Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
79,697cataloged exploits
36,715CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,475Referência 23,264GitHub PoC 15,172VulnCheck XDB 8,920Nuclei 4,373Metasploit 3,493✓ verified onlyrecentpopularrisk
79,596 exploits
Exploit-DB✓ VexDay Proof
ifwatchd - Privilege Escalation (Metasploit)
/sbin/ifwatchd in BlackBerry QNX Neutrino RTOS 6.4.x and 6.5.x allows local users to gain privileges by providing an arb
38RISK
open ↗Exploit-DB✓ VexDay Proof
Delta Electronics Delta Industrial Automation COMMGR 1.08 - Stack Buffer Overflow (Metasploit)
Delta Industrial Automation COMMGR from Delta Electronics versions 1.08 and prior with accompanying PLC Simulators (DVPS
50RISK
open ↗Exploit-DB✓ VexDay Proof
ghostscript - executeonly Bypass with errorhandler Setup
Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving err
23RISK
open ↗Exploit-DB
Seqrite End Point Security 7.4 - Privilege Escalation
Seqrite End Point Security v7.4 has "Everyone: (F)" permission for %PROGRAMFILES%\Seqrite\Seqrite, which allows local us
23RISK
open ↗Metasploit400
WebEx Local Service Permissions Exploit
Cisco Webex Meetings Desktop App Update Service Command Injection Vulnerability
61RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Edge Chakra JIT - 'BailOutOnInvalidatedArrayHeadSegment' Check Bypass
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi
35RISK
open ↗Metasploit600
blueimp's jQuery (Arbitrary) File Upload
Unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0
60RISK
open ↗Metasploit0
Windows NtUserSetWindowFNID Win32k User Callback
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
100RISK
open ↗Metasploit600
Imperva SecureSphere PWS Command Injection
A command injection vulnerability in PWS in Imperva SecureSphere 13.0.0.10 and 13.1.0.10 Gateway allows an attacker with
23RISK
open ↗Exploit-DB✓ VexDay Proof
Navigate CMS - (Unauthenticated) Remote Code Execution (Metasploit)
SQL Injection in login.php in Naviwebs Navigate CMS 2.8 allows remote attackers to bypass authentication via the navigat
60RISK
open ↗Exploit-DB✓ VexDay Proof
Navigate CMS - (Unauthenticated) Remote Code Execution (Metasploit)
An "Unrestricted Upload of File with Dangerous Type" issue with directory traversal in navigate_upload.php in Naviwebs N
60RISK
open ↗Exploit-DB✓ VexDay Proof
Zahir Enterprise Plus 6 - Stack Buffer Overflow (Metasploit)
Stack-based buffer overflows in Zahir Accounting Enterprise Plus 6 through build 10b allow remote attackers to execute a
43RISK
open ↗GitHub PoC★ 8
proof-of-concept (PoC) for linux dists based on Debian, CentOS and RedHat - exploit 1
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with a
76RISK
open ↗Exploit-DB
net-snmp 5.7.3 - (Authenticated) Denial of Service (PoC)
_set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by
28RISK
open ↗Exploit-DB
net-snmp 5.7.3 - (Authenticated) Denial of Service (PoC)
The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnm
53RISK
open ↗GitHub PoC
OpenSSH < 7.7 User Enumeration CVE-2018-15473 Exploit
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
70RISK
open ↗Exploit-DB✓ VexDay Proof
Android - sdcardfs Changes current->fs Without Proper Locking
In sdcardfs_create and sdcardfs_mkdir of inode.c, there is a possible memory corruption due to improper locking. This co
23RISK
open ↗VulnCheck XDB
local
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with a
76RISK
open ↗Exploit-DB✓ VexDay Proof
Unitrends UEB - HTTP API Remote Code Execution (Metasploit)
It was discovered that the api/storage web interface in Unitrends Backup (UB) before 10.0.0 has an issue in which one of
60RISK
open ↗Exploit-DB✓ VexDay Proof
Unitrends UEB - HTTP API Remote Code Execution (Metasploit)
It was discovered that the Unitrends Backup (UB) before 10.1.0 user interface was exposed to an authentication bypass, w
50RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Net-NTLMv2 Reflection DCOM/RPC (Metasploit)
The SMB server component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
50RISK
open ↗VulnCheck XDB
initial-access
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS - Web Services). Su
50RISK
open ↗VulnCheck XDB
initial-access
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). S
60RISK
open ↗VulnCheck XDB
initial-access
(1) boardData102.php, (2) boardData103.php, (3) boardDataJP.php, (4) boardDataNA.php, and (5) boardDataWW.php in Netgear
100RISK
open ↗GitHub PoC★ 2
Metasploit module for CVE-2016-1555
(1) boardData102.php, (2) boardData103.php, (3) boardDataJP.php, (4) boardDataNA.php, and (5) boardDataWW.php in Netgear
100RISK
open ↗Exploit-DB✓ VexDay Proof
D-Link Central WiFiManager Software Controller 1.03 - Multiple Vulnerabilities
An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. They expose an FTP server that serves b
35RISK
open ↗Metasploit600
Malicious Git HTTP Server For CVE-2018-17456
Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x be
60RISK
open ↗GitHub PoC★ 2
webr0ck/poc-cve-2018-1273
Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property
100RISK
open ↗Exploit-DB✓ VexDay Proof
D-Link Central WiFiManager Software Controller 1.03 - Multiple Vulnerabilities
An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. The 'username' parameter of the addUser
23RISK
open ↗Exploit-DB
Git Submodule - Arbitrary Code Execution (PoC)
Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x be
60RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.