Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
78,958cataloged exploits
36,206CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,460Referência 22,832GitHub PoC 14,991VulnCheck XDB 8,829Nuclei 4,357Metasploit 3,489✓ verified onlyrecentpopularrisk
24,458 exploits
Exploit-DB✓ VexDay Proof
AIX lquerylv - Local Buffer Overflow / Local Privilege Escalation
Buffer overflow in AIX lquerylv program gives root access to local users.
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.2 - 'eject' Local Privilege Escalation (1)
root privileges via buffer overflow in eject command on SGI IRIX systems.
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.2 - 'eject' Local Privilege Escalation (2)
root privileges via buffer overflow in eject command on SGI IRIX systems.
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX - 'LsD' Multiple Local Buffer Overflows
root privileges via buffer overflow in eject command on SGI IRIX systems.
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.3 - 'df' Local Privilege Escalation
root privileges via buffer overflow in df command on SGI IRIX systems.
28RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 5.3/6.2 - 'ordist' Local Privilege Escalation
root privileges via buffer overflow in ordist command on SGI IRIX systems.
41RISK
open ↗Exploit-DB✓ VexDay Proof
Solaris 2.5.0/2.5.1 ps / chkey - Data Buffer
Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line
23RISK
open ↗Exploit-DB✓ VexDay Proof
Solaris 2.5.1 - 'chkey' Local Privilege Escalation
Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line
23RISK
open ↗Exploit-DB✓ VexDay Proof
LibXt - 'XtAppInitialize()' Local Overflow *xterm
Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
23RISK
open ↗Exploit-DB✓ VexDay Proof
Elm 2.3/2.4 - TERM Environment Variable Local Buffer Overrun
Buffer overflow in Elm 2.4 and earlier allows local users to gain privileges via a long TERM environmental variable.
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.2 - '/usr/lib/netaddpr' Local Privilege Escalation
addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a sym
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.2 - '/usr/lib/netaddpr' Local Privilege Escalation
addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a sy
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 3.11/95/NT 4.0/NT 3.5.1 - 'Out Of Band' Data Denial of Service (4)
Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 3.11/95/NT 4.0/NT 3.5.1 - 'Out Of Band' Data Denial of Service (3)
Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 3.11/95/NT 4.0/NT 3.5.1 - 'Out Of Band' Data Denial of Service (2)
Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
28RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.4 - 'xfsdump' Local Privilege Escalation
Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.4 - 'inpview' Local Privilege Escalation
inpview in InPerson on IRIX 5.3 through IRIX 6.5.10 trusts the PATH environmental variable to find and execute the ttses
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.3 - cgi-bin 'webdist.cgi' Command Execution
webdist CGI program (webdist.cgi) in SGI IRIX allows remote attackers to execute arbitrary commands via shell metacharac
46RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.5.4 / Solaris 2.5.1 - ps(1) Buffer Overflow
Buffer overflow in SunOS/Solaris ps command.
23RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - 'xlock' Local Overflow / Local Privilege Escalation (1)
root privileges via buffer overflow in xlock command on SGI IRIX systems.
23RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - 'xlock' Local Overflow / Local Privilege Escalation (1)
buffer overflow in HP xlock program.
23RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - '/usr/bin/X11/xlock' Local Privilege Escalation (2)
buffer overflow in HP xlock program.
23RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - '/usr/bin/X11/xlock' Local Privilege Escalation (2)
root privileges via buffer overflow in xlock command on SGI IRIX systems.
23RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - '/usr/bin/X11/xlock' Local Privilege Escalation (2)
Buffer overflow in xlock program allows local users to execute commands as root.
41RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1 / DG/UX 7.0 / Debian 1.3 / HP-UX 10.34 / IBM AIX 4.2 / SGI IRIX 6.4 / Solaris 2.5.1 - 'xlock' Local Overflow / Local Privilege Escalation (1)
Buffer overflow in xlock program allows local users to execute commands as root.
41RISK
open ↗Exploit-DB✓ VexDay Proof
NCSA HTTPd 1.x - Remote Buffer Overflow (1)
Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution.
28RISK
open ↗Exploit-DB✓ VexDay Proof
NCSA HTTPd 1.x - Remote Buffer Overflow (1)
Buffer overflow in NCSA WebServer (1.4.1 and below) gives remote access.
23RISK
open ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.2 - cgi-bin wrap
The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.
23RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1/3.0 / Larry Wall Perl 5.0 03 / RedHat 4.0/4.1 / SGI Freeware 1.0/2.0 SUIDPerl - Local Overflow (1)
Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
23RISK
open ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1/3.0 / Larry Wall Perl 5.0 03 / RedHat 4.0/4.1 / SGI Freeware 1.0/2.0 SUIDPerl - Local Overflow (2)
Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.