Vulnerability & Exploit Database

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. These vulnerabilities are utilized by our vulnerability management tool InsightVM. The exploits are all included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 201 - 220 of 5,706 in total
pfSense Diag Routes Web Shell Upload
Disclosed: February 23, 2022
module
Explore
Dirty Pipe Local Privilege Escalation via CVE-2022-0847
Disclosed: February 20, 2022
module
Explore
Redis Lua Sandbox Escape
Disclosed: February 18, 2022
module
Explore
Sourcegraph gitserver sshCommand RCE
Disclosed: February 18, 2022
module
Explore
Wordpress MasterStudy Admin Account Creation
Disclosed: February 18, 2022
module
Explore
CVE-2022-21999 SpoolFool Privesc
Disclosed: February 08, 2022
module
Explore
Netfilter nft_set_elem_init Heap Overflow Privilege Escalation
Disclosed: February 07, 2022
module
Explore
Docker cgroups Container Escape
Disclosed: February 04, 2022
module
Explore
Cisco RV340 SSL VPN Unauthenticated Remote Code Execution
Disclosed: February 02, 2022
module
Explore
Zyxel chained RCE using LFI and weak password derivation algorithm
Disclosed: February 01, 2022
module
Explore
Zyxel Unauthenticated LAN Remote Code Execution
Disclosed: February 01, 2022
module
Explore
Microweber CMS v1.2.10 Local File Inclusion (Authenticated)
Disclosed: January 30, 2022
module
Explore
vmwgfx Driver File Descriptor Handling Priv Esc
Disclosed: January 28, 2022
module
Explore
Spring Cloud Gateway Remote Code Execution
Disclosed: January 26, 2022
module
Explore
GLPI htmLawed php command injection
Disclosed: January 26, 2022
module
Explore
Local Privilege Escalation in polkits pkexec
Disclosed: January 25, 2022
module
Explore
Wordpress RegistrationMagic task_ids Authenticated SQLi
Disclosed: January 23, 2022
module
Explore
Apache Couchdb Erlang RCE
Disclosed: January 21, 2022
module
Explore
TerraMaster TOS 4.2.15 or lower - RCE chain from unauthenticated to root via session crafting.
Disclosed: December 24, 2021
module
Explore
SonicWall SMA 100 Series Authenticated Command Injection
Disclosed: December 14, 2021
module
Explore