Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
78,056cataloged exploits
35,925CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,458Referência 22,640GitHub PoC 14,392VulnCheck XDB 8,755Nuclei 4,333Metasploit 3,478✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
Symantec Norton AntiVirus 2002/2003 - Device Driver Memory Overwrite
The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local user
23RISK
open ↗Exploit-DB✓ VexDay Proof
WU-FTPD 2.6.2 - 'realpath()' Off-by-One Buffer Overflow
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to exe
45RISK
open ↗Exploit-DB✓ VexDay Proof
CDRTools 2.0 - RSCSI Debug File Arbitrary Local File Manipulation
rscsi in cdrtools 2.01 and earlier allows local users to overwrite arbitrary files and gain root privileges by specifyin
23RISK
open ↗Exploit-DB✓ VexDay Proof
xtokkaetama 1.0b (RedHat 9.0) - Local Game
Multiple buffer overflows in xtokkaetama 1.0 allow local users to gain privileges via a long (1) -display command line a
23RISK
open ↗Exploit-DB✓ VexDay Proof
Trillian 0.74 - Remote Denial of Service
The IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service (crash) by
28RISK
open ↗Exploit-DB✓ VexDay Proof
FreeBSD 4.8 - 'realpath()' Off-by-One Buffer Overflow
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to exe
45RISK
open ↗Exploit-DB✓ VexDay Proof
XGalaga 2.0.34 (RedHat 9.0) - Local Game
Multiple buffer overflows in xgalaga 2.0.34 and earlier allow local users to gain privileges via a long HOME environment
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Remote (2)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Remote (1)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4.20 - 'decode_fh' Denial of Service
Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to
28RISK
open ↗Exploit-DB✓ VexDay Proof
ManDB Utility 2.3/2.4 - Local Buffer Overflow
Multiple buffer overflows in man-db 2.4.1 and earlier, when installed setuid, allow local users to gain privileges via (
23RISK
open ↗Exploit-DB✓ VexDay Proof
Apache 1.3.x mod_mylo - Remote Code Execution
Buffer overflow in the mylo_log logging function for mod_mylo 0.2.1 and earlier allows remote attackers to execute arbit
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco Aironet AP1x00 - GET Denial of Service
The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attack
23RISK
open ↗Exploit-DB✓ VexDay Proof
Gallery 1.2/1.3.x - Search Engine Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in search.php of Gallery 1.1 through 1.3.4 allows remote attackers to insert ar
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000 - 'RPC DCOM' Remote (MS03-026)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows SQL Server - Remote Denial of Service (MS03-031)
Microsoft SQL Server 7, 2000, and MSDE allows local users to execute arbitrary code via a certain request to the Local P
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Remote Buffer Overflow
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open ↗Exploit-DB✓ VexDay Proof
xfstt 1.2/1.4 - Memory Disclosure
Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malform
23RISK
open ↗Exploit-DB✓ VexDay Proof
Novell Netware Enterprise Web Server 5.1/6.0 - 'CGI2Perl.NLM' Buffer Overflow (PoC)
Buffer overflow in the CGI2PERL.NLM PERL handler in Novell Netware 5.1 and 6.0 allows remote attackers to cause a denial
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 7.0/2000 / MSDE - Named Pipe Denial of Service (MS03-031)
Microsoft SQL Server 7, 2000, and MSDE allows local or remote authenticated users to cause a denial of service (crash or
35RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco IOS - using hping Remote Denial of Service
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco IOS - 'cisco-bug-44020.c' IPv4 Packet Denial of Service
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - RPC DCOM Interface Denial of Service
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open ↗Exploit-DB✓ VexDay Proof
XPCD 2.0.8 - 'HOME Environment' Local Buffer Overflow
Buffer overflow in xpcd-svga for xpcd 2.08 and earlier allows local users to execute arbitrary code via a long HOME envi
23RISK
open ↗Exploit-DB✓ VexDay Proof
Witango Server 5.0.1.061 - Remote Cookie Buffer Overflow
Buffer overflow in WiTango Application Server and Tango 2000 allows remote attackers to execute arbitrary code via a lon
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco IOS - IPv4 Packets Denial of Service
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISK
open ↗Exploit-DB✓ VexDay Proof
eStore 1.0.1/1.0.2 - 'Settings.inc.php' Full Path Disclosure
Brooky eStore 1.0.1 through 1.0.2b allows remote attackers to obtain sensitive path information via a direct HTTP reques
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft ISA Server 2000 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote
28RISK
open ↗Exploit-DB✓ VexDay Proof
PHP 4.3.x - Undefined Safe_Mode_Include_Dir Safemode Bypass
The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_
23RISK
open ↗Exploit-DB✓ VexDay Proof
IBM UniVerse 10.0.0.9 - 'uvadmsh' Local Privilege Escalation
uvadmsh in IBM U2 UniVerse 10.0.0.9 and earlier trusts the user-supplied -uv.install command line option to find and exe
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.