A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. These vulnerabilities are utilized by our vulnerability management tool InsightVM. The exploits are all included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 541 - 560 of 5,808 in total
Google Chrome 80 JSCreate side-effect type confusion exploit
Disclosed: February 19, 2020
module
Explore
Cisco AnyConnect Priv Esc through Path Traversal
Disclosed: February 19, 2020
module
Explore
Aerohive NetConfig 10.0r8a LFI and log poisoning to RCE
Disclosed: February 17, 2020
module
Explore
SQL Server Reporting Services (SSRS) ViewState Deserialization
Disclosed: February 11, 2020
module
Explore
Exchange Control Panel ViewState Deserialization
Disclosed: February 11, 2020
module
Explore
Service Tracing Privilege Elevation Vulnerability
Disclosed: February 11, 2020
module
Explore
Unraid 6.8.0 Auth Bypass PHP Code Execution
Disclosed: February 10, 2020
module
Explore
Horde CSV import arbitrary PHP code execution
Disclosed: February 07, 2020
module
Explore
EyesOfNetwork 5.1-5.3 AutoDiscovery Target Command Execution
Disclosed: February 06, 2020
module
Explore
PlaySMS index.php Unauthenticated Template Injection Code Execution
Disclosed: February 05, 2020
module
Explore
CA Unified Infrastructure Management Nimsoft 7.80 - Remote Buffer Overflow
Disclosed: February 05, 2020
module
Explore
Arista restricted shell escape (with privesc)
Disclosed: February 02, 2020
module
Explore
OpenSMTPD MAIL FROM Remote Code Execution
Disclosed: January 28, 2020
module
Explore
Centreon Poller Authenticated Remote Command Execution
Disclosed: January 27, 2020
module
Explore
Ricoh Driver Privilege Escalation
Disclosed: January 22, 2020
module
Explore
WebLogic Server Deserialization RCE - BadAttributeValueExpException
Disclosed: January 15, 2020
module
Explore
WordPress InfiniteWP Client Authentication Bypass
Disclosed: January 14, 2020
module
Explore
"Cablehaunt" Cable Modem WebSocket DoS
Disclosed: January 07, 2020
module
Explore
D-Link Devices Unauthenticated Remote Command Execution in ssdpcgi
Disclosed: December 24, 2019
module
Explore
D-Link DIR-859 Unauthenticated Remote Command Execution
Disclosed: December 24, 2019
module
Explore