Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
78,258cataloged exploits
36,019CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,458Referência 22,697GitHub PoC 14,455VulnCheck XDB 8,811Nuclei 4,349Metasploit 3,488✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - Window Message Subsystem Design Error (7)
NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute
23RISK
open ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 5 - MIME MultiPart Boundary Buffer Overflow
Buffer overflow in Eudora 5.1.1 and 5.0-J for Windows, and possibly other versions, allows remote attackers to execute a
23RISK
open ↗Exploit-DB✓ VexDay Proof
602Pro LAN SUITE 2002 - Telnet Proxy localhost Denial of Service
The Telnet proxy of 602Pro LAN SUITE 2002 does not restrict the number of outstanding connections to the local host, whi
23RISK
open ↗Exploit-DB✓ VexDay Proof
Sun AnswerBook2 1.x - Unauthorized Administrative Script Access
Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError a
23RISK
open ↗Exploit-DB✓ VexDay Proof
UoW IMAPd Server 10.234/12.264 - Remote Buffer Overflow
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISK
open ↗Exploit-DB✓ VexDay Proof
Bharat Mediratta Gallery 1.x - Remote File Inclusion
Gallery photo album package before 1.3.1 allows local and possibly remote attackers to execute arbitrary code via a modi
35RISK
open ↗Exploit-DB✓ VexDay Proof
William Deich Super 3.x - SysLog Format String
Format string vulnerability in super for Linux allows local users to gain root privileges via a long command line argume
23RISK
open ↗Exploit-DB✓ VexDay Proof
Dispair 0.1/0.2 - Remote Command Execution
Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields.
23RISK
open ↗Exploit-DB✓ VexDay Proof
Apache mod_ssl < 2.8.7 OpenSSL - 'OpenFuck.c' Remote Buffer Overflow
The dbm and shm session cache code in mod_ssl before 2.8.7-1.3.23, and Apache-SSL before 1.3.22+1.46, does not properly
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Media Player 6/7 - Filename Buffer Overflow
Buffer overflow in mplay32.exe of Microsoft Windows Media Player (WMP) 6.3 through 7.1 allows remote attackers to execut
35RISK
open ↗Exploit-DB✓ VexDay Proof
IPSwitch IMail 6.x/7.0.x - Web Calendaring Incomplete Post Denial of Service
IPSwitch IMail Web Calendaring service (iwebcal) allows remote attackers to cause a denial of service (crash) via an HTT
28RISK
open ↗Exploit-DB✓ VexDay Proof
dotProject 0.2.1 - User Cookie Authentication Bypass
index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cooki
23RISK
open ↗Exploit-DB✓ VexDay Proof
phpBB2 Gender Mod 1.1.3 - SQL Injection
SQL injection vulnerability in Gender MOD 1.1.3 allows remote attackers to gain administrative access via the user_level
23RISK
open ↗Exploit-DB✓ VexDay Proof
FreeBSD 4.x / NetBSD 1.4.x/1.5.x/1.6 / OpenBSD 3 - pppd Arbitrary File Permission Modification Race Condition
BSD pppd allows local users to change the permissions of arbitrary files via a symlink attack on a file that is specifie
23RISK
open ↗Exploit-DB✓ VexDay Proof
Ben Chivers Easy Guestbook 1.0 - Administrative Access
Easy Guestbook CGI programs do not authenticate the administrator, which allows remote attackers to (1) delete entries v
23RISK
open ↗Exploit-DB✓ VexDay Proof
Ben Chivers Easy Homepage Creator 1.0 - File Modification
The print_html_to_file function in edit.cgi for Easy Homepage Creator 1.0 does not check user credentials, which allows
23RISK
open ↗Exploit-DB✓ VexDay Proof
MM 1.0.x/1.1.x - Shared Memory Library Temporary File Privilege Escalation
OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a
23RISK
open ↗Exploit-DB✓ VexDay Proof
ShoutBox 1.2 - 'Form' HTML Injection
Cross-site scripting vulnerability in board.php of endity.com ShoutBOX allows remote attackers to inject arbitrary HTML
23RISK
open ↗Exploit-DB✓ VexDay Proof
HP ProCurve Switch 4000M - SNMP Write Denial of Service
HP ProCurve Switch 4000M C.07.23 allows remote attackers to cause a denial of service (crash) via an SNMP write request
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 / Microsoft ISA Server 2000 / Microsoft Proxy Server 2.0 Gopher Client - Remote Buffer Overflow
Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 a
35RISK
open ↗Exploit-DB✓ VexDay Proof
Lucent Access Point 300/600/1500 IP Services Router - Long HTTP Request Denial of Service
Buffer overflow in Lucent Access Point 300, 600, and 1500 Service Routers allows remote attackers to cause a denial of s
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cisco IOS 11.x - TFTP Server Long File Name Buffer Overflow
Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to ca
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - sp_MScopyscript SQL Injection
Microsoft SQL Server 2000 SP2, when configured as a distributor, allows attackers to execute arbitrary code via the @scr
23RISK
open ↗Exploit-DB✓ VexDay Proof
IPSwitch IMail 6.x/7.0/7.1 - Web Messaging GET Buffer Overflow
Buffer overflow in the Web Messaging daemon for Ipswitch IMail before 7.12 allows remote attackers to execute arbitrary
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - Resolution Service Heap Overflow
Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSD
60RISK
open ↗Exploit-DB✓ VexDay Proof
KaZaA Media Desktop 1.7.1 - Large Message Denial of Service
Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sen
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - Database Consistency Checkers Buffer Overflow
Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Eng
28RISK
open ↗Exploit-DB✓ VexDay Proof
Fake Identd 0.9/1.x - Client Query Remote Buffer Overflow
Buffer overflow in Fake Identd 0.9 through 1.4 allows remote attackers to execute arbitrary code as root via a long requ
23RISK
open ↗Exploit-DB✓ VexDay Proof
CodeBlue 5.1 - SMTP Response Buffer Overflow
Buffer overflow in CodeBlue 4 and earlier, and possibly other versions, allows remote attackers to execute arbitrary cod
23RISK
open ↗Exploit-DB✓ VexDay Proof
GNU Mailman 2.0.x - Subscribe Cross-Site Scripting
Cross-site scripting vulnerability in Mailman before 2.0.12 allows remote attackers to execute script as other users via
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.