Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,056cataloged exploits
35,925CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DBVexDay Proof
Symantec Norton AntiVirus 2002/2003 - Device Driver Memory Overwrite
CVE-2003-1310localwindows02 Aug 2003
The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local user
23RISK
open
Exploit-DBVexDay Proof
WU-FTPD 2.6.2 - 'realpath()' Off-by-One Buffer Overflow
CVE-2003-0466remoteunix02 Aug 2003
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to exe
45RISK
open
Exploit-DBVexDay Proof
CDRTools 2.0 - RSCSI Debug File Arbitrary Local File Manipulation
CVE-2003-0655locallinux01 Aug 2003
rscsi in cdrtools 2.01 and earlier allows local users to overwrite arbitrary files and gain root privileges by specifyin
23RISK
open
Exploit-DBVexDay Proof
xtokkaetama 1.0b (RedHat 9.0) - Local Game
CVE-2003-0611locallinux01 Aug 2003
Multiple buffer overflows in xtokkaetama 1.0 allow local users to gain privileges via a long (1) -display command line a
23RISK
open
Exploit-DBVexDay Proof
Trillian 0.74 - Remote Denial of Service
CVE-2002-1487doswindows01 Aug 2003
The IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service (crash) by
28RISK
open
Exploit-DBVexDay Proof
FreeBSD 4.8 - 'realpath()' Off-by-One Buffer Overflow
CVE-2003-0466remotefreebsd31 Jul 2003
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to exe
45RISK
open
Exploit-DBVexDay Proof
XGalaga 2.0.34 (RedHat 9.0) - Local Game
CVE-2003-0454locallinux31 Jul 2003
Multiple buffer overflows in xgalaga 2.0.34 and earlier allow local users to gain privileges via a long HOME environment
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - 'RPC DCOM' Remote (2)
CVE-2003-0605remotewindows30 Jul 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - 'RPC DCOM' Remote (1)
CVE-2003-0605remotewindows29 Jul 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
Linux Kernel 2.4.20 - 'decode_fh' Denial of Service
CVE-2003-0619doslinux29 Jul 2003
Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to
28RISK
open
Exploit-DBVexDay Proof
ManDB Utility 2.3/2.4 - Local Buffer Overflow
CVE-2003-0620locallinux29 Jul 2003
Multiple buffer overflows in man-db 2.4.1 and earlier, when installed setuid, allow local users to gain privileges via (
23RISK
open
Exploit-DBVexDay Proof
Apache 1.3.x mod_mylo - Remote Code Execution
CVE-2003-0651remotemultiple28 Jul 2003
Buffer overflow in the mylo_log logging function for mod_mylo 0.2.1 and earlier allows remote attackers to execute arbit
23RISK
open
Exploit-DBVexDay Proof
Cisco Aironet AP1x00 - GET Denial of Service
CVE-2003-0511doshardware28 Jul 2003
The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attack
23RISK
open
Exploit-DBVexDay Proof
Gallery 1.2/1.3.x - Search Engine Cross-Site Scripting
CVE-2003-0614webappsphp27 Jul 2003
Cross-site scripting (XSS) vulnerability in search.php of Gallery 1.1 through 1.3.4 allows remote attackers to insert ar
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows XP/2000 - 'RPC DCOM' Remote (MS03-026)
CVE-2003-0605remotewindows26 Jul 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
Microsoft Windows SQL Server - Remote Denial of Service (MS03-031)
CVE-2003-0232doswindows25 Jul 2003
Microsoft SQL Server 7, 2000, and MSDE allows local users to execute arbitrary code via a certain request to the Local P
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - 'RPC DCOM' Remote Buffer Overflow
CVE-2003-0605remotewindows25 Jul 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
xfstt 1.2/1.4 - Memory Disclosure
CVE-2003-0625doslinux23 Jul 2003
Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malform
23RISK
open
Exploit-DBVexDay Proof
Novell Netware Enterprise Web Server 5.1/6.0 - 'CGI2Perl.NLM' Buffer Overflow (PoC)
CVE-2003-0562dosnetware23 Jul 2003
Buffer overflow in the CGI2PERL.NLM PERL handler in Novell Netware 5.1 and 6.0 allows remote attackers to cause a denial
28RISK
open
Exploit-DBVexDay Proof
Microsoft SQL Server 7.0/2000 / MSDE - Named Pipe Denial of Service (MS03-031)
CVE-2003-0231doswindows23 Jul 2003
Microsoft SQL Server 7, 2000, and MSDE allows local or remote authenticated users to cause a denial of service (crash or
35RISK
open
Exploit-DBVexDay Proof
Cisco IOS - using hping Remote Denial of Service
CVE-2003-0567doshardware22 Jul 2003
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISK
open
Exploit-DBVexDay Proof
Cisco IOS - 'cisco-bug-44020.c' IPv4 Packet Denial of Service
CVE-2003-0567doshardware21 Jul 2003
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - RPC DCOM Interface Denial of Service
CVE-2003-0605doswindows21 Jul 2003
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISK
open
Exploit-DBVexDay Proof
XPCD 2.0.8 - 'HOME Environment' Local Buffer Overflow
CVE-2003-0649locallinux18 Jul 2003
Buffer overflow in xpcd-svga for xpcd 2.08 and earlier allows local users to execute arbitrary code via a long HOME envi
23RISK
open
Exploit-DBVexDay Proof
Witango Server 5.0.1.061 - Remote Cookie Buffer Overflow
CVE-2003-0595dosmultiple18 Jul 2003
Buffer overflow in WiTango Application Server and Tango 2000 allows remote attackers to execute arbitrary code via a lon
23RISK
open
Exploit-DBVexDay Proof
Cisco IOS - IPv4 Packets Denial of Service
CVE-2003-0567doshardware18 Jul 2003
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISK
open
Exploit-DBVexDay Proof
eStore 1.0.1/1.0.2 - 'Settings.inc.php' Full Path Disclosure
CVE-2003-0586webappsphp17 Jul 2003
Brooky eStore 1.0.1 through 1.0.2b allows remote attackers to obtain sensitive path information via a direct HTTP reques
23RISK
open
Exploit-DBVexDay Proof
Microsoft ISA Server 2000 - Cross-Site Scripting
CVE-2003-0526remotewindows16 Jul 2003
Cross-site scripting (XSS) vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote
28RISK
open
Exploit-DBVexDay Proof
PHP 4.3.x - Undefined Safe_Mode_Include_Dir Safemode Bypass
CVE-2003-0863localphp16 Jul 2003
The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_
23RISK
open
Exploit-DBVexDay Proof
IBM UniVerse 10.0.0.9 - 'uvadmsh' Local Privilege Escalation
CVE-2003-0579localunix16 Jul 2003
uvadmsh in IBM U2 UniVerse 10.0.0.9 and earlier trusts the user-supplied -uv.install command line option to find and exe
23RISK
open
previouspage 726 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.