Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,967GitHub PoC 13,264VulnCheck XDB 8,156Nuclei 4,201Metasploit 3,462✓ verified onlyrecentpopularrisk
3,462 exploits
Metasploit300
Foxit Reader Authorization Bypass
Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmatio
30RISK
open ↗Metasploit400
Foxit Reader 3.0 Open Execute Action Stack Based Buffer Overflow
Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote attackers to e
60RISK
open ↗Metasploit400
eZip Wizard 3.0 Stack Buffer Overflow
Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .z
50RISK
open ↗Metasploit200
Belkin Bulldog Plus Web Service Buffer Overflow
Belkin Bulldog Plus Web Service Buffer Overflow
63RISK
open ↗Metasploit300
POP Peeper v3.4 DATE Buffer Overflow
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RISK
open ↗Metasploit300
POP Peeper v3.4 UIDL Buffer Overflow
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RISK
open ↗Metasploit600
ContentKeeper Web Remote Command Execution
ContentKeeper Web Appliance < 125.10 RCE via mimencode
63RISK
open ↗Metasploit400
Adobe JBIG2Decode Heap Corruption
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISK
open ↗Metasploit400
Adobe JBIG2Decode Memory Corruption
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISK
open ↗Metasploit300
Typo3 sa-2009-002 File Disclosure
The jumpUrl mechanism in class.tslib_fe.php in TYPO3 3.3.x through 3.8.x, 4.0 before 4.0.12, 4.1 before 4.1.10, 4.2 befo
50RISK
open ↗Metasploit300
MS09-002 Microsoft Internet Explorer 7 CFunctionPointer Uninitialized Memory Corruption
Microsoft Internet Explorer 7 does not properly handle errors during attempted access to deleted objects, which allows r
60RISK
open ↗Metasploit500
FeedDemon Stack Buffer Overflow
Stack-based buffer overflow in NewsGator FeedDemon 2.7 and earlier allows user-assisted remote attackers to execute arbi
50RISK
open ↗Metasploit300
Orbit Downloader Connecting Log Creation Buffer Overflow
Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote
50RISK
open ↗Metasploit500
Free Download Manager Remote Control Server Buffer Overflow
Stack-based buffer overflow in Remote Control Server in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allo
50RISK
open ↗Metasploit400
Free Download Manager Torrent Parsing Buffer Overflow
Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Bui
43RISK
open ↗Metasploit300
Amaya Browser v11.0 'bdo' Tag Overflow
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary
50RISK
open ↗Metasploit300
HP OpenView Network Node Manager Toolbar.exe CGI Cookie Handling Buffer Overflow
Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow
60RISK
open ↗Metasploit300
TYPO3 sa-2009-001 Weak Encryption Key File Disclosure
The System extension Install tool in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 creates the
18RISK
open ↗Metasploit400
HTML Help Workshop 4.74 (hhp Project File) Buffer Overflow
Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary
50RISK
open ↗Metasploit600
Symantec AppStream LaunchObj ActiveX Control Arbitrary File Download and Execute
The LaunchObj ActiveX control before 5.2.2.865 in launcher.dll in Symantec AppStream Client 5.2.x before 5.2.2 SP3 MP1 d
50RISK
open ↗Metasploit400
Oracle Secure Backup NDMP_CONNECT_CLIENT_AUTH Buffer Overflow
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
50RISK
open ↗Metasploit300
Oracle Secure Backup exec_qr() Command Injection Vulnerability
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
30RISK
open ↗Metasploit400
BEA WebLogic JSESSIONID Cookie Value Overflow
Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA
50RISK
open ↗Metasploit300
Oracle DB SQL Injection in MDSYS.SDO_TOPO_DROP_FTBL Trigger
Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.2 allows remote authent
50RISK
open ↗Metasploit300
TrendMicro Data Loss Prevention 5.5 Directory Traversal
Directory traversal vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16,
60RISK
open ↗Metasploit300
Tomcat UTF-8 Directory Traversal Vulnerability
Directory traversal vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16,
60RISK
open ↗Metasploit500
HP OpenView Network Node Manager Toolbar.exe CGI Buffer Overflow
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote att
50RISK
open ↗Metasploit400
Destiny Media Player 1.61 PLS M3U Buffer Overflow
Stack-based buffer overflow in Pirate Radio Destiny Media Player 1.61 allows remote attackers to execute arbitrary code
50RISK
open ↗Metasploit100
SasCam Webcam Server v.2.6.5 Get() Method Buffer Overflow
Buffer overflow in the XHTTP Module 4.1.0.0 in the ActiveX control for SaschArt SasCam Webcam Server 2.6.5 allows remote
50RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.