Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
78,794cataloged exploits
36,057CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,459Referência 22,721GitHub PoC 14,946VulnCheck XDB 8,829Nuclei 4,350Metasploit 3,489✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
SCO Unixware 7.0/7.0.1/7.1 - Xsco Buffer Overflow
Buffer overflow in SCO UnixWare Xsco command via a long argument.
23RISK
open ↗Exploit-DB✓ VexDay Proof
Alt-N MDaemon 2.8.5 - WebConfig Overflow Denial of Service
Denial of service in MDaemon WorldClient and WebConfig services via a long URL.
23RISK
open ↗Exploit-DB✓ VexDay Proof
SunOS 4.1.1 - '/usr/release/bin/makeinstall' Local Privilege Escalation
The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) ma
23RISK
open ↗Exploit-DB✓ VexDay Proof
OpenLinux 2.3/2.4 / RedHat 6.0/6.1 / SCO eServer 2.3 - Denial of Service
Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 7.0/7.0 SP1 - NULL Data Denial of Service
Microsoft SQL 7.0 server allows a remote attacker to cause a denial of service via a malformed TDS packet.
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 95/98/Enterprise Server 4/NT Server 4/Terminal Server 4/Workstation 4 - Riched Buffer Overflow
Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed
28RISK
open ↗Exploit-DB✓ VexDay Proof
Tektronix Phaser Network Printer 740/750/750DP/840/930 PhaserLink WebServer - Retrieve Administrator Password
Web server in Tektronix PhaserLink Printer 840.0 and earlier allows a remote attacker to gain administrator access by di
23RISK
open ↗Exploit-DB✓ VexDay Proof
Gene6 G6 FTP Server 2.0 - Buffer Overflow (Denial of Service) (PoC)
Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a denial of service (resource exhaustion) via a long (1) user
23RISK
open ↗Exploit-DB✓ VexDay Proof
Matt Wright - 'FormHandler.cgi' 2.0 Reply Attachment
Directory traversal vulnerability in Matt Wright FormHandler.cgi script allows remote attackers to read arbitrary files
23RISK
open ↗Exploit-DB✓ VexDay Proof
Admiral Systems EmailClub 1.0.0.5 - Remote Buffer Overflow
Buffer overflow in POP3 server of Admiral Systems EmailClub 1.05 allows remote attackers to execute arbitrary commands v
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5 Media Player - ActiveX Error Message
Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not
23RISK
open ↗Exploit-DB✓ VexDay Proof
ETL Delegate 5.9.x/6.0.x - Remote Buffer Overflow
The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
28RISK
open ↗Exploit-DB✓ VexDay Proof
SunOS 4.1.1 - '/usr/release/bin/winstall' Local Privilege Escalation
The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) ma
23RISK
open ↗Exploit-DB✓ VexDay Proof
ISC BIND 8.2.2 / IRIX 6.5.17 / Solaris 7.0 - NXT Overflow / Denial of Service
Denial of service in BIND named via consuming more than "fdmax" file descriptors.
23RISK
open ↗Exploit-DB✓ VexDay Proof
QPC Software QVT Term 4.3/QVT/Net 4.3 Suite FTP Server - Denial of Service
Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attack
28RISK
open ↗Exploit-DB✓ VexDay Proof
CGI City CC Whois 1.0 - MetaCharacter
CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
23RISK
open ↗Exploit-DB✓ VexDay Proof
IrfanView32 3.0.7 - Image File Buffer Overflow
Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after t
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 95/98 - UNC Buffer Overflow (2)
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name st
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 95/98 - UNC Buffer Overflow (1)
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name st
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 4.x/5 / Outlook 2000 0/98 0/Express 4.x - ActiveX '.CAB' File Execution
A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedd
23RISK
open ↗Exploit-DB✓ VexDay Proof
TransSoft Broker FTP Server 3.0 x/4.0 - User Name Buffer Overflow
Buffer overflow in TransSoft Broker FTP Server before 4.3.0.1 allows remote attackers to cause a denial of service and p
23RISK
open ↗Exploit-DB✓ VexDay Proof
Muhammad M. Saggaf Seyon 2.14b - Relative Path
FreeBSD seyon allows users to gain privileges via a modified PATH variable for finding the xterm and seyon-emu commands.
23RISK
open ↗Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall 3.2.3/3.3 - 'HELO' Remote Buffer Overflow (1)
A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a lo
28RISK
open ↗Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall 3.2.3/3.3 - 'HELO' Remote Buffer Overflow (2)
A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may
28RISK
open ↗Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall 3.2.3/3.3 - 'HELO' Remote Buffer Overflow (1)
A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may
28RISK
open ↗Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall 3.2.3/3.3 - 'HELO' Remote Buffer Overflow (2)
A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a lo
28RISK
open ↗Exploit-DB✓ VexDay Proof
The Matt Wright Guestbook.pl 2.3.1 - Server-Side Include
guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remo
60RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 4/5 / Outlook 98 - 'window.open' Redirect
Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-si
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/SP1/SP2/SP3/SP4/SP5/SP6 - 'Spoolss.exe' DLL Insertion
The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that
23RISK
open ↗Exploit-DB✓ VexDay Proof
Real Networks GameHouse dldisplay ActiveX control - Port Buffer Overflow (2)
Buffer overflow in RealNetworks RealServer administration utility allows remote attackers to execute arbitrary commands
28RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.