Vulnerability & Exploit Database

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. These vulnerabilities are utilized by our vulnerability management tool InsightVM. The exploits are all included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 101 - 120 of 5,705 in total
SPIP form PHP Injection
Disclosed: February 27, 2023
module
Explore
ZoneMinder Snapshots Command Injection
Disclosed: February 24, 2023
module
Explore
RPyC 4.1.0 through 4.1.1 Remote Command Execution
Disclosed: February 19, 2023
module
Explore
Fortinet FortiNAC keyUpload.jsp arbitrary file write
Disclosed: February 16, 2023
module
Explore
Lucee Authenticated Scheduled Job Code Execution
Disclosed: February 10, 2023
module
Explore
Apache Druid JNDI Injection RCE
Disclosed: February 07, 2023
module
Explore
Joomla API Improper Access Checks
Disclosed: February 01, 2023
module
Explore
Fortra GoAnywhere MFT Unsafe Deserialization RCE
Disclosed: February 01, 2023
module
Explore
Froxlor Log Path RCE
Disclosed: January 29, 2023
module
Explore
VMware vRealize Log Insight Unauthenticated RCE
Disclosed: January 24, 2023
module
Explore
Sudoedit Extra Arguments Priv Esc
Disclosed: January 18, 2023
module
Explore
Oracle Weblogic PreAuth Remote Command Execution via ForeignOpaqueReference IIOP Deserialization
Disclosed: January 17, 2023
module
Explore
pyLoad js2py Python Execution
Disclosed: January 13, 2023
module
Explore
Wordpress Paid Membership Pro code Unauthenticated SQLi
Disclosed: January 12, 2023
module
Explore
Ancillary Function Driver (AFD) for WinSock Elevation of Privilege
Disclosed: January 10, 2023
module
Explore
ManageEngine ADSelfService Plus Unauthenticated SAML RCE
Disclosed: January 10, 2023
module
Explore
ManageEngine ServiceDesk Plus Unauthenticated SAML RCE
Disclosed: January 10, 2023
module
Explore
ManageEngine Endpoint Central Unauthenticated SAML RCE
Disclosed: January 10, 2023
module
Explore
Jorani unauthenticated Remote Code Execution
Disclosed: January 06, 2023
module
Explore
CWP login.php Unauthenticated RCE
Disclosed: January 05, 2023
module
Explore