsafe deserialization of XMLRPC arguments
CVE-2020-949630 Apr 2021
XML-RPC request are vulnerable to unsafe deserialization and Cross-Site Scripting issues in Apache OFBiz 17.12.03
60RISK
open
VulnCheck XDB
initial-access
CVE-2020-949630 Apr 2021
XML-RPC request are vulnerable to unsafe deserialization and Cross-Site Scripting issues in Apache OFBiz 17.12.03
60RISK
open
Exploit-DB
GNU Wget < 1.18 - Arbitrary File Upload (2)
CVE-2016-4971remotelinux30 Apr 2021
GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted F
35RISK
open
GitHub PoC
lvyoshino/CVE-2018-4878
CVE-2018-4878HIGHunder attackransomware30 Apr 2021
A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to
93RISK
open
VulnCheck XDB
client-side
CVE-2018-4878HIGHunder attackransomware30 Apr 2021
A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to
93RISK
open
VulnCheck XDB
initial-access
CVE-2021-3012829 Apr 2021
Unsafe deserialization in Apache OFBiz
60RISK
open
VulnCheck XDB
client-side
CVE-2018-15982HIGHunder attackransomware29 Apr 2021
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability. Successful
93RISK
open
Exploit-DB
Cacti 1.2.12 - 'filter' SQL Injection
CVE-2020-14295webappsphp29 Apr 2021
A SQL injection issue in color.php in Cacti 1.2.12 allows an admin to inject SQL via the filter parameter. This can lead
60RISK
open
GitHub PoC17
Moodle (< 3.6.2, < 3.5.4, < 3.4.7, < 3.1.16) XSS PoC for Privilege Escalation (Student to Admin)
CVE-2019-3810MEDIUM29 Apr 2021
A flaw was found in moodle versions 3.6 to 3.6.1, 3.5 to 3.5.3, 3.4 to 3.4.6, 3.1 to 3.1.15 and earlier unsupported vers
38RISK
open
GitHub PoC225
CVE-2021-3156 - Sudo Baron Samedit
CVE-2021-3156HIGHunder attack29 Apr 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
GitHub PoC1
PoC for CVE-2018-13382, never successfully tested so swim at your own risk
CVE-2018-13382CRITICALunder attackransomware28 Apr 2021
An Improper Authorization vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.8 and 5.4.1 to 5.4.10 and Forti
100RISK
open
Exploit-DB
Kirby CMS 3.5.3.1 - 'file' Cross-Site Scripting (XSS)
CVE-2021-29460HIGHwebappsphp28 Apr 2021
Cross-site scripting (XSS) from unsanitized uploaded SVG files
41RISK
open
VulnCheck XDB
initial-access
CVE-2019-2093328 Apr 2021
InfluxDB before 1.7.6 has an authentication bypass vulnerability in the authenticate function in services/httpd/handler.
50RISK
open
VulnCheck XDB
initial-access
CVE-2018-13382CRITICALunder attackransomware28 Apr 2021
An Improper Authorization vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.8 and 5.4.1 to 5.4.10 and Forti
100RISK
open
Metasploit400
SuiteCRM Log File Remote Code Execution
CVE-2020-2832828 Apr 2021
SuiteCRM before 7.11.17 is vulnerable to remote code execution via the system settings Log File Name setting. In certain
50RISK
open
Metasploit400
SuiteCRM Log File Remote Code Execution
CVE-2021-4284028 Apr 2021
SuiteCRM before 7.11.19 allows remote code execution via the system settings Log File Name setting. In certain circumsta
50RISK
open
GitHub PoC2
Authenticated SQL injection to command execution on Cacti 1.2.12
CVE-2020-1429528 Apr 2021
A SQL injection issue in color.php in Cacti 1.2.12 allows an admin to inject SQL via the filter parameter. This can lead
60RISK
open
VulnCheck XDB
initial-access
CVE-2019-1272527 Apr 2021
Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web ap
60RISK
open
GitHub PoC1
CVE-2019-12725 ZeroShell 远程命令执行漏洞
CVE-2019-1272527 Apr 2021
Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web ap
60RISK
open
GitHub PoC1
streghstreek/CVE-2020-1938
CVE-2020-1938CRITICALunder attack27 Apr 2021
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2020-895827 Apr 2021
Guangzhou 1GE ONU V2801RW 1.9.1-181203 through 2.9.0-181024 and V2804RGW 1.9.1-181203 through 2.9.0-181024 devices allow
35RISK
open
VulnCheck XDB
local
CVE-2018-8611HIGHunder attack27 Apr 2021
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka "
71RISK
open
GitHub PoC10
lsw29475/CVE-2018-8611
CVE-2018-8611HIGHunder attack27 Apr 2021
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka "
71RISK
open
Exploit-DB
SEO Panel 4.8.0 - 'order_col' Blind SQL Injection (2)
CVE-2021-28419webappsphp26 Apr 2021
The "order_col" parameter in archive.php of SEO Panel 4.8.0 is vulnerable to time-based blind SQL injection, which leads
28RISK
open
VulnCheck XDB
initial-access
CVE-2023-1389HIGHunder attack26 Apr 2021
TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command injection vulnerability i
100RISK
open
Metasploit600
Git LFS Clone Command Exec
CVE-2021-21300HIGH26 Apr 2021
malicious repositories can execute remote code while cloning
58RISK
open
previouspage 690 / 2,610next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.