Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,294cataloged exploits
36,048CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DBVexDay Proof
Novell Groupwise 5.5/6.0 Servlet Gateway - Default Authentication
CVE-2001-1195remotenovell15 Dec 2001
Novell Groupwise 5.5 and 6.0 Servlet Gateway is installed with a default username and password for the servlet manager,
23RISK
open
Exploit-DBVexDay Proof
System V Derived /bin/login - Extraneous Arguments Buffer Overflow (modem based) (Metasploit)
CVE-2001-0797remotesolaris12 Dec 2001
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary comman
60RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - Internet Key Exchange Denial of Service (1)
CVE-2001-0951doswindows11 Dec 2001
Windows 2000 allows remote attackers to cause a denial of service (CPU consumption) by flooding Internet Key Exchange (I
28RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6.0 / Mozilla 0.9.6 / Opera 5.1 - Image Count Denial of Service
CVE-2001-1491dosmultiple11 Dec 2001
Opera 5.11 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a
23RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6.0 / Mozilla 0.9.6 / Opera 5.1 - Image Count Denial of Service
CVE-2001-1490dosmultiple11 Dec 2001
Mozilla 0.9.6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with
23RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6.0 / Mozilla 0.9.6 / Opera 5.1 - Image Count Denial of Service
CVE-2001-1489dosmultiple11 Dec 2001
Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via
28RISK
open
Exploit-DBVexDay Proof
Brian Dorricott MAILTO 1.0.7-9 - Unauthorized Mail Server Use
CVE-2001-1188remotewindows11 Dec 2001
mailto.exe in Brian Dorricott MAILTO 1.0.9 and earlier allows remote attackers to send SPAM e-mail through remote server
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - RunAs Service Named Pipe Hijacking
CVE-2001-1519localwindows11 Dec 2001
RunAs (runas.exe) in Windows 2000 allows local users to create a spoofed named pipe when the service is stopped, then ca
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - RunAs Service Denial of Service
CVE-2001-1518doswindows11 Dec 2001
RunAs (runas.exe) in Windows 2000 only creates one session instance at a time, which allows local users to cause a denia
23RISK
open
Exploit-DBVexDay Proof
Microsoft IIS 5.0 - False Content-Length Field Denial of Service
CVE-2001-1186doswindows11 Dec 2001
Microsoft IIS 5.0 allows remote attackers to cause a denial of service via an HTTP request with a content-length value t
35RISK
open
Exploit-DBVexDay Proof
FreeBSD 4.4 - AIO Library Cross Process Memory Write
CVE-2001-1185localfreebsd10 Dec 2001
Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwr
23RISK
open
Exploit-DBVexDay Proof
Denicomp Winsock RSHD/NT Standard Error 2.21.00 - Denial of Service
CVE-2001-1184doswindows10 Dec 2001
wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU co
23RISK
open
Exploit-DBVexDay Proof
Denicomp Winsock RSHD/NT Standard Error 2.20.00 - Denial of Service
CVE-2001-1184doswindows10 Dec 2001
wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU co
23RISK
open
Exploit-DBVexDay Proof
McKesson Pathways Homecare 6.5 - Weak 'Username' and Password Encryption
CVE-2001-1546HIGHlocalwindows07 Dec 2001
Pathways Homecare 6.5 uses weak encryption for user names and passwords, which allows local users to gain privileges by
41RISK
open
Exploit-DBVexDay Proof
Volition Red Faction 1.0/1.1 - Game Server/Client Denial of Service
CVE-2001-0952doswindows07 Dec 2001
THQ Volition Red Faction Game allows remote attackers to cause a denial of service (hang) of a client or server via pack
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - Internet Key Exchange Denial of Service (2)
CVE-2001-0951doswindows07 Dec 2001
Windows 2000 allows remote attackers to cause a denial of service (CPU consumption) by flooding Internet Key Exchange (I
28RISK
open
Exploit-DBVexDay Proof
ZoneAlarm Pro 1.0/2.x - Outbound Packet Bypass
CVE-2001-1549remotewindows06 Dec 2001
Tiny Personal Firewall 1.0 and 2.0 allows local users to bypass filtering via non-standard TCP packets created with non-
23RISK
open
Exploit-DBVexDay Proof
PHP-Nuke 1.0/2.5/3.0/4.x/5.x/6.x/7.x - 'user.php?uname' Cross-Site Scripting
CVE-2001-1524webappsphp03 Dec 2001
Cross-site scripting (XSS) vulnerability in PHP-Nuke 5.3.1 and earlier allows remote attackers to inject arbitrary web s
23RISK
open
Exploit-DBVexDay Proof
PHP-Nuke 1.0/2.5/3.0/4.x/5.x/6.x/7.x - 'modules.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2001-1524webappsphp03 Dec 2001
Cross-site scripting (XSS) vulnerability in PHP-Nuke 5.3.1 and earlier allows remote attackers to inject arbitrary web s
23RISK
open
Exploit-DBVexDay Proof
OpenBSD 2.x/3.0 - User Mode Return Value Denial of Service
CVE-2001-1559dosopenbsd03 Dec 2001
The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mo
23RISK
open
Exploit-DBVexDay Proof
EasyNews 1.5 - NewsDatabase/Template Modification
CVE-2001-1525webappsphp01 Dec 2001
Directory traversal vulnerability in the comments action in easyNews 1.5 and earlier allows remote attackers to modify n
23RISK
open
Exploit-DBVexDay Proof
Cooolsoft PowerFTP Server 2.0 3/2.10 - Multiple Denial of Service Vulnerabilities (1)
CVE-2001-0932doswindows29 Nov 2001
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly exec
28RISK
open
Exploit-DBVexDay Proof
Cooolsoft PowerFTP Server 2.0 3/2.10 - Multiple Denial of Service Vulnerabilities (2)
CVE-2001-0932doswindows29 Nov 2001
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly exec
28RISK
open
Exploit-DBVexDay Proof
WU-FTPD 2.6 - File Globbing Heap Corruption
CVE-2001-0550remoteunix27 Nov 2001
wu-ftpd 2.6.1 allows remote attackers to execute arbitrary commands via a "~{" argument to commands such as CWD, which i
45RISK
open
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5.5/6.0 - Spoofable File Extensions
CVE-2001-0875remotewindows26 Nov 2001
Internet Explorer 5.5 and 6.0 allows remote attackers to cause the File Download dialogue box to misrepresent the name o
28RISK
open
Exploit-DBVexDay Proof
ibm informix Web Datablade 3.x/4.1 - Directory Traversal
CVE-2001-0924remotemultiple22 Nov 2001
Directory traversal vulnerability in ifx CGI program in Informix Web DataBlade allows remote attackers to read arbitrary
23RISK
open
Exploit-DBVexDay Proof
SuSE Linux 6.4/7.0/7.1/7.2 Berkeley Parallel Make - Local Buffer Overflow
CVE-2001-0916locallinux21 Nov 2001
Buffer overflow in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via a l
23RISK
open
Exploit-DBVexDay Proof
SuSE Linux 6.4/7.0/7.1/7.2 Berkeley Parallel Make - Shell Definition Format String
CVE-2001-0915locallinux21 Nov 2001
Format string vulnerability in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privil
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows XP - HCP URI Buffer Overflow
CVE-2001-0909doswindows21 Nov 2001
Buffer overflow in helpctr.exe program in Microsoft Help Center for Windows XP allows remote attackers to execute arbitr
28RISK
open
Exploit-DBVexDay Proof
bharat Mediratta Gallery 1.1/1.2 - Directory Traversal
CVE-2001-0900webappsphp19 Nov 2001
Directory traversal vulnerability in modules.php in Gallery before 1.2.3 allows remote attackers to read arbitrary files
23RISK
open
previouspage 763 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.