Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,056cataloged exploits
35,925CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DBVexDay Proof
OpenSSL - ASN.1 Parsing
CVE-2002-0659remotemultiple09 Oct 2003
The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial o
35RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - 'RPC2' Universal / Denial of Service (RPC3) (MS03-039)
CVE-2003-0605remotewindows09 Oct 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
OpenSSL ASN.1 < 0.9.6j/0.9.7b - Brute Forcer for Parsing Bugs
CVE-2003-0543dosmultiple09 Oct 2003
Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote attackers to cause a denial of service (crash) via an SSL clie
28RISK
open
Exploit-DBVexDay Proof
HP-UX 11 CDE DTPrintInfo - Display Environment Variable Buffer Overflow
CVE-2003-0840doshp-ux08 Oct 2003
Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root pri
23RISK
open
Exploit-DBVexDay Proof
JBoss 3.0.8/3.2.1 - HSQLDB Remote Command Injection
CVE-2003-0845remotemultiple06 Oct 2003
Unknown vulnerability in the HSQLDB component in JBoss 3.2.1 and 3.0.8 on Java 1.4.x platforms, when running in the defa
28RISK
open
Exploit-DBVexDay Proof
SLocate 2.6 - User-Supplied Database Heap Overflow
CVE-2003-0848locallinux06 Oct 2003
Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileg
23RISK
open
Exploit-DBVexDay Proof
SuSE Linux Professional 8.2 - SuSEWM Configuration File Insecure Temporary File
CVE-2003-0847locallinux06 Oct 2003
SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symli
23RISK
open
Exploit-DBVexDay Proof
ProFTPd 1.2.9 rc2 - '.ASCII' File Remote Code Execution (1)
CVE-2003-0831remotelinux04 Oct 2003
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, whi
35RISK
open
Exploit-DBVexDay Proof
EternalMart Mailing List Manager 1.32 - Remote File Inclusion
CVE-2003-1313webappsphp04 Oct 2003
Multiple PHP remote file inclusion vulnerabilities in EternalMart Mailing List Manager (EMLM) 1.32 allow remote attacker
23RISK
open
Exploit-DBVexDay Proof
Cisco LEAP - Password Disclosure
CVE-2003-1096remotehardware03 Oct 2003
The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary att
28RISK
open
Exploit-DBVexDay Proof
WebFS 1.x - 'Pathname' Buffer Overrun
CVE-2003-0833remotelinux29 Sep 2003
Stack-based buffer overflow in webfs before 1.20 allows attackers to execute arbitrary code by creating directories that
23RISK
open
Exploit-DBVexDay Proof
IBM DB2 - Universal Database 7.2 'db2licm' Local Overflow
CVE-2003-0759locallinux27 Sep 2003
Buffer overflow in db2licm in IBM DB2 Universal Data Base 7.2 before Fixpak 10a allows local users to gain root privileg
23RISK
open
Exploit-DBVexDay Proof
GNU CFEngine 2.-2.0.3 - Remote Stack Overflow
CVE-2003-0849remotebsd27 Sep 2003
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RISK
open
Exploit-DBVexDay Proof
marbles 1.0.1 - Local Home Environment Variable Buffer Overflow
CVE-2003-0830locallinux26 Sep 2003
Buffer overflow in marbles 1.0.2 and earlier allows local users to gain privileges via a long HOME environment variable.
23RISK
open
Exploit-DBVexDay Proof
MPlayer 0.9/1.0 - Streaming ASX Header Parsing Buffer Overrun
CVE-2003-0835remotelinux25 Sep 2003
Multiple buffer overflows in asf_http_request of MPlayer before 0.92 allows remote attackers to execute arbitrary code v
23RISK
open
Exploit-DBVexDay Proof
GNU CFEngine 2.0.x - CFServD Transaction Packet Buffer Overrun (1)
CVE-2003-0849remotelinux25 Sep 2003
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RISK
open
Exploit-DBVexDay Proof
MPG123 0.59 - Remote File Play Heap Corruption
CVE-2003-0865remotelinux23 Sep 2003
Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbi
28RISK
open
Exploit-DBVexDay Proof
ProFTPd 1.2.7/1.2.8 - '.ASCII' File Transfer Buffer Overrun
CVE-2003-0831doslinux23 Sep 2003
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, whi
35RISK
open
Exploit-DBVexDay Proof
hztty 2.0 (RedHat 9.0) - Local Privilege Escalation
CVE-2003-0783locallinux21 Sep 2003
Multiple buffer overflows in hztty 2.0 allow local users to gain root privileges.
23RISK
open
Exploit-DBVexDay Proof
Plug And Play Web Server 1.0 002c - FTP Service Command Handler Buffer Overflow
CVE-2003-1158doswindows21 Sep 2003
Multiple buffer overflows in the FTP service in Plug and Play Web Server 1.0002c allow remote attackers to cause a denia
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - 'RPC DCOM2' Remote (MS03-039)
CVE-2003-0605remotewindows20 Sep 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
Knox Arkeia Pro 5.1.12 - Backup Remote Code Execution
CVE-2005-0491remotelinux20 Sep 2003
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RISK
open
Exploit-DBVexDay Proof
LSH 1.x - Remote Buffer Overflow (1)
CVE-2003-0826remotelinux19 Sep 2003
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) cli
28RISK
open
Exploit-DBVexDay Proof
Solaris Sadmind - Default Configuration Remote Code Execution
CVE-2003-0722remotesolaris19 Sep 2003
The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attack
60RISK
open
Exploit-DBVexDay Proof
LSH 1.x - Remote Buffer Overflow (2)
CVE-2003-0826remotelinux19 Sep 2003
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) cli
28RISK
open
Exploit-DBVexDay Proof
IBM DB2 db2dart - Buffer Overflow
CVE-2003-0758doslinux18 Sep 2003
Buffer overflow in db2dart in IBM DB2 Universal Data Base 7.2 before Fixpak 10 allows local users to gain root privilege
23RISK
open
Exploit-DBVexDay Proof
Sendmail 8.12.9 - 'Prescan()' Variant Remote Buffer Overrun
CVE-2003-0681remotelinux17 Sep 2003
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient
28RISK
open
Exploit-DBVexDay Proof
Pine 4.56 - Remote Buffer Overflow
CVE-2003-0720remotelinux16 Sep 2003
Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-b
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - 'RPC DCOM' Long Filename Overflow (MS03-026)
CVE-2003-0352remotewindows16 Sep 2003
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote
60RISK
open
Exploit-DBVexDay Proof
Nokia Electronic Documentation 5.0 - Cross-Site Scripting
CVE-2003-0801remotewindows15 Sep 2003
Cross-site scripting (XSS) vulnerability in Nokia Electronic Documentation (NED) 5.0 allows remote attackers to execute
28RISK
open
previouspage 723 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.