Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,958cataloged exploits
36,206CVEs with public exploitation
24,695lab-tested
78,324 exploits
VulnCheck XDB
local
CVE-2017-100036730 Mar 2021
Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_
23RISK
open
VulnCheck XDB
local
CVE-2019-2215HIGHunder attack30 Mar 2021
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
100RISK
open
VulnCheck XDB
local
CVE-2015-132830 Mar 2021
The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does no
50RISK
open
VulnCheck XDB
local
CVE-2018-100000130 Mar 2021
In glibc 2.26 and earlier there is confusion in the usage of getcwd() by realpath() which can be used to write before th
43RISK
open
Exploit-DB
SyncBreeze 10.1.16 - XML Parsing Stack-based Buffer Overflow
CVE-2017-15950webappswindows29 Mar 2021
Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary co
23RISK
open
GitHub PoC247
C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection
CVE-2021-26855CRITICALunder attackransomware29 Mar 2021
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISK
open
Exploit-DB
Concrete5 8.5.4 - 'name' Stored XSS
CVE-2021-3111webappsphp29 Mar 2021
The Express Entries Dashboard in Concrete5 8.5.4 allows stored XSS via the name field of a new data object at an index.p
23RISK
open
VulnCheck XDB
initial-access
CVE-2021-26855CRITICALunder attackransomware29 Mar 2021
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISK
open
GitHub PoC
dotslashed/CVE-2021-22986
CVE-2021-22986CRITICALunder attackransomware29 Mar 2021
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
100RISK
open
GitHub PoC13
Code By:Tas9er / F5 BIG-IP 远程命令执行漏洞
CVE-2021-22986CRITICALunder attackransomware29 Mar 2021
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
100RISK
open
Metasploit300
GravCMS Remote Command Execution
CVE-2021-21425CRITICAL29 Mar 2021
Unauthenticated Arbitrary YAML Write/Update leads to Code Execution
85RISK
open
VulnCheck XDB
infoleak
CVE-2020-1938CRITICALunder attack28 Mar 2021
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISK
open
GitHub PoC1
Another implementation for linux privilege escalation exploit via snap(d) (CVE-2019-7304)
CVE-2019-7304HIGH28 Mar 2021
Local privilege escalation via snapd socket
53RISK
open
GitHub PoC21
Hancheng-Lei/Hacking-Vulnerability-CVE-2020-1938-Ghostcat
CVE-2020-1938CRITICALunder attack28 Mar 2021
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISK
open
GitHub PoC38
CVE-2021-22192 靶场: 未授权用户 RCE 漏洞
CVE-2021-22192CRITICAL27 Mar 2021
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 allowing unauthorized authenticat
53RISK
open
GitHub PoC
siramk/CVE-2018-1335
CVE-2018-133526 Mar 2021
From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to
60RISK
open
GitHub PoC8
F5 BIG-IP远程代码执行;cve-2021-22986,批量检测;命令执行利用
CVE-2021-22986CRITICALunder attackransomware26 Mar 2021
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
100RISK
open
VulnCheck XDB
initial-access
CVE-2018-133526 Mar 2021
From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to
60RISK
open
VulnCheck XDB
initial-access
CVE-2021-22986CRITICALunder attackransomware26 Mar 2021
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
100RISK
open
VulnCheck XDB
initial-access
CVE-2020-2551CRITICALunder attack25 Mar 2021
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). Suppor
100RISK
open
GitHub PoC1
Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995
CVE-2018-999525 Mar 2021
TBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR L
50RISK
open
VulnCheck XDB
initial-access
CVE-2019-023225 Mar 2021
When running on Windows with enableCmdLineArguments enabled, the CGI Servlet in Apache Tomcat 9.0.0.M1 to 9.0.17, 8.5.0
60RISK
open
GitHub PoC33
Vulnerability analysis and PoC for the Apache Tomcat - CGIServlet enableCmdLineArguments Remote Code Execution (RCE)
CVE-2019-023225 Mar 2021
When running on Windows with enableCmdLineArguments enabled, the CGI Servlet in Apache Tomcat 9.0.0.M1 to 9.0.17, 8.5.0
60RISK
open
GitHub PoC
Proof of concept for CVE-2020-11819 and CVE-2020-15946
CVE-2020-1181925 Mar 2021
In Rukovoditel 2.5.2, an attacker may inject an arbitrary .php file location instead of a language file and thus achieve
28RISK
open
Exploit-DB
Dolibarr ERP 11.0.4 - File Upload Restrictions Bypass (Authenticated RCE)
CVE-2020-14209webappsphp25 Mar 2021
Dolibarr before 11.0.5 allows low-privilege users to upload files of dangerous types, leading to arbitrary code executio
28RISK
open
Metasploit0
macOS Gatekeeper check bypass
CVE-2021-30657MEDIUMunder attack25 Mar 2021
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.3, Security Update 2
90RISK
open
Metasploit0
macOS Gatekeeper check bypass
CVE-2022-2261625 Mar 2021
This issue was addressed with improved checks. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey
18RISK
open
GitHub PoC10
Mybb associate CVE-2021-27890 & CVE-2021-27889 to RCE poc
CVE-2021-2789025 Mar 2021
SQL Injection vulnerablity in MyBB before 1.8.26 via theme properties included in theme XML files.
28RISK
open
Exploit-DB
Linksys EA7500 2.0.8.194281 - Cross-Site Scripting
CVE-2012-6708webappshardware25 Mar 2021
jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differen
28RISK
open
GitHub PoC52
Proof-of-concept exploit for CVE-2021-26855 and CVE-2021-27065. Unauthenticated RCE in Exchange.
CVE-2021-26855CRITICALunder attackransomware24 Mar 2021
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISK
open
previouspage 698 / 2,611next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.