Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,324cataloged exploits
36,054CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DBVexDay Proof
Xmail 0.5/0.6 CTRLServer - Arbitrary Commands
CVE-2001-0192remotelinux01 Feb 2001
Buffer overflows in CTRLServer in XMail allows attackers to execute arbitrary commands via the cfgfileget or domaindel f
23RISK
open
Exploit-DBVexDay Proof
Debian 2.2 / Su.S.E 6.3/6.4/7.0 - man '-l' Format String
CVE-2001-0193locallinux31 Jan 2001
Format string vulnerability in man in some Linux distributions allows local users to gain privileges via a malformed -l
23RISK
open
Exploit-DBVexDay Proof
Solaris 7/8 - ximp40 Library Buffer Overflow
CVE-2001-0165localsolaris31 Jan 2001
Buffer overflow in ximp40 shared library in Solaris 7 and Solaris 8 allows local users to gain privileges via a long "ar
23RISK
open
Exploit-DBVexDay Proof
iweb hyperseek 2000 - Directory Traversal
CVE-2001-0253remotemultiple28 Jan 2001
Directory traversal vulnerability in hsx.cgi program in iWeb Hyperseek 2000 allows remote attackers to read arbitrary fi
28RISK
open
Exploit-DBVexDay Proof
Netscape Enterprise Server 4.0/sparc/SunOS 5.7 - Remote Command Execution
CVE-1999-0744remotesolaris27 Jan 2001
Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long
23RISK
open
Exploit-DBVexDay Proof
Tru64 5 - 'su' Env Local Stack Overflow
CVE-2002-1616localtru6426 Jan 2001
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain root privileges via
23RISK
open
Exploit-DBVexDay Proof
SCO OpenServer 5.0.5 - Env Local Stack Overflow
CVE-1999-1041localsco26 Jan 2001
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a lo
23RISK
open
Exploit-DBVexDay Proof
Vim 5.x - Swap File Race Condition
CVE-2001-0409locallinux26 Jan 2001
vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swa
23RISK
open
Exploit-DBVexDay Proof
splitvt < 1.6.5 - Local Overflow
CVE-2001-0112locallinux26 Jan 2001
Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.
23RISK
open
Exploit-DBVexDay Proof
SCO OpenServer 5.0.5 - Env Local Stack Overflow
CVE-1999-1185localsco26 Jan 2001
Buffer overflow in SCO mscreen allows local users to gain root privileges via a long terminal entry (TERM) in the .mscre
23RISK
open
Exploit-DBVexDay Proof
glibc-2.2 / openssh-2.3.0p1 / glibc 2.1.9x - File Read
CVE-2001-0170locallinux25 Jan 2001
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variabl
23RISK
open
Exploit-DBVexDay Proof
jaZip 0.32-2 - Local Buffer Overflow
CVE-2001-0110locallinux25 Jan 2001
Buffer overflow in jaZip Zip/Jaz drive manager allows local users to gain root privileges via a long DISPLAY environment
23RISK
open
Exploit-DBVexDay Proof
Solaris 2.6/2.7 - '/usr/bin/write' Local Overflow
CVE-1999-1371localsolaris25 Jan 2001
Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the te
23RISK
open
Exploit-DBVexDay Proof
Netscape Enterprise Server 3.0/4.0 - 'Index' Disclosure
CVE-2001-0250remotemultiple24 Jan 2001
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary direc
23RISK
open
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0 - Networking Mutex Denial of Service
CVE-2001-0006doswindows24 Jan 2001
The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allo
23RISK
open
Exploit-DBVexDay Proof
FreeBSD 3.x/4.x - 'ipfw' Filtering Evasion
CVE-2001-0183remotefreebsd23 Jan 2001
ipfw and ip6fw in FreeBSD 4.2 and earlier allows remote attackers to bypass access restrictions by setting the ECE flag
23RISK
open
Exploit-DBVexDay Proof
WU-FTPD 2.4.2/2.5/2.6 - Debug Mode Client Hostname Format String
CVE-2001-0187remoteunix23 Jan 2001
Format string vulnerability in wu-ftp 2.6.1 and earlier, when running with debug mode enabled, allows remote attackers t
23RISK
open
Exploit-DBVexDay Proof
LocalWEB2000 1.1 - Directory Traversal
CVE-2001-0189localwindows22 Jan 2001
Directory traversal vulnerability in LocalWEB2000 HTTP server allows remote attackers to read arbitrary commands via a .
23RISK
open
Exploit-DBVexDay Proof
fastream ftp++ 2.0 - Directory Traversal
CVE-2001-0255remotewindows22 Jan 2001
FaSTream FTP++ Server 2.0 allows remote attackers to list arbitrary directories by using the "ls" command and including
23RISK
open
Exploit-DBVexDay Proof
Baltimore Technologies WEBsweeper 4.0 - Denial of Service
CVE-2001-0460doswindows22 Jan 2001
Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of ser
23RISK
open
Exploit-DBVexDay Proof
Icecast 1.3.7/1.3.8 - 'print_client()' Format String
CVE-2001-0197remotewindows21 Jan 2001
Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitra
28RISK
open
Exploit-DBVexDay Proof
eEye Digital Security IRIS 1.0.1 - GET Denial of Service
CVE-2001-0184doswindows21 Jan 2001
eEye Iris 1.01 beta allows remote attackers to cause a denial of service via a malformed packet, which causes Iris to cr
23RISK
open
Exploit-DBVexDay Proof
RedHat 6.1 - 'man' Local Overflow / Local Privilege Escalation
CVE-2000-0170locallinux19 Jan 2001
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variabl
23RISK
open
Exploit-DBVexDay Proof
IMAP4rev1 10.190 - Authentication Stack Overflow
CVE-2000-0284remotelinux19 Jan 2001
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISK
open
Exploit-DBVexDay Proof
Mysql 3.22.x/3.23.x - Local Buffer Overflow
CVE-2001-1274locallinux18 Jan 2001
Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges.
23RISK
open
Exploit-DBVexDay Proof
NullSoft Winamp 2.64 - '.m3u' Playlist Buffer Overflow
CVE-2000-0624doswindows17 Jan 2001
Buffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: ext
23RISK
open
Exploit-DBVexDay Proof
tinyproxy tinyproxy 1.3.2/1.3.3 - Remote Heap Overflow
CVE-2001-0129remotewindows17 Jan 2001
Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possi
28RISK
open
Exploit-DBVexDay Proof
mICQ 0.4.6 - Remote Buffer Overflow
CVE-2001-0233remotelinux17 Jan 2001
Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly exec
28RISK
open
Exploit-DBVexDay Proof
Debian 2.2 - splitvt Format String
CVE-2001-0111locallinux16 Jan 2001
Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile com
23RISK
open
Exploit-DBVexDay Proof
SSH 1.2.x - Secure-RPC Weak Encrypted Authentication
CVE-2001-0259localunix16 Jan 2001
ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generate
23RISK
open
previouspage 777 / 816next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.