Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 1,041 - 1,060 of 6,030 in total
Western Digital MyCloud unauthenticated command injection
Disclosed: December 14, 2016
module
Explore
Netgear R7000 and R6400 cgi-bin Command Injection
Disclosed: December 06, 2016
module
Explore
DiskBoss Enterprise GET Buffer Overflow
Disclosed: December 05, 2016
module
Explore
DiskSavvy Enterprise GET Buffer Overflow
Disclosed: December 01, 2016
module
Explore
Firefox nsSMILTimeContainer::NotifyTimeChange() RCE
Disclosed: November 30, 2016
module
Explore
Jenkins CLI HTTP Java Deserialization Vulnerability
Disclosed: November 16, 2016
module
Explore
Dlink DIR Routers Unauthenticated HNAP Login Stack Buffer Overflow
Disclosed: November 07, 2016
module
Explore
Zyxel/Eir D1000 DSL Modem NewNTPServer Command Injection Over TR-064
Disclosed: November 07, 2016
module
Explore
WinaXe 7.7 FTP Client Remote Buffer Overflow
Disclosed: November 03, 2016
module
Explore
Bassmaster Batch Arbitrary JavaScript Injection Remote Code Execution
Disclosed: November 01, 2016
module
Explore
Joomla Account Creation and Privilege Escalation
Disclosed: October 25, 2016
module
Explore
Hadoop YARN ResourceManager Unauthenticated Command Execution
Disclosed: October 19, 2016
module
Explore
Ruby on Rails Dynamic Render File Upload Remote Code Execution
Disclosed: October 16, 2016
module
Explore
PowerShellEmpire Arbitrary File Upload (Skywalker)
Disclosed: October 15, 2016
module
Explore
Apache Tomcat on RedHat Based Systems Insecure Temp Config Privilege Escalation
Disclosed: October 10, 2016
module
Explore
Cisco Firepower Management Console 6.0 Post Auth Report Download Directory Traversal
Disclosed: October 10, 2016
module
Explore
Cisco Firepower Management Console 6.0 Post Authentication UserAdd Vulnerability
Disclosed: October 10, 2016
module
Explore
HTA Web Server
Disclosed: October 06, 2016
module
Explore
Disk Pulse Enterprise Login Buffer Overflow
Disclosed: October 03, 2016
module
Explore
Apache Tomcat on Ubuntu Log Init Privilege Escalation
Disclosed: September 30, 2016
module
Explore