Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,697cataloged exploits
36,715CVEs with public exploitation
24,695lab-tested
79,596 exploits
Exploit-DBVexDay Proof
ifwatchd - Privilege Escalation (Metasploit)
CVE-2014-2533locallinux09 Oct 2018
/sbin/ifwatchd in BlackBerry QNX Neutrino RTOS 6.4.x and 6.5.x allows local users to gain privileges by providing an arb
38RISK
open
Exploit-DBVexDay Proof
Delta Electronics Delta Industrial Automation COMMGR 1.08 - Stack Buffer Overflow (Metasploit)
CVE-2018-10594remotewindows09 Oct 2018
Delta Industrial Automation COMMGR from Delta Electronics versions 1.08 and prior with accompanying PLC Simulators (DVPS
50RISK
open
Exploit-DBVexDay Proof
ghostscript - executeonly Bypass with errorhandler Setup
CVE-2018-17961locallinux09 Oct 2018
Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving err
23RISK
open
Exploit-DB
Seqrite End Point Security 7.4 - Privilege Escalation
CVE-2018-17775localwindows09 Oct 2018
Seqrite End Point Security v7.4 has "Everyone: (F)" permission for %PROGRAMFILES%\Seqrite\Seqrite, which allows local us
23RISK
open
Metasploit400
WebEx Local Service Permissions Exploit
CVE-2018-15442HIGH09 Oct 2018
Cisco Webex Meetings Desktop App Update Service Command Injection Vulnerability
61RISK
open
Exploit-DBVexDay Proof
Microsoft Edge Chakra JIT - 'BailOutOnInvalidatedArrayHeadSegment' Check Bypass
CVE-2018-8466doswindows09 Oct 2018
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi
35RISK
open
Metasploit600
blueimp's jQuery (Arbitrary) File Upload
CVE-2018-920609 Oct 2018
Unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0
60RISK
open
Metasploit0
Windows NtUserSetWindowFNID Win32k User Callback
CVE-2018-8453HIGHunder attackransomware09 Oct 2018
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
100RISK
open
Metasploit600
Imperva SecureSphere PWS Command Injection
CVE-2018-1666008 Oct 2018
A command injection vulnerability in PWS in Imperva SecureSphere 13.0.0.10 and 13.1.0.10 Gateway allows an attacker with
23RISK
open
Exploit-DBVexDay Proof
Navigate CMS - (Unauthenticated) Remote Code Execution (Metasploit)
CVE-2018-17552remotephp08 Oct 2018
SQL Injection in login.php in Naviwebs Navigate CMS 2.8 allows remote attackers to bypass authentication via the navigat
60RISK
open
Exploit-DBVexDay Proof
Navigate CMS - (Unauthenticated) Remote Code Execution (Metasploit)
CVE-2018-17553remotephp08 Oct 2018
An "Unrestricted Upload of File with Dangerous Type" issue with directory traversal in navigate_upload.php in Naviwebs N
60RISK
open
Exploit-DBVexDay Proof
Zahir Enterprise Plus 6 - Stack Buffer Overflow (Metasploit)
CVE-2018-17408localwindows08 Oct 2018
Stack-based buffer overflows in Zahir Accounting Enterprise Plus 6 through build 10b allow remote attackers to execute a
43RISK
open
GitHub PoC8
proof-of-concept (PoC) for linux dists based on Debian, CentOS and RedHat - exploit 1
CVE-2018-14634HIGHunder attack08 Oct 2018
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with a
76RISK
open
Exploit-DB
net-snmp 5.7.3 - (Authenticated) Denial of Service (PoC)
CVE-2018-18065doslinux08 Oct 2018
_set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by
28RISK
open
Exploit-DB
net-snmp 5.7.3 - (Authenticated) Denial of Service (PoC)
CVE-2015-5621HIGHdoslinux08 Oct 2018
The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnm
53RISK
open
GitHub PoC
OpenSSH < 7.7 User Enumeration CVE-2018-15473 Exploit
CVE-2018-15473MEDIUM08 Oct 2018
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
70RISK
open
Exploit-DBVexDay Proof
Android - sdcardfs Changes current->fs Without Proper Locking
CVE-2018-9515dosandroid08 Oct 2018
In sdcardfs_create and sdcardfs_mkdir of inode.c, there is a possible memory corruption due to improper locking. This co
23RISK
open
VulnCheck XDB
local
CVE-2018-14634HIGHunder attack08 Oct 2018
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with a
76RISK
open
Exploit-DBVexDay Proof
Unitrends UEB - HTTP API Remote Code Execution (Metasploit)
CVE-2017-12478remotelinux08 Oct 2018
It was discovered that the api/storage web interface in Unitrends Backup (UB) before 10.0.0 has an issue in which one of
60RISK
open
Exploit-DBVexDay Proof
Unitrends UEB - HTTP API Remote Code Execution (Metasploit)
CVE-2018-6328remotelinux08 Oct 2018
It was discovered that the Unitrends Backup (UB) before 10.1.0 user interface was exposed to an authentication bypass, w
50RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Net-NTLMv2 Reflection DCOM/RPC (Metasploit)
CVE-2016-3225localwindows08 Oct 2018
The SMB server component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
50RISK
open
VulnCheck XDB
initial-access
CVE-2018-289407 Oct 2018
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS - Web Services). Su
50RISK
open
VulnCheck XDB
initial-access
CVE-2018-289307 Oct 2018
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). S
60RISK
open
VulnCheck XDB
initial-access
CVE-2016-1555CRITICALunder attack06 Oct 2018
(1) boardData102.php, (2) boardData103.php, (3) boardDataJP.php, (4) boardDataNA.php, and (5) boardDataWW.php in Netgear
100RISK
open
GitHub PoC2
Metasploit module for CVE-2016-1555
CVE-2016-1555CRITICALunder attack06 Oct 2018
(1) boardData102.php, (2) boardData103.php, (3) boardDataJP.php, (4) boardDataNA.php, and (5) boardDataWW.php in Netgear
100RISK
open
Exploit-DBVexDay Proof
D-Link Central WiFiManager Software Controller 1.03 - Multiple Vulnerabilities
CVE-2018-17440webappsphp05 Oct 2018
An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. They expose an FTP server that serves b
35RISK
open
Metasploit600
Malicious Git HTTP Server For CVE-2018-17456
CVE-2018-1745605 Oct 2018
Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x be
60RISK
open
GitHub PoC2
webr0ck/poc-cve-2018-1273
CVE-2018-1273CRITICALunder attackransomware05 Oct 2018
Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property
100RISK
open
Exploit-DBVexDay Proof
D-Link Central WiFiManager Software Controller 1.03 - Multiple Vulnerabilities
CVE-2018-17441webappsphp05 Oct 2018
An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. The 'username' parameter of the addUser
23RISK
open
Exploit-DB
Git Submodule - Arbitrary Code Execution (PoC)
CVE-2018-17456locallinux05 Oct 2018
Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x be
60RISK
open
previouspage 875 / 2,654next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.