Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
77,900cataloged exploits
35,840CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,458Referência 22,600GitHub PoC 14,323VulnCheck XDB 8,722Nuclei 4,320Metasploit 3,477✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
LibPNG 1.2.5 - 'png_jmpbuf()' Local Buffer Overflow
Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute a
45RISK
open ↗Exploit-DB✓ VexDay Proof
GV PostScript Viewer - Remote Buffer Overflow (1)
Multiple buffer overflows in the psscan function in ps.c for gv (ghostview) allow remote attackers to execute arbitrary
23RISK
open ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX 10.3.3 - AppleFileServer Overflow Remote Code Execution
Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitr
50RISK
open ↗Exploit-DB✓ VexDay Proof
Remote CVS 1.11.15 - 'error_prog_name' Arbitrary Code Execution
Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may a
28RISK
open ↗Exploit-DB✓ VexDay Proof
Internet Security Systems BlackICE PC Protection 3.6 - Firewall.INI Local Buffer Overrun
BlackICE PC Protection and Server Protection installs (1) firewall.ini, (2) blackice.ini, (3) sigs.ini and (4) protect.i
23RISK
open ↗Exploit-DB✓ VexDay Proof
LibPNG Graphics Library - Remote Buffer Overflow
Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute a
45RISK
open ↗Exploit-DB✓ VexDay Proof
GNU Mailutils 0.6 - Mail Email Header Buffer Overflow
Buffer overflow in the header_get_field_name function in header.c for GNU Mailutils 0.5 and 0.6, and other versions befo
23RISK
open ↗Exploit-DB✓ VexDay Proof
OllyDbg 1.10 - Format String
Format string vulnerability in OllyDbg 1.10 allows remote attackers to cause a denial of service (crash) and possibly ex
23RISK
open ↗Exploit-DB✓ VexDay Proof
GNU CFEngine 2.0.x/2.1 - AuthenticationDialogue Remote Heap Buffer Overrun (1)
Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote
28RISK
open ↗Exploit-DB✓ VexDay Proof
GNU CFEngine 2.0.x/2.1 - AuthenticationDialogue Remote Heap Buffer Overrun (2)
Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote
28RISK
open ↗Exploit-DB✓ VexDay Proof
xine 0.99.2 - Remote Stack Overflow
Multiple stack-based buffer overflows in xine-lib 1-rc2 through 1-rc5 allow attackers to execute arbitrary code via (1)
23RISK
open ↗Exploit-DB✓ VexDay Proof
Pavuk Digest - Authentication Remote Buffer Overflow
Multiple buffer overflows in the digest authentication functionality in Pavuk 0.9.28-r2 and earlier allow remote attacke
28RISK
open ↗Exploit-DB✓ VexDay Proof
PHP 4.3.7 - 'php-exec-dir' Patch Command Access Restriction Bypass
The exec_dir PHP patch (php-exec-dir) 4.3.2 through 4.3.7 with safe mode disabled allows remote attackers to bypass rest
23RISK
open ↗Exploit-DB✓ VexDay Proof
RhinoSoft Serv-U FTP Server 3.x < 5.x - Local Privilege Escalation
Serv-U FTP server before 5.1.0.0 has a default account and password for local administration, which allows local users t
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Messenger (Linux) - Denial of Service (MS03-043)
The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allow
35RISK
open ↗Exploit-DB✓ VexDay Proof
CVSTrac - Arbitrary Code Execution
filediff in CVStrac allows remote attackers to execute arbitrary commands via shell metacharacters in rcsinfo.
28RISK
open ↗Exploit-DB✓ VexDay Proof
BlackJumboDog FTP Server - Remote Buffer Overflow
Buffer overflow in BlackJumboDog 3.x allows remote attackers to execute arbitrary code via long FTP commands such as (1)
28RISK
open ↗Exploit-DB✓ VexDay Proof
Ethereal 0.x - Multiple iSNS / SMB / SNMP Protocol Dissector Vulnerabilities
The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abor
28RISK
open ↗Exploit-DB✓ VexDay Proof
Free Web Chat Initial Release - UserManager.java Null Pointer Denial of Service
The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (unca
23RISK
open ↗Exploit-DB✓ VexDay Proof
SoX - '.wav' Local Buffer Overflow
Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allo
28RISK
open ↗Exploit-DB✓ VexDay Proof
eNdonesia 8.3 - Search Form Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in mod.php in eNdonesia 8.3 allow remote attackers to inject arbitra
23RISK
open ↗Exploit-DB✓ VexDay Proof
Free Web Chat Initial Release - Connection Saturation Denial of Service
Free Web Chat 2.0 allows remote attackers to cause a denial of service (CPU consumption) via multiple connections from t
23RISK
open ↗Exploit-DB✓ VexDay Proof
Acme thttpd 2.0.7 - Directory Traversal
Multiple directory traversal vulnerabilities in thttpd 2.07 beta 0.4, when running on Windows, allow remote attackers to
23RISK
open ↗Exploit-DB✓ VexDay Proof
Oracle 9i - Multiple Vulnerabilities
Directory traversal vulnerability in extproc in Oracle 9i and 10g allows remote attackers to access arbitrary libraries
28RISK
open ↗Exploit-DB✓ VexDay Proof
OpenFTPd 0.30.1 - message system Remote Shell
Format string vulnerability in the msg command (cat_message function in msg.c) in OpenFTPD 0.30.2 and earlier allows rem
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - 'mshtml.dll' Remote Null Pointer Crash
Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with
35RISK
open ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4.26 - File Offset Pointer Handling Memory Disclosure
Linux kernel does not properly convert 64-bit file offset pointers to 32 bits, which allows local users to access portio
23RISK
open ↗Exploit-DB✓ VexDay Proof
OpenFTPd 0.30.2 - Remote Overflow
Format string vulnerability in the msg command (cat_message function in msg.c) in OpenFTPD 0.30.2 and earlier allows rem
23RISK
open ↗Exploit-DB✓ VexDay Proof
IBM Tivoli Directory Server 3.2.2/4.1 - LDACGI Directory Traversal
Directory traversal vulnerability in ldacgi.exe in IBM Tivoli Directory Server 4.1 and earlier allows remote attackers t
23RISK
open ↗Exploit-DB✓ VexDay Proof
Webcam Corp Webcam Watchdog 4.0.1 - 'sresult.exe' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in sresult.exe in Webcam Watchdog 4.0.1a allows remote attackers to inject arbi
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.