Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
78,056cataloged exploits
35,925CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,458Referência 22,640GitHub PoC 14,392VulnCheck XDB 8,755Nuclei 4,333Metasploit 3,478✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
PHP-Nuke 6.x - 'Category' SQL Injection
SQL injection vulnerability in PHP-Nuke 6.9 and earlier, and possibly 7.x, allows remote attackers to inject arbitrary S
23RISK
open ↗Exploit-DB✓ VexDay Proof
phpBB 2.0.6 - 'search_id' SQL Injection / MD5 Hash
SQL injection vulnerability in search.php for phpBB 2.0.6 and earlier allows remote attackers to execute arbitrary SQL a
23RISK
open ↗Exploit-DB✓ VexDay Proof
Tcpdump 3.x - L2TP Parser Remote Denial of Service
The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loo
23RISK
open ↗Exploit-DB✓ VexDay Proof
Eznet 3.5.0 - Remote Stack Overflow Universal
Stack-based buffer overflow in eZnet.exe, as used in eZ (a) eZphotoshare, (b) eZmeeting, (c) eZnetwork, and (d) eZshare
35RISK
open ↗Exploit-DB✓ VexDay Proof
osCommerce 2.2 - 'osCsid' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in the tep_href_link function in html_output.php for osCommerce before 2.2-MS3
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Messenger Service (French) - Remote (MS03-043)
The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allow
35RISK
open ↗Exploit-DB✓ VexDay Proof
DameWare Mini Remote Control Server 3.7x - Buffer Overflow (2)
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long
28RISK
open ↗Exploit-DB✓ VexDay Proof
DameWare Mini Remote Control Server 3.7x - Buffer Overflow (3)
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long
28RISK
open ↗Exploit-DB✓ VexDay Proof
DameWare Mini Remote Control Server 3.7x - Buffer Overflow (1)
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long
28RISK
open ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX 10 - CD9660.Util Probe For Mounting Argument Local Buffer Overflow
Buffer overflow in cd9660.util in Apple Mac OS X 10.0 through 10.3.2 and Apple Mac OS X Server 10.0 through 10.3.2 may a
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 / Mozilla 1.2.1 - URI Display Obfuscation (1)
Internet Explorer 5.01 through 6 SP1 allows remote attackers to spoof the domain of a URL via a "%01" character before a
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 / Mozilla 1.2.1 - URI Display Obfuscation (2)
Internet Explorer 5.01 through 6 SP1 allows remote attackers to spoof the domain of a URL via a "%01" character before a
28RISK
open ↗Exploit-DB✓ VexDay Proof
LaGarde StoreFront 5.0 Shopping Cart - 'login.asp' SQL Injection
SQL injection vulnerability in login.asp for StoreFront 6.0, and possibly earlier versions, allows remote attackers to o
23RISK
open ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4.22 - 'do_brk()' Local Privilege Escalation (2)
Integer overflow in the do_brk function for the brk system call in Linux kernel 2.4.22 and earlier allows local users to
23RISK
open ↗Exploit-DB✓ VexDay Proof
FVWM 2.4/2.5 - fvwm-menu-Directory Command Execution
CRLF injection vulnerability in fvwm-menu-directory for fvwm 2.5.x before 2.5.10 and 2.4.x before 2.4.18 allows local us
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP - Workstation Service Remote (MS03-049)
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers t
60RISK
open ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4.22 - 'do_brk()' Local Privilege Escalation (1)
Integer overflow in the do_brk function for the brk system call in Linux kernel 2.4.22 and earlier allows local users to
23RISK
open ↗Exploit-DB✓ VexDay Proof
Applied Watch Command Center 1.0 - Authentication Bypass (2)
Applied Watch Command Center allows remote attackers to conduct unauthorized activities without authentication, such as
23RISK
open ↗Exploit-DB✓ VexDay Proof
Applied Watch Command Center 1.0 - Authentication Bypass (1)
Applied Watch Command Center allows remote attackers to conduct unauthorized activities without authentication, such as
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Outlook Express 6.0 - '.MHTML' Forced File Execution (1)
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RISK
open ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (2)
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Outlook Express 6.0 - MHTML Forced File Execution (2)
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RISK
open ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (1)
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISK
open ↗Exploit-DB✓ VexDay Proof
Monit 1.4/2.x/3/4 - 'HTTP Request' Buffer Overrun
Stack-based buffer overflow in Monit 1.4 to 4.1 allows remote attackers to execute arbitrary code via a long HTTP reques
28RISK
open ↗Exploit-DB✓ VexDay Proof
Apache mod_gzip (with debug_mode) 1.2.26.1a - Remote Overflow
Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions,
23RISK
open ↗Exploit-DB✓ VexDay Proof
FreeRadius 0.x/1.1.x - Tag Field Heap Corruption
rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADI
23RISK
open ↗Exploit-DB✓ VexDay Proof
IA WebMail Server 3.x - 'iaregdll.dll 1.0.0.5' Remote Overflow
Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET
50RISK
open ↗Exploit-DB✓ VexDay Proof
OpenBSD 2.x < 3.3 - 'exec_ibcs2_coff_prep_zmagic()' kernel stack overflow
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - ListBox/ComboBox Control Local (MS03-045)
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary co
35RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.