Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
79,305cataloged exploits
36,465CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,466Referência 23,051GitHub PoC 15,051VulnCheck XDB 8,883Nuclei 4,361Metasploit 3,493✓ verified onlyrecentpopularrisk
79,230 exploits
Exploit-DB✓ VexDay Proof
TP-Link Archer A7/C7 - Unauthenticated LAN Remote Code Execution (Metasploit)
This vulnerability allows local attackers to escalate privileges on affected installations of TP-Link Archer A7 Firmware
48RISK
open ↗VulnCheck XDB
remote-with-credentials
Sonatype Nexus Repository before 3.21.2 allows JavaEL Injection (issue 1 of 2).
100RISK
open ↗GitHub PoC★ 42
CVE-2020-10199 Nexus <= 3.21.1 远程代码执行脚本(有回显)
Sonatype Nexus Repository before 3.21.2 allows JavaEL Injection (issue 1 of 2).
100RISK
open ↗Exploit-DB✓ VexDay Proof
TP-Link Archer A7/C7 - Unauthenticated LAN Remote Code Execution (Metasploit)
This vulnerability allows network-adjacent attackers execute arbitrary code on affected installations of TP-Link Archer
61RISK
open ↗GitHub PoC★ 11
CVE-2020-5260演示记录
malicious URLs may cause Git to present stored credentials to the wrong server
53RISK
open ↗Exploit-DB✓ VexDay Proof
PlaySMS - index.php Unauthenticated Template Injection Code Execution (Metasploit)
PlaySMS before 1.4.3 does not sanitize inputs from a malicious string.
100RISK
open ↗Exploit-DB✓ VexDay Proof
TP-Link Archer A7/C7 - Unauthenticated LAN Remote Code Execution (Metasploit)
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Arch
68RISK
open ↗Exploit-DB✓ VexDay Proof
Liferay Portal - Java Unmarshalling via JSONWS RCE (Metasploit)
Deserialization of Untrusted Data in Liferay Portal prior to 7.2.1 CE GA2 allows remote attackers to execute arbitrary c
100RISK
open ↗Exploit-DB✓ VexDay Proof
ThinkPHP - Multiple PHP Injection RCEs (Metasploit)
An issue was discovered in NoneCms V1.3. thinkphp/library/think/App.php allows remote attackers to execute arbitrary PHP
100RISK
open ↗GitHub PoC★ 28
This utility can help determine if indicators of compromise (IOCs) exist in the log files of a Pulse Secure VPN Appliance for CVE-2019-11510.
In Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4, an unauthent
100RISK
open ↗GitHub PoC
https://bugs.chromium.org/p/project-zero/issues/detail?id=2021
malicious URLs may cause Git to present stored credentials to the wrong server
53RISK
open ↗Metasploit600
Cisco UCS Director Cloupia Script RCE
Multiple Vulnerabilities in Cisco UCS Director and Cisco UCS Director Express for Big Data
85RISK
open ↗Metasploit300
Veeam ONE Agent .NET Deserialization
This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.
85RISK
open ↗GitHub PoC★ 37
A HTTP PoC Endpoint for cve-2020-5260 which can be deployed to Heroku
malicious URLs may cause Git to present stored credentials to the wrong server
53RISK
open ↗Metasploit300
Veeam ONE Agent .NET Deserialization
This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.
75RISK
open ↗Metasploit600
Cisco UCS Director Cloupia Script RCE
Multiple Vulnerabilities in Cisco UCS Director and Cisco UCS Director Express for Big Data
75RISK
open ↗VulnCheck XDB
infoleak
The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x
100RISK
open ↗GitHub PoC★ 6
NVMS 1000 - Directory Traversal Attack Exploit for CVE-2019-20085
TVT NVMS-1000 devices allow GET /.. Directory Traversal
100RISK
open ↗GitHub PoC★ 4
Vuln Check
Under certain conditions, vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Servi
100RISK
open ↗GitHub PoC
This tool helps scan large subnets for cve-2020-0796 vulnerable systems
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open ↗Exploit-DB
Oracle WebLogic Server 12.2.1.4.0 - Remote Code Execution
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Su
100RISK
open ↗GitHub PoC★ 27
patches for SNYK-JS-JQUERY-565129, SNYK-JS-JQUERY-567880, CVE-2020-1102, CVE-2020-11023, includes the patches for SNYK-JS-JQUERY-174006, CVE-2019-11358, CVE-2019-5428
jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) becaus
45RISK
open ↗VulnCheck XDB
infoleak
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISK
open ↗VulnCheck XDB
local
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING
71RISK
open ↗VulnCheck XDB
client-side
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow
83RISK
open ↗VulnCheck XDB
initial-access
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISK
open ↗Exploit-DB
TVT NVMS 1000 - Directory Traversal
TVT NVMS-1000 devices allow GET /.. Directory Traversal
100RISK
open ↗GitHub PoC★ 2
https://bugs.chromium.org/p/project-zero/issues/detail?id=1820
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow
83RISK
open ↗Exploit-DB
MOVEit Transfer 11.1.1 - 'token' Unauthenticated SQL Injection
MOVEit.DMZ.WebApi.dll in Progress MOVEit Transfer 2018 SP2 before 10.2.4, 2019 before 11.0.2, and 2019.1 before 11.1.1 a
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.