Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,057cataloged exploits
36,288CVEs with public exploitation
24,695lab-tested
79,057 exploits
GitHub PoC42
OpenSSH 2.3 < 7.7 - Username Enumeration
CVE-2018-15473MEDIUM29 Nov 2020
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
70RISK
open
VulnCheck XDB
local
CVE-2017-9805HIGHunder attack28 Nov 2020
The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses an XStreamHandler with a
100RISK
open
GitHub PoC1
Exploit script for Apache Struts2 REST Plugin XStream RCE (‎CVE-2017-9805)
CVE-2017-9805HIGHunder attack28 Nov 2020
The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses an XStreamHandler with a
100RISK
open
Exploit-DB
Foxit Reader 9.0.1.1049 - Arbitrary Code Execution
CVE-2018-9958localwindows27 Nov 2020
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1
50RISK
open
GitHub PoC
Dirty-Racoon/CVE-2018-15473-py3
CVE-2018-15473MEDIUM27 Nov 2020
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
70RISK
open
Exploit-DB
Best Support System 3.0.4 - 'ticket_body' Persistent XSS (Authenticated)
CVE-2020-24963webappsphp27 Nov 2020
An Authenticated Persistent XSS vulnerability was discovered in the Best Support System, tested version v3.0.4.
23RISK
open
Exploit-DB
Laravel Administrator 4 - Unrestricted File Upload (Authenticated)
CVE-2020-10963webappsphp27 Nov 2020
FrozenNode Laravel-Administrator through 5.0.12 allows unrestricted file upload (and consequently Remote Code Execution)
28RISK
open
Exploit-DB
Acronis Cyber Backup 12.5 Build 16341 - Unauthenticated SSRF
CVE-2020-16171webappsmultiple27 Nov 2020
An issue was discovered in Acronis Cyber Backup before 12.5 Build 16342. Some API endpoints on port 9877 under /api/ams/
23RISK
open
Exploit-DB
libupnp 1.6.18 - Stack-based buffer overflow (DoS)
CVE-2012-5958doslinux27 Nov 2020
Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable
60RISK
open
VulnCheck XDB
client-side
CVE-2020-6287CRITICALunder attack27 Nov 2020
SAP NetWeaver AS JAVA (LM Configuration Wizard), versions - 7.30, 7.31, 7.40, 7.50, does not perform an authentication c
100RISK
open
GitHub PoC4
A CVE-2020-17087 PoC.
CVE-2020-17087HIGHunder attack26 Nov 2020
Windows Kernel Local Elevation of Privilege Vulnerability
71RISK
open
VulnCheck XDB
initial-access
CVE-2020-2687926 Nov 2020
Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacke
50RISK
open
VulnCheck XDB
denial-of-service
CVE-2020-17087HIGHunder attack26 Nov 2020
Windows Kernel Local Elevation of Privilege Vulnerability
71RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2020-2687826 Nov 2020
Ruckus through 1.5.1.0.21 is affected by remote command injection. An authenticated user can submit a query to the API (
28RISK
open
Exploit-DBVexDay Proof
Razer Chroma SDK Server 3.16.02 - Race Condition Remote File Execution
CVE-2020-16602remotewindows26 Nov 2020
Razer Chroma SDK Rest Server through 3.12.17 allows remote attackers to execute arbitrary programs because there is a ra
23RISK
open
GitHub PoC5
CVE-2020-2883
CVE-2020-2883CRITICALunder attack26 Nov 2020
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions th
100RISK
open
GitHub PoC
openssh<7.7 用户名枚举
CVE-2018-15473MEDIUM26 Nov 2020
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
70RISK
open
VulnCheck XDB
initial-access
CVE-2020-2883CRITICALunder attack26 Nov 2020
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions th
100RISK
open
VulnCheck XDB
initial-access
CVE-2020-1394224 Nov 2020
Remote Code Execution in Apache Unomi
50RISK
open
GitHub PoC1
www201001/https-github.com-iBearcat-CVE-2018-8174_EXP.git-
CVE-2018-8174HIGHunder attackransomware24 Nov 2020
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows
93RISK
open
Exploit-DB
Apache OpenMeetings 5.0.0 - 'hostname' Denial of Service
CVE-2020-13951webappsmultiple24 Nov 2020
Attackers can use public NetTest web service of Apache OpenMeetings 4.0.0-5.0.0 to organize denial of service attack.
45RISK
open
GitHub PoC1
www201001/https-github.com-iBearcat-CVE-2018-8174_EXP
CVE-2018-8174HIGHunder attackransomware24 Nov 2020
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows
93RISK
open
VulnCheck XDB
initial-access
CVE-2020-1197524 Nov 2020
Apache Unomi allows conditions to use OGNL scripting which offers the possibility to call static Java classes from the J
43RISK
open
Exploit-DBVexDay Proof
ZeroShell 3.9.0 - 'cgi-bin/kerbynet' Remote Root Command Injection (Metasploit)
CVE-2019-12725webappslinux24 Nov 2020
Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web ap
60RISK
open
GitHub PoC
1stPeak/CVE-2018-15473
CVE-2018-15473MEDIUM23 Nov 2020
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
70RISK
open
Exploit-DB
LifeRay 7.2.1 GA2 - Stored XSS
CVE-2020-7934webappsmultiple23 Nov 2020
In LifeRay Portal CE 7.1.0 through 7.2.1 GA2, the First Name, Middle Name, and Last Name fields for user accounts in MyA
23RISK
open
Exploit-DB
TP-Link TL-WA855RE V5_200415 - Device Reset Auth Bypass
CVE-2020-24363HIGHunder attackwebappshardware23 Nov 2020
TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP
76RISK
open
VulnCheck XDB
initial-access
CVE-2019-0708CRITICALunder attackransomware22 Nov 2020
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unau
100RISK
open
GitHub PoC1
This container was made to explain and demonstrate how CVE-2019-15813 (Sentrifugo works)
CVE-2019-1581322 Nov 2020
Multiple file upload restriction bypass vulnerabilities in Sentrifugo 3.2 could allow authenticated users to execute arb
35RISK
open
VulnCheck XDB
initial-access
CVE-2020-1394221 Nov 2020
Remote Code Execution in Apache Unomi
50RISK
open
previouspage 738 / 2,636next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.