Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,324cataloged exploits
36,054CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DBVexDay Proof
cfingerd 1.4 - Format String (2)
CVE-2001-0609remotelinux16 Apr 2001
Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privilege
28RISK
open
Exploit-DBVexDay Proof
FreeBSD 4.2-stable - FTPd 'glob()' Remote Buffer Overflow
CVE-2001-0247remotefreebsd16 Apr 2001
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern strin
28RISK
open
Exploit-DBVexDay Proof
Solaris 2.5/2.6/7.0/8 - 'mailx -F' Local Buffer Overflow (2)
CVE-2001-0565localsolaris15 Apr 2001
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F'
23RISK
open
Exploit-DBVexDay Proof
PHPSlash 0.5.3 2/0.6.1 - URL Block Arbitrary File Disclosure
CVE-2001-1334webappsphp15 Apr 2001
Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrar
23RISK
open
Exploit-DBVexDay Proof
Siemens Reliant UNIX 5.4 - ppd -T Race Condition
CVE-2001-0384localunix14 Apr 2001
ppd in Reliant Sinix allows local users to corrupt arbitrary files via a symlink attack in the /tmp/ppd.trace file.
23RISK
open
Exploit-DBVexDay Proof
FreeBSD 2.2-4.2 / NetBSD 1.2-4.5 / OpenBSD 2.x - FTPd 'glob()' Remote Buffer Overflow
CVE-2001-0247remotebsd14 Apr 2001
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern strin
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0/2000 - TCP Stack Denial of Service (1)
CVE-2002-1712doswindows13 Apr 2001
Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of e
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0/2000 - TCP Stack Denial of Service (2)
CVE-2002-1712doswindows13 Apr 2001
Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of e
28RISK
open
Exploit-DBVexDay Proof
Netscape SmartDownload 1.3 - Remote Buffer Overflow
CVE-2001-0262remotewindows13 Apr 2001
Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary command
23RISK
open
Exploit-DBVexDay Proof
Trend Micro Interscan VirusWall (Linux) 3.0.1 - Multiple Program Buffer Overflows
CVE-2001-0432doslinux13 Apr 2001
Buffer overflows in various CGI programs in the remote administration service for Trend Micro Interscan VirusWall 3.01 a
28RISK
open
Exploit-DBVexDay Proof
NCM Content Management System - content.pl Input Validation
CVE-2001-0418remotecgi13 Apr 2001
content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content dat
23RISK
open
Exploit-DBVexDay Proof
IBM Websphere/Net.Commerce 3 - CGI-BIN Macro Denial of Service
CVE-2001-0390doscgi13 Apr 2001
IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to cause a denial of service by directly calling the macro.d2w
23RISK
open
Exploit-DBVexDay Proof
Solaris 7.0/8 - IPCS Timezone Buffer Overflow
CVE-2001-0423localsolaris12 Apr 2001
Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environme
23RISK
open
Exploit-DBVexDay Proof
SGI IRIX 6.5 / Solaris 7.0/8 CDE - '/usr/dt/bin/dtsession' Local Buffer Overflow
CVE-2001-0426localunix11 Apr 2001
Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via
23RISK
open
Exploit-DBVexDay Proof
cfingerd 1.4 - Format String (1)
CVE-2001-0609remotelinux11 Apr 2001
Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privilege
28RISK
open
Exploit-DBVexDay Proof
Oracle Application Server 4.0.8.2 - ndwfn4.so Buffer Overflow
CVE-2001-0419doslinux11 Apr 2001
Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle app
28RISK
open
Exploit-DBVexDay Proof
nph-maillist 3.0/3.5 - Arbitrary Code Execution
CVE-2001-0400remotecgi10 Apr 2001
nph-maillist.pl allows remote attackers to execute arbitrary commands via shell metacharacters ("`") in the email addres
28RISK
open
Exploit-DBVexDay Proof
Solaris 2.x/7.0/8 - Xsun HOME Buffer Overflow
CVE-2001-0422localsolaris10 Apr 2001
Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME enviro
23RISK
open
Exploit-DBVexDay Proof
Strip Password Generator 0.3/0.4/0.5 - Limited Password-Space
CVE-2001-0597localpalm_os10 Apr 2001
Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to
23RISK
open
Exploit-DBVexDay Proof
Solaris 7/8 - 'kcms_configure' Command-Line Buffer Overflow (2)
CVE-2001-0594localsolaris09 Apr 2001
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overf
23RISK
open
Exploit-DBVexDay Proof
Netscape Navigator 4.0.8 - 'about:' Domain Information Disclosure
CVE-2001-0596remoteunix09 Apr 2001
Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment
23RISK
open
Exploit-DBVexDay Proof
Solaris 7/8 - 'kcms_configure' Command-Line Buffer Overflow (1)
CVE-2001-0594localsolaris09 Apr 2001
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overf
23RISK
open
Exploit-DBVexDay Proof
PGP 5.x/6.x/7.0 - ASCII Armor Parser Arbitrary File Creation
CVE-2001-0265remotemultiple09 Apr 2001
ASCII Armor parser in Windows PGP 7.0.3 and earlier allows attackers to create files in arbitrary locations via a malfor
23RISK
open
Exploit-DBVexDay Proof
IPFilter 3.x - Fragment Rule Bypass
CVE-2001-0402remoteunix09 Apr 2001
IPFilter 3.4.16 and earlier does not include sufficient session information in its cache, which allows remote attackers
23RISK
open
Exploit-DBVexDay Proof
Cisco PIX 4.x/5.x TACACS+ - Denial of Service
CVE-2001-0375doshardware06 Apr 2001
Cisco PIX Firewall 515 and 520 with 5.1.4 OS running aaa authentication to a TACACS+ server allows remote attackers to c
28RISK
open
Exploit-DBVexDay Proof
NTPd 4.0.99j-k readvar - Remote Buffer Overflow (Metasploit)
CVE-2001-0414remotelinux04 Apr 2001
Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial o
60RISK
open
Exploit-DBVexDay Proof
NTPd - Remote Buffer Overflow
CVE-2001-0414remotelinux04 Apr 2001
Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial o
60RISK
open
Exploit-DBVexDay Proof
Gene6 BPFTP Server 2.0 - File Existence Disclosure
CVE-2001-0263remotewindows03 Apr 2001
Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows attackers to read file attributes outside of the web root via the
23RISK
open
Exploit-DBVexDay Proof
Caucho Technology Resin 1.2/1.3 - JavaBean Disclosure
CVE-2001-0399remotemultiple03 Apr 2001
Caucho Resin 1.3b1 and earlier allows remote attackers to read source code for Javabean files by inserting a .jsp before
23RISK
open
Exploit-DBVexDay Proof
Gene6 BPFTP FTP Server 2.0 - User Credentials Disclosure
CVE-2001-0264remotewindows03 Apr 2001
Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows remote attackers to obtain NETBIOS credentials by requesting info
23RISK
open
previouspage 773 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.