Vulnerability & Exploit Database

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. These vulnerabilities are utilized by our vulnerability management tool InsightVM. The exploits are all included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 221 - 240 of 5,706 in total
WordPress Modern Events Calendar SQLi Scanner
Disclosed: December 13, 2021
module
Explore
MobileIron Core Unauthenticated JNDI Injection RCE (via Log4Shell)
Disclosed: December 12, 2021
module
Explore
VMware vCenter Server Unauthenticated JNDI Injection RCE (via Log4Shell)
Disclosed: December 09, 2021
module
Explore
Log4Shell HTTP Scanner
Disclosed: December 09, 2021
module
Explore
Log4Shell HTTP Header Injection
Disclosed: December 09, 2021
module
Explore
UniFi Network Application Unauthenticated JNDI Injection RCE (via Log4Shell)
Disclosed: December 09, 2021
module
Explore
Microsoft Exchange Server ChainedSerializationBinder Deny List Typo RCE
Disclosed: December 09, 2021
module
Explore
Microsoft Exchange Server ChainedSerializationBinder RCE
Disclosed: December 09, 2021
module
Explore
AjaxPro Deserialization Remote Code Execution
Disclosed: December 03, 2021
module
Explore
Ivanti Cloud Services Appliance (CSA) Command Injection
Disclosed: December 02, 2021
module
Explore
Grafana Plugin Path Traversal
Disclosed: December 02, 2021
module
Explore
Wordpress Secure Copy Content Protection and Content Locking sccp_id Unauthenticated SQLi
Disclosed: November 08, 2021
module
Explore
Cisco RV Series Authentication Bypass and Command Injection
Disclosed: November 02, 2021
module
Explore
Sitecore Experience Platform (XP) PreAuth Deserialization RCE
Disclosed: November 02, 2021
module
Explore
ChurchInfo 1.2.13-1.3.0 Authenticated RCE
Disclosed: October 30, 2021
module
Explore
WordPress WPS Hide Login Login Page Revealer
Disclosed: October 27, 2021
module
Explore
Zimbra zmslapd arbitrary module load
Disclosed: October 27, 2021
module
Explore
Apache Storm Nimbus getTopologyHistory Unauthenticated Command Execution
Disclosed: October 25, 2021
module
Explore
BillQuick Web Suite txtID SQLi
Disclosed: October 22, 2021
module
Explore
Wordpress Plugin Catch Themes Demo Import RCE
Disclosed: October 21, 2021
module
Explore