Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,057cataloged exploits
36,288CVEs with public exploitation
24,695lab-tested
79,043 exploits
GitHub PoC26
cygenta/CVE-2020-3452
CVE-2020-3452HIGHunder attack13 Dec 2020
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability
100RISK
open
Metasploit600
TerraMaster TOS 4.2.06 or lower - Unauthenticated Remote Code Execution
CVE-2020-3566512 Dec 2020
An unauthenticated command-execution vulnerability exists in TerraMaster TOS through 4.2.06 via shell metacharacters in
60RISK
open
Metasploit600
TerraMaster TOS 4.2.06 or lower - Unauthenticated Remote Code Execution
CVE-2020-2818812 Dec 2020
Remote Command Execution (RCE) vulnerability in TerraMaster TOS <= 4.2.06 allow remote unauthenticated attackers to inje
40RISK
open
Metasploit300
WordPress Total Upkeep Unauthenticated Backup Downloader
CVE-2020-36848HIGH12 Dec 2020
Total Upkeep by BoldGrid <= 1.14.9 - Unauthenticated Backup Download
36RISK
open
Exploit-DB
Jenkins 2.235.3 - 'tooltip' Stored Cross-Site Scripting
CVE-2020-2229webappsjava11 Dec 2020
Jenkins 2.251 and earlier, LTS 2.235.3 and earlier does not escape the tooltip content of help icons, resulting in a sto
23RISK
open
GitHub PoC
MasterSploit/CVE-2020-0787
CVE-2020-0787HIGHunder attackransomware11 Dec 2020
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperl
98RISK
open
GitHub PoC
MasterSploit/CVE-2020-0787-BitsArbitraryFileMove-master
CVE-2020-0787HIGHunder attackransomware11 Dec 2020
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperl
98RISK
open
Exploit-DB
Rukovoditel 2.6.1 - RCE (1)
CVE-2020-11819webappsphp11 Dec 2020
In Rukovoditel 2.5.2, an attacker may inject an arbitrary .php file location instead of a language file and thus achieve
28RISK
open
Exploit-DB
Jenkins 2.235.3 - 'Description' Stored XSS
CVE-2020-2230webappsjava11 Dec 2020
Jenkins 2.251 and earlier, LTS 2.235.3 and earlier does not escape the project naming strategy description, resulting in
45RISK
open
GitHub PoC9
S2-059(CVE-2019-0230)
CVE-2019-023011 Dec 2020
Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lea
60RISK
open
VulnCheck XDB
initial-access
CVE-2020-17530CRITICALunder attack10 Dec 2020
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected
100RISK
open
GitHub PoC46
S2-061 的payload,以及对应简单的PoC/Exp
CVE-2020-17530CRITICALunder attack10 Dec 2020
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected
100RISK
open
GitHub PoC157
weaponized tool for CVE-2020-17144
CVE-2020-17144HIGHunder attack09 Dec 2020
Microsoft Exchange Remote Code Execution Vulnerability
83RISK
open
GitHub PoC157
Exchange2010 authorized RCE
CVE-2020-17144HIGHunder attack09 Dec 2020
Microsoft Exchange Remote Code Execution Vulnerability
83RISK
open
GitHub PoC64
ka1n4t/CVE-2020-17530
CVE-2020-17530CRITICALunder attack09 Dec 2020
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected
100RISK
open
GitHub PoC1
Apache Struts2框架是一个用于开发Java EE网络应用程序的Web框架。Apache Struts于2020年12月08日披露 S2-061 Struts 远程代码执行漏洞(CVE-2020-17530),在使用某些tag等情况下可能存在OGNL表达式注入漏洞,从而造成远程代码执行,风险极大。提醒我校Apache Struts用户尽快采取安全措施阻止漏洞攻击。
CVE-2020-17530CRITICALunder attack09 Dec 2020
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected
100RISK
open
Exploit-DB
SmarterMail Build 6985 - Remote Code Execution
CVE-2019-7214remotewindows09 Dec 2020
SmarterTools SmarterMail 16.x before build 6985 allows deserialization of untrusted data. An unauthenticated attacker co
60RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2020-17144HIGHunder attack09 Dec 2020
Microsoft Exchange Remote Code Execution Vulnerability
83RISK
open
VulnCheck XDB
initial-access
CVE-2020-17530CRITICALunder attack09 Dec 2020
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2014-0160HIGHunder attack09 Dec 2020
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packe
100RISK
open
GitHub PoC
WildfootW/CVE-2014-0160_OpenSSL_1.0.1f_Heartbleed
CVE-2014-0160HIGHunder attack09 Dec 2020
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packe
100RISK
open
GitHub PoC
WildfootW/CVE-2018-15473_OpenSSH_7.7
CVE-2018-15473MEDIUM09 Dec 2020
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
70RISK
open
GitHub PoC
WildfootW/CVE-2007-2447_Samba_3.0.25rc3
CVE-2007-244709 Dec 2020
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2020-17144HIGHunder attack09 Dec 2020
Microsoft Exchange Remote Code Execution Vulnerability
83RISK
open
VulnCheck XDB
infoleak
CVE-2020-0796CRITICALunder attackransomware08 Dec 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
VulnCheck XDB
denial-of-service
CVE-2020-0796CRITICALunder attackransomware08 Dec 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
VulnCheck XDB
local
CVE-2020-0796CRITICALunder attackransomware08 Dec 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC
Remote code execution in Mediawiki Score
CVE-2020-29007CRITICAL08 Dec 2020
The Score extension through 0.3.0 for MediaWiki has a remote code execution vulnerability due to improper sandboxing of
48RISK
open
VulnCheck XDB
initial-access
CVE-2020-7961CRITICALunder attack08 Dec 2020
Deserialization of Untrusted Data in Liferay Portal prior to 7.2.1 CE GA2 allows remote attackers to execute arbitrary c
100RISK
open
VulnCheck XDB
infoleak
CVE-2020-1472MEDIUMunder attackransomware08 Dec 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
previouspage 735 / 2,635next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.