Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,258cataloged exploits
36,019CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DBVexDay Proof
XTux Server 2001.0 6.01 - Garbage Denial of Service
CVE-2002-0431doslinux09 Mar 2002
XTux allows remote attackers to cause a denial of service (CPU consumption) via random inputs in the initial connection.
23RISK
open
Exploit-DBVexDay Proof
Xerver 2.10 - Multiple Request Denial of Service Vulnerabilities
CVE-2002-0448doswindows08 Mar 2002
Xerver Free Web Server 2.10 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request
28RISK
open
Exploit-DBVexDay Proof
Cobalt RaQ 2.0/3.0/4.0 XTR - 'MultiFileUpload.php' Authentication Bypass (2)
CVE-2002-0430remotephp08 Mar 2002
MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authenticatio
23RISK
open
Exploit-DBVexDay Proof
Cobalt RaQ 2.0/3.0/4.0 XTR - 'MultiFileUpload.php' Authentication Bypass (1)
CVE-2002-0430remotephp08 Mar 2002
MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authenticatio
23RISK
open
Exploit-DBVexDay Proof
OpenSSH 2.x/3.0.1/3.0.2 - Channel Code Off-by-One
CVE-2002-0083remoteunix07 Mar 2002
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain
28RISK
open
Exploit-DBVexDay Proof
Microsoft IIS 4.0/5.0/5.1 - Authentication Method Disclosure
CVE-2002-0419remotewindows05 Mar 2002
Information leaks in IIS 4 through 5.1 allow remote attackers to obtain potentially sensitive information or more easily
35RISK
open
Exploit-DBVexDay Proof
ReBB 1.0 - Image Tag Cross-Agent Scripting
CVE-2002-0413webappsphp04 Mar 2002
Cross-site scripting vulnerability in ReBB allows remote attackers to execute arbitrary Javascript and steal cookies via
23RISK
open
Exploit-DBVexDay Proof
Ecartis 1.0.0/0.129 a Listar - Multiple Local Buffer Overflow Vulnerabilities (1)
CVE-2002-0468locallinux27 Feb 2002
Buffer overflows in Ecartis (formerly Listar) 1.0.0 in snapshot 20020427 and earlier allow local users to gain privilege
23RISK
open
Exploit-DBVexDay Proof
Galacticomm Worldgroup 3.20 - Remote Web Server Denial of Service
CVE-2002-0335doswindows27 Feb 2002
Buffer overflow in Galacticomm Worldgroup web server 3.20 and earlier allows remote attackers to cause a denial of servi
23RISK
open
Exploit-DBVexDay Proof
Ecartis 1.0.0/0.129 a Listar - Multiple Local Buffer Overflow Vulnerabilities (2)
CVE-2002-0468locallinux27 Feb 2002
Buffer overflows in Ecartis (formerly Listar) 1.0.0 in snapshot 20020427 and earlier allow local users to gain privilege
23RISK
open
Exploit-DBVexDay Proof
Galacticomm Worldgroup 3.20 - Remote FTP Denial of Service
CVE-2002-0336doswindows27 Feb 2002
Buffer overflow in Galacticomm Worldgroup FTP server 3.20 and earlier allows remote attackers to cause a denial of servi
23RISK
open
Exploit-DBVexDay Proof
Rit Research Labs The Bat! 1.53 - Microsoft Denial of Service Device Name Denial of Service
CVE-2002-0338doswindows27 Feb 2002
The Bat! 1.53d and 1.54beta, and possibly other versions, allows remote attackers to cause a denial of service (crash) v
23RISK
open
Exploit-DBVexDay Proof
xtell 2.6.1 - User Status Remote Information Disclosure
CVE-2002-0333remotelinux27 Feb 2002
Directory traversal vulnerability in xtell (xtelld) 1.91.1 and earlier, and 2.x before 2.7, allows remote attackers to r
23RISK
open
Exploit-DBVexDay Proof
xtell 1.91.1/2.6.1 - Multiple Remote Buffer Overflow Vulnerabilities
CVE-2002-0332remotelinux27 Feb 2002
Buffer overflows in xtell (xtelld) 1.91.1 and earlier, and 2.x before 2.7, allows remote attackers to execute arbitrary
23RISK
open
Exploit-DBVexDay Proof
BPM Studio Pro 4.2 - HTTPd Directory Traversal
CVE-2002-0331remotewindows27 Feb 2002
Directory traversal vulnerability in the HTTP server for BPM Studio Pro 4.2 allows remote attackers to read arbitrary fi
23RISK
open
Exploit-DBVexDay Proof
Snitz Forums 2000 3.0/3.1/3.3 - Image Tag Cross-Agent Scripting
CVE-2002-0329webappsasp27 Feb 2002
Cross-site scripting vulnerability in Snitz Forums 2000 3.3.03 and earlier allows remote attackers to execute arbitrary
23RISK
open
Exploit-DBVexDay Proof
Working Resources BadBlue 1.5/1.6 - Directory Traversal
CVE-2002-0325remotewindows26 Feb 2002
Directory traversal vulnerability in BadBlue before 1.6.1 allows remote attackers to read arbitrary files via a ... (mod
35RISK
open
Exploit-DBVexDay Proof
IkonBoard 2.17/3.0/3.1 - Image Tag Cross-Agent Scripting
CVE-2002-0328webappsphp26 Feb 2002
Cross-site scripting vulnerability in Ikonboard 3.0.1 allows remote attackers to execute arbitrary script as other Ikonb
23RISK
open
Exploit-DBVexDay Proof
OpenBB 1.0.x - Image Tag Cross-Agent Scripting
CVE-2002-0330webappsphp25 Feb 2002
Cross-site scripting vulnerability in codeparse.php of Open Bulletin Board (OpenBB) 1.0.0 allows remote attackers to exe
23RISK
open
Exploit-DBVexDay Proof
Century Software Term For Linux 6.27.869 - Command Line Buffer Overflow
CVE-2002-0327locallinux25 Feb 2002
Buffer overflow in Century Software TERM allows local users to gain root privileges via a long tty argument to the calli
23RISK
open
Exploit-DBVexDay Proof
XMB Forum 1.6 pre-beta - Image Tag Script Injection
CVE-2002-0316webappsphp22 Feb 2002
Cross-site scripting vulnerability in eXtreme message board (XMB) 1.6x and earlier allows remote attackers to execute sc
23RISK
open
Exploit-DBVexDay Proof
Powie PForum 1.1x - 'Username' Cross-Site Scripting
CVE-2002-0319webappsphp22 Feb 2002
Cross-site scripting vulnerability in edituser.php for pforum 1.14 and earlier allows remote attackers to execute script
23RISK
open
Exploit-DBVexDay Proof
Squid 2.0-4 - Cache FTP Proxy URL Buffer Overflow
CVE-2002-0068remoteunix21 Feb 2002
Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service (core dump) and possibly execute arbi
23RISK
open
Exploit-DBVexDay Proof
Apache 1.3 - Artificially Long Slash Path Directory Listing (2)
CVE-2001-0925remotemultiple21 Feb 2002
The default installation of Apache before 1.3.19 allows remote attackers to list directories instead of the multiview in
45RISK
open
Exploit-DBVexDay Proof
Tarantella Enterprise 3 - Symbolic Link
CVE-2002-0296localunix19 Feb 2002
The installation of Tarantella Enterprise 3 allows local users to overwrite arbitrary files via a symlink attack on the
23RISK
open
Exploit-DBVexDay Proof
GNUJSP 1.0 - File Disclosure
CVE-2002-0300remotemultiple19 Feb 2002
gnujsp 1.0.0 and 1.0.1 allows remote attackers to list directories, read source code of certain scripts, and bypass acce
23RISK
open
Exploit-DBVexDay Proof
Phusion WebServer 1.0 - 'URL' Remote Buffer Overflow
CVE-2002-0289remotewindows16 Feb 2002
Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary cod
28RISK
open
Exploit-DBVexDay Proof
Phusion WebServer 1.0 - Long URL Denial of Service
CVE-2002-0289doswindows16 Feb 2002
Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary cod
28RISK
open
Exploit-DBVexDay Proof
Icecast 1.x - AVLLib Buffer Overflow
CVE-2002-0177remoteunix16 Feb 2002
Buffer overflows in icecast 1.3.11 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET req
23RISK
open
Exploit-DBVexDay Proof
Phusion WebServer 1.0 - Directory Traversal (1)
CVE-2002-0288remotewindows16 Feb 2002
Directory traversal vulnerability in Phusion web server 1.0 allows remote attackers to read arbitrary files via a ... (t
23RISK
open
previouspage 759 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.