Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 281 - 300 of 6,028 in total
Zoho Password Manager Pro XML-RPC Java Deserialization
Disclosed: June 24, 2022
module
Explore
Cisco ASA-X with FirePOWER Services Authenticated Command Injection
Disclosed: June 22, 2022
module
Explore
Zyxel Firewall SUID Binary Privilege Escalation
Disclosed: June 14, 2022
module
Explore
Atlassian Confluence Namespace OGNL Injection
Disclosed: June 02, 2022
module
Explore
Microsoft Office Word MSDTJS
Disclosed: May 29, 2022
module
Explore
SuiteCRM authenticated SQL injection in export functionality
Disclosed: May 24, 2022
module
Explore
LDAP Query and Enumeration Module
Disclosed: May 19, 2022
module
Explore
Decrypt Citrix NetScaler Config Secrets
Disclosed: May 19, 2022
module
Explore
Gitea Git Fetch Remote Code Execution
Disclosed: May 16, 2022
module
Explore
VMware vCenter Extract Secrets from vmdir / vmafd DB File
Disclosed: May 10, 2022
module
Explore
Zip Path Traversal in Zimbra (mboximport) (CVE-2022-27925)
Disclosed: May 10, 2022
module
Explore
Icingaweb Directory Traversal in Static Library File Requests
Disclosed: May 09, 2022
module
Explore
F5 BIG-IP iControl RCE via REST Authentication Bypass
Disclosed: May 04, 2022
module
Explore
DotCMS RCE via Arbitrary File Upload.
Disclosed: May 03, 2022
module
Explore
Zyxel Firewall ZTP Unauthenticated Command Injection
Disclosed: April 28, 2022
module
Explore
ZoneMinder Language Settings Remote Code Execution
Disclosed: April 27, 2022
module
Explore
VMware vCenter Forge SAML Authentication Credentials
Disclosed: April 20, 2022
module
Explore
VICIdial Multiple Authenticated SQLi
Disclosed: April 19, 2022
module
Explore
Selenium geckodriver RCE
Disclosed: April 18, 2022
module
Explore
Selenium chrome RCE
Disclosed: April 18, 2022
module
Explore