Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
78,056cataloged exploits
35,925CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,458Referência 22,640GitHub PoC 14,392VulnCheck XDB 8,755Nuclei 4,333Metasploit 3,478✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
OpenSSL - ASN.1 Parsing
The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial o
35RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC2' Universal / Denial of Service (RPC3) (MS03-039)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open ↗Exploit-DB✓ VexDay Proof
OpenSSL ASN.1 < 0.9.6j/0.9.7b - Brute Forcer for Parsing Bugs
Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote attackers to cause a denial of service (crash) via an SSL clie
28RISK
open ↗Exploit-DB✓ VexDay Proof
HP-UX 11 CDE DTPrintInfo - Display Environment Variable Buffer Overflow
Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root pri
23RISK
open ↗Exploit-DB✓ VexDay Proof
JBoss 3.0.8/3.2.1 - HSQLDB Remote Command Injection
Unknown vulnerability in the HSQLDB component in JBoss 3.2.1 and 3.0.8 on Java 1.4.x platforms, when running in the defa
28RISK
open ↗Exploit-DB✓ VexDay Proof
SLocate 2.6 - User-Supplied Database Heap Overflow
Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileg
23RISK
open ↗Exploit-DB✓ VexDay Proof
SuSE Linux Professional 8.2 - SuSEWM Configuration File Insecure Temporary File
SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symli
23RISK
open ↗Exploit-DB✓ VexDay Proof
ProFTPd 1.2.9 rc2 - '.ASCII' File Remote Code Execution (1)
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, whi
35RISK
open ↗Exploit-DB✓ VexDay Proof
EternalMart Mailing List Manager 1.32 - Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in EternalMart Mailing List Manager (EMLM) 1.32 allow remote attacker
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco LEAP - Password Disclosure
The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary att
28RISK
open ↗Exploit-DB✓ VexDay Proof
WebFS 1.x - 'Pathname' Buffer Overrun
Stack-based buffer overflow in webfs before 1.20 allows attackers to execute arbitrary code by creating directories that
23RISK
open ↗Exploit-DB✓ VexDay Proof
IBM DB2 - Universal Database 7.2 'db2licm' Local Overflow
Buffer overflow in db2licm in IBM DB2 Universal Data Base 7.2 before Fixpak 10a allows local users to gain root privileg
23RISK
open ↗Exploit-DB✓ VexDay Proof
GNU CFEngine 2.-2.0.3 - Remote Stack Overflow
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RISK
open ↗Exploit-DB✓ VexDay Proof
marbles 1.0.1 - Local Home Environment Variable Buffer Overflow
Buffer overflow in marbles 1.0.2 and earlier allows local users to gain privileges via a long HOME environment variable.
23RISK
open ↗Exploit-DB✓ VexDay Proof
MPlayer 0.9/1.0 - Streaming ASX Header Parsing Buffer Overrun
Multiple buffer overflows in asf_http_request of MPlayer before 0.92 allows remote attackers to execute arbitrary code v
23RISK
open ↗Exploit-DB✓ VexDay Proof
GNU CFEngine 2.0.x - CFServD Transaction Packet Buffer Overrun (1)
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RISK
open ↗Exploit-DB✓ VexDay Proof
MPG123 0.59 - Remote File Play Heap Corruption
Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbi
28RISK
open ↗Exploit-DB✓ VexDay Proof
ProFTPd 1.2.7/1.2.8 - '.ASCII' File Transfer Buffer Overrun
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, whi
35RISK
open ↗Exploit-DB✓ VexDay Proof
hztty 2.0 (RedHat 9.0) - Local Privilege Escalation
Multiple buffer overflows in hztty 2.0 allow local users to gain root privileges.
23RISK
open ↗Exploit-DB✓ VexDay Proof
Plug And Play Web Server 1.0 002c - FTP Service Command Handler Buffer Overflow
Multiple buffer overflows in the FTP service in Plug and Play Web Server 1.0002c allow remote attackers to cause a denia
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM2' Remote (MS03-039)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open ↗Exploit-DB✓ VexDay Proof
Knox Arkeia Pro 5.1.12 - Backup Remote Code Execution
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RISK
open ↗Exploit-DB✓ VexDay Proof
LSH 1.x - Remote Buffer Overflow (1)
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) cli
28RISK
open ↗Exploit-DB✓ VexDay Proof
Solaris Sadmind - Default Configuration Remote Code Execution
The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attack
60RISK
open ↗Exploit-DB✓ VexDay Proof
LSH 1.x - Remote Buffer Overflow (2)
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) cli
28RISK
open ↗Exploit-DB✓ VexDay Proof
IBM DB2 db2dart - Buffer Overflow
Buffer overflow in db2dart in IBM DB2 Universal Data Base 7.2 before Fixpak 10 allows local users to gain root privilege
23RISK
open ↗Exploit-DB✓ VexDay Proof
Sendmail 8.12.9 - 'Prescan()' Variant Remote Buffer Overrun
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient
28RISK
open ↗Exploit-DB✓ VexDay Proof
Pine 4.56 - Remote Buffer Overflow
Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-b
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Long Filename Overflow (MS03-026)
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote
60RISK
open ↗Exploit-DB✓ VexDay Proof
Nokia Electronic Documentation 5.0 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in Nokia Electronic Documentation (NED) 5.0 allows remote attackers to execute
28RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.