Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,305cataloged exploits
36,465CVEs with public exploitation
24,695lab-tested
79,211 exploits
Exploit-DB
School ERP System 1.0 - Cross Site Request Forgery (Add Admin)
CVE-2020-8504webappsphp03 Feb 2020
School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=addadmin CSRF to add an administrati
23RISK
open
GitHub PoC1
PoC for CVE-2020-0601- Windows CryptoAPI (Crypt32.dll) POC: https://github.com/ollypwn/CurveBall
CVE-2020-0601HIGHunder attack03 Feb 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RISK
open
Exploit-DB
Cacti 1.2.8 - Unauthenticated Remote Code Execution
CVE-2020-8813webappsmultiple03 Feb 2020
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a
60RISK
open
Exploit-DB
Jira 8.3.4 - Information Disclosure (Username Enumeration)
CVE-2019-8449webappsjava03 Feb 2020
The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate username
60RISK
open
Exploit-DB
Schneider Electric U.Motion Builder 1.3.4 - Authenticated Command Injection
CVE-2018-7777webappshardware03 Feb 2020
The vulnerability is due to insufficient handling of update_file request parameter on update_module.php in Schneider Ele
35RISK
open
Exploit-DB
IceWarp WebMail 11.4.4.1 - Reflective Cross-Site Scripting
CVE-2020-8512webappsphp03 Feb 2020
In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter.
43RISK
open
Exploit-DB
Cacti 1.2.8 - Authenticated Remote Code Execution
CVE-2020-8813webappsmultiple03 Feb 2020
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a
60RISK
open
VulnCheck XDB
client-side
CVE-2020-0601HIGHunder attack03 Feb 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RISK
open
Exploit-DB
School ERP System 1.0 - Cross Site Request Forgery (Add Admin)
CVE-2020-8505webappsphp03 Feb 2020
School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=deleteadmin CSRF to delete a user.
23RISK
open
VulnCheck XDB
local
CVE-2020-15368MEDIUM02 Feb 2020
AsrDrv103.sys in the ASRock RGB Driver does not properly restrict access from user space, as demonstrated by triggering
33RISK
open
GitHub PoC68
CVE-2019-8449 Exploit for Jira v2.1 - v8.3.4
CVE-2019-844902 Feb 2020
The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate username
60RISK
open
Metasploit500
Arista restricted shell escape (with privesc)
CVE-2020-901502 Feb 2020
Arista DCS-7050QX-32S-R 4.20.9M, DCS-7050CX3-32S-R 4.20.11M, and DCS-7280SRAM-48C6-R 4.22.0.1F devices (and possibly oth
23RISK
open
GitHub PoC
A python implementation of CVE-2004-2271 targeting MiniShare 1.4.1.
CVE-2004-227102 Feb 2020
Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET req
60RISK
open
Exploit-DBVexDay Proof
OpenSMTPD 6.6.1 - Remote Code Execution
CVE-2020-7247CRITICALunder attackremotelinux30 Jan 2020
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to
100RISK
open
GitHub PoC25
Python exploit of cve-2020-7247
CVE-2020-7247CRITICALunder attack30 Jan 2020
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to
100RISK
open
VulnCheck XDB
local
CVE-2019-2215HIGHunder attack30 Jan 2020
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
100RISK
open
Exploit-DBVexDay Proof
rConfig 3.9.3 - Authenticated Remote Code Execution
CVE-2019-19509webappsphp30 Jan 2020
An issue was discovered in rConfig 3.9.3. A remote authenticated user can directly execute system commands by sending a
60RISK
open
GitHub PoC26
Temproot for Bravia TV via CVE-2019-2215.
CVE-2019-2215HIGHunder attack30 Jan 2020
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
100RISK
open
Exploit-DB
Satellian 1.12 - Remote Code Execution
CVE-2020-7980webappshardware29 Jan 2020
Intellian Aptus Web 1.24 allows remote attackers to execute arbitrary OS commands via the Q field within JSON data to th
60RISK
open
GitHub PoC
ianxtianxt/CVE-2016-8735
CVE-2016-8735CRITICALunder attack29 Jan 2020
Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8
100RISK
open
GitHub PoC1
proof of concept for CVE-2020-0601
CVE-2020-0601HIGHunder attack29 Jan 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RISK
open
GitHub PoC4
TheCyberGeek/CVE-2020-5844
CVE-2020-584429 Jan 2020
index.php?sec=godmode/extensions&sec2=extensions/files_repo in Pandora FMS v7.0 NG allows authenticated administrators t
35RISK
open
Exploit-DB
Microsoft Windows 10 - Theme API 'ThemePack' File Parsing
CVE-2018-8413localwindows29 Jan 2020
A remote code execution vulnerability exists when "Windows Theme API" does not properly decompress files, aka "Windows T
35RISK
open
Exploit-DB
XMLBlueprint 16.191112 - XML External Entity Injection
CVE-2019-19032localwindows29 Jan 2020
XMLBlueprint through 16.191112 is affected by XML External Entity Injection. The impact is: Arbitrary File Read when an
23RISK
open
Exploit-DB
Cups Easy 1.0 - Cross Site Request Forgery (Password Reset)
CVE-2020-8425webappsphp29 Jan 2020
Cups Easy (Purchase & Inventory) 1.0 is vulnerable to CSRF that leads to admin account deletion via userdelete.php.
23RISK
open
Exploit-DB
Cups Easy 1.0 - Cross Site Request Forgery (Password Reset)
CVE-2020-8424webappsphp29 Jan 2020
Cups Easy (Purchase & Inventory) 1.0 is vulnerable to CSRF that leads to admin account takeover via passwordmychange.php
23RISK
open
VulnCheck XDB
client-side
CVE-2020-0601HIGHunder attack29 Jan 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RISK
open
GitHub PoC1
Python CVE-2019-19781 exploit
CVE-2019-19781CRITICALunder attackransomware28 Jan 2020
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. Th
100RISK
open
VulnCheck XDB
client-side
CVE-2020-0601HIGHunder attack28 Jan 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RISK
open
VulnCheck XDB
initial-access
CVE-2020-798028 Jan 2020
Intellian Aptus Web 1.24 allows remote attackers to execute arbitrary OS commands via the Q field within JSON data to th
60RISK
open
previouspage 792 / 2,641next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.