Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,967GitHub PoC 13,264VulnCheck XDB 8,156Nuclei 4,201Metasploit 3,462✓ verified onlyrecentpopularrisk
3,462 exploits
Metasploit500
EFS Easy Chat Server Authentication Request Handling Buffer Overflow
chat.ghp in Easy Chat Server 1.2 allows remote attackers to cause a denial of service (server crash) via a long username
60RISK
open ↗Metasploit200
HP OpenView Operations OVTrace Buffer Overflow
Multiple stack-based buffer overflows in the Shared Trace Service (OVTrace) service for HP OpenView Operations A.07.50 f
50RISK
open ↗Metasploit200
Borland Interbase Create-Request Buffer Overflow
Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before SP2 allows remote at
50RISK
open ↗Metasploit200
Windows RSH Daemon Buffer Overflow
Buffer overflow in Mike Dubman Windows RSH daemon (rshd) 1.7 has unknown impact and remote attack vectors, aka ZD-000000
50RISK
open ↗Metasploit200
Ipswitch IMail IMAP SEARCH Buffer Overflow
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote au
60RISK
open ↗Metasploit0
SquirrelMail PGP Plugin Command Execution (SMTP)
The parseAddress code in (1) SquirrelMail 1.4.0 and (2) GPG Plugin 1.1 allows remote attackers to execute commands via s
43RISK
open ↗Metasploit300
McAfee Visual Trace ActiveX Control Buffer Overflow
Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Ex
50RISK
open ↗Metasploit300
EnjoySAP SAP GUI ActiveX Control Buffer Overflow
Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEnd\SapGui\kwedit.dll in the EnjoySAP
50RISK
open ↗Metasploit500
SAP DB 7.4 WebTools Buffer Overflow
Multiple stack-based buffer overflows in waHTTP.exe (aka the SAP DB Web Server) in SAP DB, possibly 7.3 through 7.5, all
60RISK
open ↗Metasploit400
Trend Micro OfficeScan Remote Stack Buffer Overflow
Stack-based buffer overflow in Trend Micro OfficeScan Corporate Edition 8.0 Patch 2 build 1189 and earlier, and 7.3 Patc
50RISK
open ↗Metasploit300
RKD Software BarCodeAx.dll v4.9 ActiveX Remote Stack Buffer Overflow
Stack-based buffer overflow in the BeginPrint method in a certain ActiveX control in RKD Software (barcodetools.com) Bar
50RISK
open ↗Metasploit400
Altap Salamander 2.5 PE Viewer Buffer Overflow
Stack-based buffer overflow in peviewer.spl in Altap Servant Salamander 2.5 with Portable Executable Viewer 2.02 (Englis
50RISK
open ↗Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer Buffer Overflow
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops a
50RISK
open ↗Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer rxsSetDataGrowthScheduleAndFilter Buffer Overflow
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops a
50RISK
open ↗Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer Buffer Overflow
Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r1
50RISK
open ↗Metasploit200
CA BrightStor ARCserve for Laptops and Desktops LGServer Multiple Commands Buffer Overflow
Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops a
50RISK
open ↗Metasploit300
FlipViewer FViewerLoading ActiveX Control Buffer Overflow
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipView
50RISK
open ↗Metasploit400
CA Antivirus Engine CAB Buffer Overflow
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associ
50RISK
open ↗Metasploit600
PostgreSQL for Linux Payload Execution
The Database Link library (dblink) in PostgreSQL 8.1 implements functions via CREATE statements that map to arbitrary li
23RISK
open ↗Metasploit400
Yahoo! Messenger 8.1.0.249 ActiveX Control Buffer Overflow
Buffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows
50RISK
open ↗Metasploit300
DVD X Player 5.5 .plf PlayList Buffer Overflow
Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF
50RISK
open ↗Metasploit300
Logitech VideoCall ActiveX Control Buffer Overflow
Multiple stack-based buffer overflows in ActiveX controls (1) VibeC in (a) vibecontrol.dll, (2) CallManager and (3) View
50RISK
open ↗Metasploit600
Zenturi ProgramChecker ActiveX Control Arbitrary File Download
Multiple buffer overflows in certain ActiveX controls in sasatl.dll in Zenturi ProgramChecker allow remote attackers to
50RISK
open ↗Metasploit200
Mac OS X mDNSResponder UPnP Location Overflow
Buffer overflow in mDNSResponder in Apple Mac OS X 10.4 up to 10.4.9 allows remote attackers to cause a denial of servic
50RISK
open ↗Metasploit500
UltraISO CUE File Parsing Buffer Overflow
Stack-based buffer overflow in UltraISO 8.6.2.2011 and earlier allows user-assisted remote attackers to execute arbitrar
50RISK
open ↗Metasploit300
Symantec Norton Internet Security 2004 ActiveX Control Buffer Overflow
Buffer overflow in the ISAlertDataCOM ActiveX control in ISLALERT.DLL for Norton Personal Firewall 2004 and Internet Sec
50RISK
open ↗Metasploit200
Samba lsa_io_trans_names Heap Overflow
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RISK
open ↗Metasploit600
Samba "username map script" Command Execution
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RISK
open ↗Metasploit200
Samba lsa_io_trans_names Heap Overflow
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RISK
open ↗Metasploit400
Samba lsa_io_trans_names Heap Overflow
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.