Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 241 - 260 of 6,028 in total
F5 Big-IP Gather Information from MCP Datastore
Disclosed: November 16, 2022
module
Explore
F5 BIG-IP iControl CSRF File Write SOAP API
Disclosed: November 16, 2022
module
Explore
Bitbucket Environment Variable RCE
Disclosed: November 16, 2022
module
Explore
Lenovo Diagnostics Driver IOCTL memmove
Disclosed: November 09, 2022
module
Explore
Acronis Cyber Protect/Backup remote code execution
Disclosed: November 08, 2022
module
Explore
SolarWinds Orion Secrets Dump
Disclosed: November 08, 2022
module
Explore
Acronis Cyber Protect/Backup remote code execution
Disclosed: November 08, 2022
module
Explore
Clinic's Patient Management System 1.0 - Unauthenticated RCE
Disclosed: October 31, 2022
module
Explore
VMware NSX Manager XStream unauthenticated RCE
Disclosed: October 25, 2022
module
Explore
SolarWinds Information Service (SWIS) .NET Deserialization From AMQP RCE
Disclosed: October 19, 2022
module
Explore
Zimbra sudo + postfix privilege escalation
Disclosed: October 13, 2022
module
Explore
Apache Commons Text RCE
Disclosed: October 13, 2022
module
Explore
Fortinet FortiOS, FortiProxy, and FortiSwitchManager authentication bypass.
Disclosed: October 10, 2022
module
Explore
GitLab GitHub Repo Import Deserialization RCE
Disclosed: October 06, 2022
module
Explore
Oracle E-Business Suite (EBS) Unauthenticated Arbitrary File Upload
Disclosed: October 01, 2022
module
Explore
Microsoft Exchange ProxyNotShell RCE
Disclosed: September 28, 2022
module
Explore
mySCADA MyPRO Authenticated Command Injection (CVE-2023-28384)
Disclosed: September 22, 2022
module
Explore
Mobile Mouse RCE
Disclosed: September 20, 2022
module
Explore
Remote Control Collection RCE
Disclosed: September 20, 2022
module
Explore
Obsidian Plugin Persistence
Disclosed: September 16, 2022
module
Explore