Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,967GitHub PoC 13,264VulnCheck XDB 8,156Nuclei 4,201Metasploit 3,462✓ verified onlyrecentpopularrisk
3,462 exploits
Metasploit300
Oracle DB SQL Injection via SYS.LT.REMOVEWORKSPACE
Unspecified vulnerability in the Workspace Manager component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.3,
50RISK
open ↗Metasploit300
Oracle DB SQL Injection via SYS.LT.COMPRESSWORKSPACE
Unspecified vulnerability in the Workspace Manager component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.3,
23RISK
open ↗Metasploit300
Guild FTPd 0.999.8.11/0.999.14 Heap Corruption
GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possib
50RISK
open ↗Metasploit200
Computer Associates ARCserve REPORTREMOTEEXECUTECML Buffer Overflow
Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve
60RISK
open ↗Metasploit300
iseemedia / Roxio / MGI Software LPViewer ActiveX Control Buffer Overflow
Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and
43RISK
open ↗Metasploit300
mIRC PRIVMSG Handling Stack Buffer Overflow
Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIV
50RISK
open ↗Metasploit600
phpScheduleIt PHP reserve.php start_date Parameter Arbitrary Code Injection
Eval injection vulnerability in reserve.php in phpScheduleIt 1.2.10 and earlier, when magic_quotes_gpc is disabled, allo
43RISK
open ↗Metasploit500
DATAC RealWin SCADA Server Buffer Overflow
Stack-based buffer overflow in RealFlex Technologies Ltd. RealWin Server 2.0, as distributed by DATAC, allows remote att
50RISK
open ↗Metasploit300
WinFTP 2.3.0 NLST Denial of Service
WinFTP FTP Server 2.3.0, when passive (aka PASV) mode is used, allows remote authenticated users to cause a denial of se
43RISK
open ↗Metasploit300
Windows Media Encoder 9 wmex.dll ActiveX Buffer Overflow
Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9
50RISK
open ↗Metasploit500
BEA Weblogic Transfer-Encoding Buffer Overflow
Unspecified vulnerability in the WebLogic Server Plugins for Apache component in BEA Product Suite 10.3, 10.0 MP1, 9.2 M
50RISK
open ↗Metasploit400
Ultra Shareware Office Control ActiveX HttpUpload Buffer Overflow
Stack-based buffer overflow in the Ultra.OfficeControl ActiveX control in OfficeCtrl.ocx 2.0.2008.801 in Ultra Shareware
50RISK
open ↗Metasploit600
AWStats Totals multisort Remote Command Execution
awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences
50RISK
open ↗Metasploit100
activePDF WebGrabber ActiveX Control Buffer Overflow
activePDF WebGrabber ActiveX Control Buffer Overflow
36RISK
open ↗Metasploit300
SoftArtisans XFile FileManager ActiveX Control Buffer Overflow
Multiple stack-based buffer overflows in the FileManager ActiveX control in SAFmgPws.dll in SoftArtisans XFile before 2.
43RISK
open ↗Metasploit300
Microsoft Visual Studio Mdmask32.ocx ActiveX Stack Buffer Overflow
Heap-based buffer overflow in the MaskedEdit ActiveX control in Msmask32.ocx 6.0.81.69, and possibly other versions befo
50RISK
open ↗Metasploit500
Racer v0.5.3 Beta 5 Buffer Overflow
Multiple buffer overflows in the (1) client and (2) server in Racer 0.5.3 beta 5 allow remote attackers to execute arbit
50RISK
open ↗Metasploit300
Ruby WEBrick::HTTP::DefaultFileHandler DoS
Algorithmic complexity vulnerability in the WEBrick::HTTPUtils.split_header_value function in WEBrick::HTTP::DefaultFile
60RISK
open ↗Metasploit400
WebEx UCF atucfobj.dll ActiveX NewObject Method Buffer Overflow
Stack-based buffer overflow in the WebexUCFObject ActiveX control in atucfobj.dll in Cisco WebEx Meeting Manager before
50RISK
open ↗Metasploit300
DNS BailiWicked Domain Attack
The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windo
60RISK
open ↗Metasploit300
DNS BailiWicked Host Attack
The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windo
60RISK
open ↗Metasploit500
Oracle Weblogic Apache Connector POST Request Buffer Overflow
Stack-based buffer overflow in the Apache Connector (mod_wl) in Oracle WebLogic Server (formerly BEA WebLogic Server) 10
60RISK
open ↗Metasploit0
Trixbox langChoice PHP Local File Inclusion
Directory traversal vulnerability in user/index.php in Fonality trixbox CE 2.6.1 and earlier allows remote attackers to
43RISK
open ↗Metasploit600
Snapshot Viewer for Microsoft Access ActiveX Control Arbitrary File Download
The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snaps
50RISK
open ↗Metasploit200
OpenTFTP SP 1.4 Error Packet Overflow
Buffer overflow in TFTP Server SP 1.4 and 1.5 on Windows, and possibly other versions, allows remote attackers to execut
50RISK
open ↗Metasploit300
Novell GroupWise Messenger Client Buffer Overflow
Multiple stack-based buffer overflows in Novell GroupWise Messenger (GWIM) Client before 2.0.3 HP1 for Windows allow rem
50RISK
open ↗Metasploit200
Novell Client 4.91 SP4 nwfs.sys Local Privilege Escalation
Unspecified vulnerability in NWFS.SYS in Novell Client for Windows 4.91 SP4 has unknown impact and attack vectors, possi
38RISK
open ↗Metasploit300
Novell iPrint Client ActiveX Control Buffer Overflow
Multiple stack-based buffer overflows in a certain ActiveX control in ienipp.ocx in Novell iPrint Client for Windows bef
50RISK
open ↗Metasploit300
VeryPDF PDFView OCX ActiveX OpenPDF Heap Overflow
Heap-based buffer overflow in the PDFVIEW.PdfviewCtrl.1 ActiveX control in pdfview.ocx 2.0.0.1 in VeryDOC PDF Viewer OCX
50RISK
open ↗Metasploit600
BASE base_qry_common Remote File Include
PHP remote file inclusion vulnerability in Basic Analysis and Security Engine (BASE) 1.2.4 and earlier, with register_gl
50RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.