Vulnerability & Exploit Database

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. These vulnerabilities are utilized by our vulnerability management tool InsightVM. The exploits are all included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 561 - 580 of 5,708 in total
Ahsay Backup v7.x-v8.1.1.50 (authenticated) file upload
Disclosed: June 01, 2019
module
Explore
Atlassian Crowd pdkinstall Unauthenticated Plugin Upload RCE
Disclosed: May 22, 2019
module
Explore
OpenEMR 5.0.1 Patch 6 SQLi Dump
Disclosed: May 17, 2019
module
Explore
ATutor 2.2.4 - Directory Traversal / Remote Code Execution,
Disclosed: May 17, 2019
module
Explore
Webmin Package Updates Remote Command Execution
Disclosed: May 16, 2019
module
Explore
IBM Websphere Application Server Network Deployment Untrusted Data Deserialization Remote Code Execution
Disclosed: May 15, 2019
module
Explore
DLINK DWL-2600 Authenticated Remote Command Injection
Disclosed: May 15, 2019
module
Explore
Cisco Prime Infrastructure Health Monitor TarArchive Directory Traversal Vulnerability
Disclosed: May 15, 2019
module
Explore
CVE-2019-0708 BlueKeep Microsoft Remote Desktop RCE Check
Disclosed: May 14, 2019
module
Explore
CVE-2019-0708 BlueKeep RDP Remote Windows Kernel Use After Free
Disclosed: May 14, 2019
module
Explore
Shopware createInstanceFromNamedArguments PHP Object Instantiation RCE
Disclosed: May 09, 2019
module
Explore
Barco WePresent file_transfer.cgi Command Injection
Disclosed: April 30, 2019
module
Explore
GetSimpleCMS Unauthenticated RCE
Disclosed: April 28, 2019
module
Explore
Moodle Admin Shell Upload
Disclosed: April 28, 2019
module
Explore
WP Database Backup RCE
Disclosed: April 24, 2019
module
Explore
Pulse Secure VPN Arbitrary File Disclosure
Disclosed: April 24, 2019
module
Explore
Pulse Secure VPN Arbitrary Command Execution
Disclosed: April 24, 2019
module
Explore
Oracle Weblogic Server Deserialization RCE - AsyncResponseService
Disclosed: April 23, 2019
module
Explore
SmarterTools SmarterMail less than build 6985 - .NET Deserialization Remote Code Execution
Disclosed: April 17, 2019
module
Explore
Spring Cloud Config Server Directory Traversal
Disclosed: April 17, 2019
module
Explore