Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,107cataloged exploits
36,322CVEs with public exploitation
24,695lab-tested
79,057 exploits
VulnCheck XDB
initial-access
CVE-2020-1472MEDIUMunder attackransomware26 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
VulnCheck XDB
initial-access
CVE-2020-1472MEDIUMunder attackransomware25 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
VulnCheck XDB
local
CVE-2019-0808HIGHunder attack25 Sep 2020
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
98RISK
open
VulnCheck XDB
local
CVE-2016-5195HIGHunder attack25 Sep 2020
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open
GitHub PoC42
PoCs and technical analysis of three vulnerabilities found on Cisco AnyConnect for Windows: CVE-2020-3433, CVE-2020-3434 and CVE-2020-3435
CVE-2020-3433HIGHunder attackransomware25 Sep 2020
Cisco AnyConnect Secure Mobility Client for Windows DLL Hijacking Vulnerability
91RISK
open
VulnCheck XDB
local
CVE-2020-3433HIGHunder attackransomware25 Sep 2020
Cisco AnyConnect Secure Mobility Client for Windows DLL Hijacking Vulnerability
91RISK
open
GitHub PoC
This repository holds the advisory, exploits and vulnerable software of the CVE-2020-15492
CVE-2020-1549224 Sep 2020
An issue was discovered in INNEO Startup TOOLS 2017 M021 12.0.66.3784 through 2018 M040 13.0.70.3804. The sut_srv.exe we
28RISK
open
GitHub PoC
CVE 2020-1472 Script de validación
CVE-2020-1472MEDIUMunder attackransomware24 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
Metasploit600
HorizontCMS Arbitrary PHP File Upload
CVE-2020-2738724 Sep 2020
An unrestricted file upload issue in HorizontCMS through 1.0.0-beta allows an authenticated remote attacker (with access
23RISK
open
VulnCheck XDB
initial-access
CVE-2017-12617HIGHunder attack23 Sep 2020
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTT
100RISK
open
GitHub PoC1
PHPGurukul hostel-management-system 2.1 allows XSS via Guardian Name, Guardian Relation, Guardian Contact no, Address, City
CVE-2020-2527023 Sep 2020
PHPGurukul hostel-management-system 2.1 allows XSS via Guardian Name, Guardian Relation, Guardian Contact no, Address, o
23RISK
open
Exploit-DB
Comodo Unified Threat Management Web Console 2.7.0 - Remote Code Execution
CVE-2018-17431webappsmultiple22 Sep 2020
Web Console in Comodo UTM Firewall before 2.7.0 allows remote attackers to execute arbitrary code without authentication
60RISK
open
VulnCheck XDB
local
CVE-2020-1048HIGH21 Sep 2020
Windows Print Spooler Elevation of Privilege Vulnerability
61RISK
open
Metasploit600
Micro Focus Operations Bridge Reporter shrboadmin default password
CVE-2020-1185721 Sep 2020
An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The
23RISK
open
GitHub PoC
t31m0/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware21 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
Exploit-DB
Mida eFramework 2.9.0 - Back Door Access
CVE-2020-15921webappshardware21 Sep 2020
Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restric
28RISK
open
VulnCheck XDB
initial-access
CVE-2020-1472MEDIUMunder attackransomware21 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
Exploit-DB
BlackCat CMS 1.3.6 - Cross-Site Request Forgery
CVE-2020-25453webappsphp21 Sep 2020
An issue was discovered in BlackCat CMS before 1.4. There is a CSRF vulnerability (bypass csrf_token) that allows remote
23RISK
open
GitHub PoC
johnpathe/zerologon-cve-2020-1472-notes
CVE-2020-1472MEDIUMunder attackransomware20 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
A simple implementation/code smash of a bunch of other repos
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
VulnCheck XDB
initial-access
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC
hectorgie/CVE-2020-1472
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
VulnCheck XDB
initial-access
CVE-2020-1472MEDIUMunder attackransomware19 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
Exploit-DB
Mantis Bug Tracker 2.3.0 - Remote Code Execution (Unauthenticated)
CVE-2017-7615webappsphp18 Sep 2020
MantisBT through 2.3.0 allows arbitrary password reset and unauthenticated admin access via an empty confirm_hash value
60RISK
open
VulnCheck XDB
initial-access
CVE-2020-1472MEDIUMunder attackransomware18 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
Exploit-DB
SpamTitan 7.07 - Remote Code Execution (Authenticated)
CVE-2020-11700webappsmultiple18 Sep 2020
An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter fname, used on the page certs-x.
23RISK
open
Exploit-DB
SpamTitan 7.07 - Remote Code Execution (Authenticated)
CVE-2020-11804webappsmultiple18 Sep 2020
An issue was discovered in Titan SpamTitan 7.07. Due to improper sanitization of the parameter quid, used in the page ma
23RISK
open
GitHub PoC10
CVE-2020-1472复现时使用的py文件整理打包
CVE-2020-1472MEDIUMunder attackransomware18 Sep 2020
Netlogon Elevation of Privilege Vulnerability
100RISK
open
Exploit-DB
Mantis Bug Tracker 2.3.0 - Remote Code Execution (Unauthenticated)
CVE-2019-15715webappsphp18 Sep 2020
MantisBT before 1.3.20 and 2.22.1 allows Post Authentication Command Injection, leading to Remote Code Execution.
35RISK
open
Exploit-DB
SpamTitan 7.07 - Remote Code Execution (Authenticated)
CVE-2020-11699webappsmultiple18 Sep 2020
An issue was discovered in Titan SpamTitan 7.07. Improper validation of the parameter fname on the page certs-x.php woul
23RISK
open
previouspage 748 / 2,636next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.