A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. These vulnerabilities are utilized by our vulnerability management tool InsightVM. The exploits are all included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 1,241 - 1,260 of 5,808 in total
Solarwinds Orion AccountManagement.asmx GetAccounts Admin Creation
Disclosed: February 24, 2015
module
Explore
WordPress Contus Video Gallery Unauthenticated SQL Injection Scanner
Disclosed: February 24, 2015
module
Explore
D-Link DCS-931L File Upload
Disclosed: February 23, 2015
module
Explore
WordPress Admin Shell Upload
Disclosed: February 21, 2015
module
Explore
Javascript Injection for Eval-based Unpackers
Disclosed: February 18, 2015
module
Explore
D-Link Devices HNAP SOAPAction-Header Command Execution
Disclosed: February 13, 2015
module
Explore
Netgear Unauthenticated SOAP Password Extractor
Disclosed: February 11, 2015
module
Explore
SixApart MovableType Storable Perl Code Execution
Disclosed: February 11, 2015
module
Explore
WordPress Holding Pattern Theme Arbitrary File Upload
Disclosed: February 11, 2015
module
Explore
ElasticSearch Search Groovy Sandbox Bypass
Disclosed: February 11, 2015
module
Explore
Maarch LetterBox Unrestricted File Upload
Disclosed: February 11, 2015
module
Explore
WordPress WPLMS Theme Privilege Escalation
Disclosed: February 09, 2015
module
Explore
Ektron 8.5, 8.7, 9.0 XSLT Transform Remote Code Execution
Disclosed: February 05, 2015
module
Explore
WordPress Ultimate CSV Importer User Table Extract
Disclosed: February 02, 2015
module
Explore
Adobe Flash Player ByteArray With Workers Use After Free
Disclosed: February 02, 2015
module
Explore
MS15-018 Microsoft Internet Explorer 10 and 11 Cross-Domain JavaScript Injection
Disclosed: February 01, 2015
module
Explore
X360 VideoPlayer ActiveX Control Buffer Overflow
Disclosed: January 30, 2015
module
Explore
ManageEngine Multiple Products Arbitrary Directory Listing
Disclosed: January 28, 2015
module
Explore
ManageEngine Multiple Products Arbitrary File Download
Disclosed: January 28, 2015
module
Explore
Oracle Weblogic Server Deserialization RCE - Raw Object
Disclosed: January 28, 2015
module
Explore