Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
78,324cataloged exploits
36,054CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,458Referência 22,721GitHub PoC 14,477VulnCheck XDB 8,829Nuclei 4,350Metasploit 3,489✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
WebTrends Enterprise Reporting Server 3.1 c/3.5 - Source Code Disclosure
WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an enc
23RISK
open ↗Exploit-DB✓ VexDay Proof
OReilly Software WebBoard 4.10.30 - Pager Hostile JavaScript
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with
23RISK
open ↗Exploit-DB✓ VexDay Proof
Solaris 8 mailtool - Local Buffer Overflow
Buffer overflow in the Xview library as used by mailtool in Solaris 8 and earlier allows a local attacker to gain privil
23RISK
open ↗Exploit-DB✓ VexDay Proof
Solaris 2.6/2.6/7.0/8 whodo - Local Buffer Overflow
Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1)
23RISK
open ↗Exploit-DB✓ VexDay Proof
Acme.Serve 1.7 - Arbitrary File Access
Acme.Serve 1.7, as used in Cisco Secure ACS Unix and possibly other products, allows remote attackers to read arbitrary
23RISK
open ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 5.1 - Hidden Attachment Execution
Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "
23RISK
open ↗Exploit-DB✓ VexDay Proof
Aladdin Knowledge Systems eSafe Gateway 3.0 - HTML tag Script-filtering Bypass
Aladdin eSafe Gateway versions 2.x allows a remote attacker to circumvent HTML SCRIPT filtering via a special arrangemen
23RISK
open ↗Exploit-DB✓ VexDay Proof
GNU Privacy Guard 1.0.x - Format String
Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privi
28RISK
open ↗Exploit-DB✓ VexDay Proof
Aladdin Knowledge Systems eSafe Gateway 3.0 - Unicode Script-filtering Bypass
Aladdin eSafe Gateway versions 3.0 and earlier allows a remote attacker to circumvent HTML SCRIPT filtering via the UNIC
23RISK
open ↗Exploit-DB✓ VexDay Proof
Cosmicperl Directory Pro 2.0 - Arbitrary File Disclosure
Directory traversal vulnerability in cosmicpro.cgi in Cosmicperl Directory Pro 2.0 allows remote attackers to gain sensi
23RISK
open ↗Exploit-DB✓ VexDay Proof
ACLogic CesarFTP 0.98b - Directory Traversal
Directory traversal vulnerability in CesarFTP 0.98b and earlier allows remote authenticated users (such as anonymous) to
23RISK
open ↗Exploit-DB✓ VexDay Proof
Omnicron OmniHTTPd 2.0.4-8 - File Source Disclosure
OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol f
23RISK
open ↗Exploit-DB✓ VexDay Proof
faust Informatics FreeStyle chat 4.1 sr2 - Directory Traversal
Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker t
23RISK
open ↗Exploit-DB✓ VexDay Proof
Faust Informatics FreeStyle Chat 4.1 SR2 MS-DOS Device Name - Denial of Service
Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to create a denial of service via a UR
23RISK
open ↗Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall for Windows NT 3.4/3.5/3.51 - Remote Reconfiguration
Trend Micro InterScan VirusWall for Windows NT allows remote attackers to make configuration changes by directly calling
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - Debug Registers
Windows 2000 allows local users to cause a denial of service and possibly gain privileges by setting a hardware breakpoi
23RISK
open ↗Exploit-DB✓ VexDay Proof
Beck IPC GmbH IPC@CHIP - TelnetD Login Account Brute Force
Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered
23RISK
open ↗Exploit-DB✓ VexDay Proof
mimanet source viewer 2.0 - Directory Traversal
Directory traversal vulnerability in MIMAnet viewsrc.cgi 2.0 allows a remote attacker to read arbitrary files via a '..'
23RISK
open ↗Exploit-DB✓ VexDay Proof
eSafe Gateway 2.1 - Script-filtering Bypass
Aladdin eSafe Gateway versions 3.0 and earlier allows a remote attacker to circumvent filtering of SCRIPT tags by embedd
23RISK
open ↗Exploit-DB✓ VexDay Proof
ARCservIT 6.61/6.63 Client - inetd.tmp Arbitrary File Overwrite
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via
23RISK
open ↗Exploit-DB✓ VexDay Proof
ARCservIT 6.61/6.63 Client - asagent.tmp Arbitrary File Overwrite
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (2)
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISK
open ↗Exploit-DB✓ VexDay Proof
iPlanet 4.1 Web Publisher - Remote Buffer Overflow (1)
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cau
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (1)
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (5)
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISK
open ↗Exploit-DB✓ VexDay Proof
iPlanet 4.1 Web Publisher - Remote Buffer Overflow (2)
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cau
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (3)
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (4)
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (6)
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (7)
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.