Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 201 - 220 of 6,028 in total
Rocket Software Unidata udadmin_server Authentication Bypass
Disclosed: March 30, 2023
module
Explore
Rocket Software Unidata udadmin_server Stack Buffer Overflow in Password
Disclosed: March 30, 2023
module
Explore
Local Privilege Escalation via CVE-2023-0386
Disclosed: March 22, 2023
module
Explore
Wordpress Plugin WooCommerce Payments Unauthenticated Admin Creation
Disclosed: March 22, 2023
module
Explore
MinIO Bootstrap Verify Information Disclosure
Disclosed: March 20, 2023
module
Explore
pfSense Restore RRD Data Command Injection
Disclosed: March 18, 2023
module
Explore
Adobe ColdFusion Unauthenticated Remote Code Execution
Disclosed: March 14, 2023
module
Explore
Dolibarr 16 pre-auth contact database dump
Disclosed: March 14, 2023
module
Explore
PaperCut PaperCutNG Authentication Bypass
Disclosed: March 13, 2023
module
Explore
Lexmark Device Embedded Web Server RCE
Disclosed: March 13, 2023
module
Explore
SPIP form PHP Injection
Disclosed: February 27, 2023
module
Explore
SPIP form PHP Injection
Disclosed: February 27, 2023
module
Explore
ZoneMinder Snapshots Command Injection
Disclosed: February 24, 2023
module
Explore
RPyC 4.1.0 through 4.1.1 Remote Command Execution
Disclosed: February 19, 2023
module
Explore
Fortinet FortiNAC keyUpload.jsp arbitrary file write
Disclosed: February 16, 2023
module
Explore
Lucee Authenticated Scheduled Job Code Execution
Disclosed: February 10, 2023
module
Explore
Apache Druid JNDI Injection RCE
Disclosed: February 07, 2023
module
Explore
Fortra GoAnywhere MFT Unsafe Deserialization RCE
Disclosed: February 01, 2023
module
Explore
Joomla API Improper Access Checks
Disclosed: February 01, 2023
module
Explore
Froxlor Log Path RCE
Disclosed: January 29, 2023
module
Explore