Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,056cataloged exploits
35,925CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DBVexDay Proof
Tolis Group BRU 17.0 - Local Privilege Escalation (2)
CVE-2003-0584localunix16 Jul 2003
Format string vulnerability in Backup and Restore Utility for Unix (BRU) 17.0 and earlier, when running setuid, allows l
23RISK
open
Exploit-DBVexDay Proof
Microsoft ISA Server 2000 - Cross-Site Scripting
CVE-2003-0526remotewindows16 Jul 2003
Cross-site scripting (XSS) vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote
28RISK
open
Exploit-DBVexDay Proof
Splatt Forum 3/4 - Post Icon HTML Injection
CVE-2003-0590webappsphp15 Jul 2003
Cross-site scripting (XSS) vulnerability in Splatt Forum allows remote attackers to insert arbitrary HTML and web script
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Media Services - 'nsiislog.dll' Remote Overflow
CVE-2003-0227remotewindows14 Jul 2003
The logging capability for unicast and multicast transmissions in the ISAPI extension for Microsoft Windows Media Servic
35RISK
open
Exploit-DBVexDay Proof
Samba 2.2.8 - Brute Force Method Remote Command Execution
CVE-2003-0201remotelinux13 Jul 2003
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISK
open
Exploit-DBVexDay Proof
LeapWare LeapFTP 2.7.x - Remote Buffer Overflow
CVE-2003-0558remotewindows12 Jul 2003
Buffer overflow in LeapFTP 2.7.3.600 allows remote FTP servers to execute arbitrary code via a long IP address response
50RISK
open
Exploit-DBVexDay Proof
University of Minnesota Gopherd 2.0.x/2.3/3.0.x - GSisText Buffer Overflow
CVE-2003-0805remotelinux11 Jul 2003
Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary
23RISK
open
Exploit-DBVexDay Proof
University of Minnesota Gopherd 2.0.x/2.3/3.0.x - FTP Gateway Buffer Overflow
CVE-2003-0805remotelinux11 Jul 2003
Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary
23RISK
open
Exploit-DBVexDay Proof
Virtual Programming VP-ASP 5.00 - 'shopexd.asp' SQL Injection (2)
CVE-2003-0560webappsasp10 Jul 2003
SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the i
23RISK
open
Exploit-DBVexDay Proof
IglooFTP 0.6.1 - Banner Parsing Buffer Overflow
CVE-2003-0561remotefreebsd10 Jul 2003
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP bann
23RISK
open
Exploit-DBVexDay Proof
Virtual Programming VP-ASP 5.00 - 'shopexd.asp' SQL Injection (1)
CVE-2003-0560webappsasp10 Jul 2003
SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the i
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - CreateFile API Named Pipe Privilege Escalation (2)
CVE-2003-0496localwindows08 Jul 2003
Microsoft SQL Server before Windows 2000 SP4 allows local users to gain privileges as the SQL Server user by calling the
23RISK
open
Exploit-DBVexDay Proof
Microsoft IIS 5.0 - WebDAV Remote Code Execution (3) (xwdav)
CVE-2003-0109remotewindows08 Jul 2003
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - CreateFile API Named Pipe Privilege Escalation (1)
CVE-2003-0496localwindows08 Jul 2003
Microsoft SQL Server before Windows 2000 SP4 allows local users to gain privileges as the SQL Server user by calling the
23RISK
open
Exploit-DBVexDay Proof
CPanel 5.0/5.3/6.x - Admin Interface HTML Injection
CVE-2003-0521webappsphp07 Jul 2003
Cross-site scripting (XSS) vulnerability in cPanel 6.4.2 allows remote attackers to insert arbitrary HTML and possibly g
23RISK
open
Exploit-DBVexDay Proof
Twilight WebServer 1.3.3.0 - 'GET' Remote Denial of Service
CVE-2003-1318doswindows07 Jul 2003
Twilight Webserver 1.3.3.0 allows remote attackers to cause a denial of service (application crash) via a GET request fo
23RISK
open
Exploit-DBVexDay Proof
IglooFTP PRO 3.8 - Multiple Buffer Overflow Vulnerabilities (2)
CVE-2003-0561remotewindows07 Jul 2003
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP bann
23RISK
open
Exploit-DBVexDay Proof
IglooFTP PRO 3.8 - Multiple Buffer Overflow Vulnerabilities (1)
CVE-2003-0561remotewindows07 Jul 2003
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP bann
23RISK
open
Exploit-DBVexDay Proof
ProductCart 1.5/1.6/2.0 - 'MSG.asp' Cross-Site Scripting
CVE-2003-0523webappsasp05 Jul 2003
Cross-site scripting (XSS) vulnerability in msg.asp for certain versions of ProductCart allow remote attackers to execut
23RISK
open
Exploit-DBVexDay Proof
ProductCart 1.5/1.6/2.0 - File Disclosure
CVE-2003-1304webappsasp05 Jul 2003
EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, wh
23RISK
open
Exploit-DBVexDay Proof
Essentia Web Server 2.1 - 'URL' Remote Buffer Overflow
CVE-2002-0313remotewindows04 Jul 2003
Buffer overflow in Essentia Web Server 2.1 allows remote attackers to cause a denial of service, and possibly execute ar
23RISK
open
Exploit-DBVexDay Proof
Essentia Web Server 2.1 - 'URL' Remote Buffer Overflow
CVE-2006-5850remotewindows04 Jul 2003
Stack-based buffer overflow in Essentia Web Server 2.15 for Windows allows remote attackers to execute arbitrary code vi
23RISK
open
Exploit-DBVexDay Proof
eXtremail 1.5.x (Linux) - Remote Format Strings
CVE-2001-1078remotelinux02 Jul 2003
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privile
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Media Services - Remote (MS03-022)
CVE-2003-0349remotewindows01 Jul 2003
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability
60RISK
open
Exploit-DBVexDay Proof
Adobe Unix Acrobat Reader 4.0/5.0 - WWWLaunchNetscape Buffer Overflow
CVE-2003-0508doslinux01 Jul 2003
Buffer overflow in the WWWLaunchNetscape function of Adobe Acrobat Reader (acroread) 5.0.7 and earlier allows remote att
23RISK
open
Exploit-DBVexDay Proof
ezbounce 1.0/1.5 - Format String
CVE-2003-0510remotelinux01 Jul 2003
Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sess
23RISK
open
Exploit-DBVexDay Proof
InterSystems Cache 4.1.15/5.0.x - Insecure Default Permissions
CVE-2003-0497locallinux01 Jul 2003
Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privil
23RISK
open
Exploit-DBVexDay Proof
methane IRCd 0.1.1 - Remote Format String
CVE-2003-0478doslinux27 Jun 2003
Format string vulnerability in (1) Bahamut IRCd 1.4.35 and earlier, and other IRC daemons based on Bahamut including (2)
28RISK
open
Exploit-DBVexDay Proof
Kerio MailServer 5.6.3 - Remote Buffer Overflow
CVE-2003-0487remotelinux27 Jun 2003
Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and po
28RISK
open
Exploit-DBVexDay Proof
FoxWeb 2.5 - PATH_INFO Remote Buffer Overrun
CVE-2003-0762doswindows27 Jun 2003
Buffer overflow in (1) foxweb.dll and (2) foxweb.exe of Foxweb 2.5 allows remote attackers to execute arbitrary code via
23RISK
open
previouspage 727 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.