Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,697cataloged exploits
36,715CVEs with public exploitation
24,695lab-tested
79,697 exploits
Exploit-DB
Apache Syncope 2.0.7 - Remote Code Execution
CVE-2018-1321webappswindows13 Sep 2018
An administrator with report and template entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and un
28RISK
open
Exploit-DB
Apache Portals Pluto 3.0.0 - Remote Code Execution
CVE-2018-1306webappswindows13 Sep 2018
The PortletV3AnnotatedDemo Multipart Portlet war file code provided in Apache Pluto version 3.0.0 could allow a remote a
35RISK
open
Exploit-DB
SynaMan 4.0 build 1488 - SMTP Credential Disclosure
CVE-2018-10814webappswindows12 Sep 2018
Synametrics SynaMan 4.0 build 1488 uses cleartext password storage for SMTP credentials.
23RISK
open
Exploit-DB
Apple macOS 10.13.4 - Denial of Service (PoC)
CVE-2018-4240dosmacos12 Sep 2018
An issue was discovered in certain Apple products. iOS before 11.4 is affected. macOS before 10.13.5 is affected. tvOS b
23RISK
open
Exploit-DBVexDay Proof
IBM Identity Governance and Intelligence 5.2.3.2 / 5.2.4 - SQL Injection
CVE-2018-1756HIGHwebappsphp12 Sep 2018
IBM Security Identity Governance and Intelligence 5.2.3.2 and 5.2.4 is vulnerable to SQL injection. A remote attacker co
46RISK
open
Exploit-DB
MyBB 1.8.17 - Cross-Site Scripting
CVE-2018-15596webappsphp12 Sep 2018
An issue was discovered in inc/class_feedgeneration.php in MyBB 1.8.17. On the forum RSS Syndication page, one can gener
23RISK
open
VulnCheck XDB
initial-access
CVE-2018-6961HIGHunder attack12 Sep 2018
VMware NSX SD-WAN Edge by VeloCloud prior to version 3.1.0 contains a command injection vulnerability in the local web U
100RISK
open
Exploit-DB
SynaMan 4.0 build 1488 - (Authenticated) Cross-Site Scripting
CVE-2018-10763webappswindows12 Sep 2018
Multiple cross-site scripting (XSS) vulnerabilities in Synametrics SynaMan 4.0 build 1488 via the (1) Main heading or (2
23RISK
open
Exploit-DB
CirCarLife SCADA 4.3.0 - Credential Disclosure
CVE-2018-12634webappshardware12 Sep 2018
CirCarLife Scada before 4.3 allows remote attackers to obtain sensitive information via a direct request for the html/lo
50RISK
open
Exploit-DB
Rubedo CMS 3.4.0 - Directory Traversal
CVE-2018-16836webappslinux12 Sep 2018
Rubedo through 3.4.0 contains a Directory Traversal vulnerability in the theme component, allowing unauthenticated attac
50RISK
open
GitHub PoC1
veloCloud VMWare - Vulnerability
CVE-2018-6961HIGHunder attack12 Sep 2018
VMware NSX SD-WAN Edge by VeloCloud prior to version 3.1.0 contains a command injection vulnerability in the local web U
100RISK
open
Exploit-DB
LG Smart IP Camera 1508190 - Backup File Download
CVE-2018-16946webappshardware12 Sep 2018
LG LNB*, LND*, LNU*, and LNV* smart network camera devices have broken access control. Attackers are able to download /u
23RISK
open
Metasploit600
Adobe ColdFusion CKEditor unrestricted file upload
CVE-2018-15961CRITICALunder attack11 Sep 2018
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unr
100RISK
open
GitHub PoC7
C# implementation of BasuCert/WinboxPoC [Winbox Critical Vulnerability (CVE-2018-14847)]
CVE-2018-14847CRITICALunder attack11 Sep 2018
MikroTik RouterOS through 6.42 allows unauthenticated remote attackers to read arbitrary files and remote authenticated
100RISK
open
VulnCheck XDB
initial-access
CVE-2018-14847CRITICALunder attack11 Sep 2018
MikroTik RouterOS through 6.42 allows unauthenticated remote attackers to read arbitrary files and remote authenticated
100RISK
open
Exploit-DBVexDay Proof
Android - 'zygote->init;' Chain from USB Privilege Escalation
CVE-2018-9488localandroid11 Sep 2018
In the SELinux permissions of crash_dump.te, there is a permissions bypass due to a missing restriction. This could lead
23RISK
open
GitHub PoC2
Simple poc of CVE-2018-8353 Microsoft Scripting Engine Use After Free
CVE-2018-835310 Sep 2018
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet
35RISK
open
Exploit-DBVexDay Proof
Ghostscript - Failed Restore Command Execution (Metasploit)
CVE-2018-16509locallinux10 Sep 2018
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handlin
60RISK
open
Exploit-DBVexDay Proof
Apache Struts 2 - Namespace Redirect OGNL Injection (Metasploit)
CVE-2018-11776HIGHunder attackremotemultiple10 Sep 2018
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Execution when alwaysSelectFullN
100RISK
open
Metasploit300
Cisco RV320 and RV325 Unauthenticated Remote Code Execution
CVE-2019-1653HIGHunder attack09 Sep 2018
Cisco Small Business RV320 and RV325 Routers Information Disclosure Vulnerability
100RISK
open
Metasploit300
Cisco RV320 and RV325 Unauthenticated Remote Code Execution
CVE-2019-1652HIGHunder attack09 Sep 2018
Cisco Small Business RV320 and RV325 Routers Command Injection Vulnerability
100RISK
open
Exploit-DB
QNAP Photo Station 5.7.0 - Cross-Site Scripting
CVE-2018-0715webappshardware07 Sep 2018
Cross-site scripting vulnerability in QNAP Photo Station versions 5.7.0 and earlier could allow remote attackers to inje
23RISK
open
Exploit-DB
Cisco Umbrella Roaming Client 2.0.168 - Local Privilege Escalation
CVE-2018-0438localwindows_x86-6406 Sep 2018
Cisco Umbrella Enterprise Roaming Client Privilege Escalation Vulnerability
23RISK
open
Exploit-DBVexDay Proof
Jorani Leave Management 0.6.5 - (Authenticated) 'startdate' SQL Injection
CVE-2018-15918webappsphp06 Sep 2018
An issue was discovered in Jorani 0.6.5. SQL Injection (error-based) allows a user of the application without permission
23RISK
open
Exploit-DB
Cisco Umbrella Roaming Client 2.0.168 - Local Privilege Escalation
CVE-2018-0437localwindows_x86-6406 Sep 2018
Cisco Umbrella Enterprise Roaming Client and Enterprise Roaming Module Privilege Escalation Vulnerability
23RISK
open
GitHub PoC
jezzus/CVE-2018-4121
CVE-2018-412106 Sep 2018
An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud b
28RISK
open
Exploit-DB
WirelessHART Fieldgate SWG70 3.0 - Directory Traversal
CVE-2018-16059webappshardware06 Sep 2018
Endress+Hauser WirelessHART Fieldgate SWG70 3.x devices allow Directory Traversal via the fcgi-bin/wgsetcgi filename par
43RISK
open
Exploit-DB
Apache Roller 5.0.3 - XML External Entity Injection (File Disclosure)
CVE-2014-0030webappslinux06 Sep 2018
The XML-RPC protocol support in Apache Roller before 5.0.3 allows attackers to conduct XML External Entity (XXE) attacks
28RISK
open
Exploit-DB
Jorani Leave Management 0.6.5 - Cross-Site Scripting
CVE-2018-15917webappsphp06 Sep 2018
Persistent cross-site scripting (XSS) issues in Jorani 0.6.5 allow remote attackers to inject arbitrary web script or HT
38RISK
open
GitHub PoC
jezzus/CVE-2018-11776-Python-PoC
CVE-2018-11776HIGHunder attack06 Sep 2018
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Execution when alwaysSelectFullN
100RISK
open
previouspage 881 / 2,657next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.