Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
79,107cataloged exploits
36,322CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,464Referência 22,936GitHub PoC 15,010VulnCheck XDB 8,846Nuclei 4,361Metasploit 3,490✓ verified onlyrecentpopularrisk
24,695 exploits
Exploit-DB✓ VexDay Proof
IBM Cognos Business Intelligence - XML External Entity Information Disclosure
IBM Cognos Business Intelligence 8.4.1 before IF3, 10.1.0 before IF4, 10.1.1 before IF4, 10.2.0 before IF4, 10.2.1 befor
23RISK
open ↗Exploit-DB✓ VexDay Proof
Bugzilla 4.2 - Tabular Reports Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in report.cgi in Bugzilla 4.1.x and 4.2.x before 4.2.7 and 4.3.x and
23RISK
open ↗Exploit-DB✓ VexDay Proof
Bugzilla - 'editflagtypes.cgi' Multiple Cross-Site Scripting Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11;
23RISK
open ↗Exploit-DB✓ VexDay Proof
davfs2 1.4.6/1.4.7 - Local Privilege Escalation
WEB-DAV Linux File System (davfs2) 1.4.6 and 1.4.7 allow local users to gain privileges via unknown attack vectors in (1
23RISK
open ↗Exploit-DB✓ VexDay Proof
HP LoadRunner - 'magentproc.exe' Remote Overflow (Metasploit)
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown ve
50RISK
open ↗Exploit-DB✓ VexDay Proof
Apache Tomcat/JBoss EJBInvokerServlet / JMXInvokerServlet (RMI over HTTP) Marshalled Object - Remote Code Execution
HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, Identity Driven Manager (IDM) 4.0, and Application Lifecycle
100RISK
open ↗Exploit-DB✓ VexDay Proof
FreeBSD 9.0 - Intel SYSRET Kernel Privilege Escalation
The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and
50RISK
open ↗Exploit-DB✓ VexDay Proof
HylaFAX+ 5.2.4 > 5.5.3 - Buffer Overflow
Heap-based buffer overflow in hfaxd in HylaFAX+ 5.2.4 through 5.5.3, when using LDAP authentication, might allow remote
23RISK
open ↗Exploit-DB✓ VexDay Proof
Micorosft Internet Explorer - SetMouseCapture Use-After-Free (Metasploit)
Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explorer 6 throug
100RISK
open ↗Exploit-DB✓ VexDay Proof
Alienvault Open Source SIEM (OSSIM) 3.1 - 'date_from' Multiple SQL Injections
Multiple SQL injection vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 4.3 and earlier
43RISK
open ↗Exploit-DB✓ VexDay Proof
PinApp Mail-SeCure 3.70 - Access Control Failure
PineApp Mail-SeCure before 3.70 allows remote authenticated users to gain privileges by leveraging console access and pr
23RISK
open ↗Exploit-DB✓ VexDay Proof
GLPI 0.84.1 - Multiple Vulnerabilities
inc/central.class.php in GLPI before 0.84.2 does not attempt to make install/install.php unavailable after an installati
38RISK
open ↗Exploit-DB✓ VexDay Proof
Nodejs - 'js-yaml load()' Code Exec (Metasploit)
The JS-YAML module before 2.0.5 for Node.js parses input without properly considering the unsafe !!js/function tag, whic
43RISK
open ↗Exploit-DB✓ VexDay Proof
IBM AIX 6.1/7.1 - Local Privilege Escalation
Multiple unspecified vulnerabilities in the InfiniBand subsystem in IBM AIX 6.1 and 7.1, and VIOS 2.2.2.2-FP-26 SP-02, a
38RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Theme File Handling - Arbitrary Code Execution (MS13-071) (Metasploit)
Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, and Windows Server 2008 SP2 allow remote a
68RISK
open ↗Exploit-DB✓ VexDay Proof
Linksys WRT110 - Remote Command Execution (Metasploit)
Cross-site request forgery (CSRF) vulnerability in Cisco Linksys WRT110 allows remote attackers to hijack the authentica
43RISK
open ↗Exploit-DB✓ VexDay Proof
GLPI - 'install.php' Remote Command Execution (Metasploit)
inc/central.class.php in GLPI before 0.84.2 does not attempt to make install/install.php unavailable after an installati
38RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - CCaret Use-After-Free (MS13-069) (Metasploit)
Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (
50RISK
open ↗Exploit-DB✓ VexDay Proof
WordPress Plugin Lazy SEO 1.1.9 - Arbitrary File Upload
Unrestricted file upload vulnerability in lazyseo.php in the Lazy SEO plugin 1.1.9 for WordPress allows remote attackers
23RISK
open ↗Exploit-DB✓ VexDay Proof
HP ProCurve Manager SNAC - UpdateCertificatesServlet Arbitrary File Upload (Metasploit)
UpdateCertificatesServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0,
50RISK
open ↗Exploit-DB✓ VexDay Proof
Sophos Web Protection Appliance - clear_keys.pl Privilege Escalation (Metasploit)
The close_connections function in /opt/cma/bin/clear_keys.pl in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1
38RISK
open ↗Exploit-DB✓ VexDay Proof
Sophos Web Protection Appliance - 'sblistpack' Arbitrary Command Execution (Metasploit)
The get_referers function in /opt/ws/bin/sblistpack in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1.1 allows
60RISK
open ↗Exploit-DB✓ VexDay Proof
Vino VNC Server 3.7.3 - Persistent Denial of Service
The vino_server_client_data_pending function in vino-server.c in GNOME Vino 2.26.1, 2.32.1, 3.7.3, and earlier, and 3.8
23RISK
open ↗Exploit-DB✓ VexDay Proof
Mozilla Firefox 9.0.1 - Same Origin Policy Security Bypass
Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross
23RISK
open ↗Exploit-DB✓ VexDay Proof
HP ProCurve Manager - SNAC UpdateDomainControllerServlet Arbitrary File Upload (Metasploit)
UpdateDomainControllerServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4
60RISK
open ↗Exploit-DB✓ VexDay Proof
Zimplit CMS 3.0 - Multiple Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in Zimplit CMS 3.0, and possibly earlier, allow remote attackers to
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
28RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
Microsoft Internet Explorer 6 through 10 allows local users to bypass the elevation policy check in the (1) Protected Mo
23RISK
open ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - CAnchorElement Use-After-Free (MS13-055) (Metasploit)
Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
28RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.