
Exploit Database - Exploits for Penetration Testers, Researchers, and ...
The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.
About the Exploit Database
The Exploit Database is a CVE compliant archive of public exploits and corresponding vulnerable software, developed for use by penetration testers and vulnerability researchers.
Exploit Database Papers
Archived security papers and articles in various languages.
Exploit Database Statistics
The following graphs and statistics provide you with a glimpse of the entries that have been added to the Exploit Database over the years. They will be re-generated, at minimum, on a monthly basis and will …
Google Hacking Database (GHDB) - Google Dorks, OSINT, Recon
Jul 26, 2024 · The GHDB is an index of search queries (we call them dorks) used to find publicly available information, intended for pentesters and security researchers.
OpenSSH server (sshd) 9.8p1 - Race Condition - Linux remote Exploit
Apr 22, 2025 · * Exploit Title : OpenSSH server (sshd) 9.8p1 - Race Condition * Author : Milad Karimi (Ex3ptionaL) * Date : 2025-04-16 * * Description: * Targets a signal handler race condition in …
Apache 2.4.x - Buffer Overflow - Multiple webapps Exploit
Apr 1, 2023 · # Exploit Title: Apache 2.4.x - Buffer Overflow # Date: Jan 2 2023 # Exploit Author: Sunil Iyengar # Vendor Homepage: https://httpd.apache.org/ # Software Link: …
AVTECH IP Camera / NVR / DVR Devices - Exploit Database
Oct 11, 2016 · AVTECH IP Camera / NVR / DVR Devices - Multiple Vulnerabilities.. webapps exploit for CGI platform
Microsoft Windows 11 Version 24H2 Cross Device Service - Exploit …
Jun 9, 2025 · # # This exploit requires low privileges and user interaction but has low attack complexity # and results in high impact due to full privilege escalation. # import os
Samba 3.0.20 < 3.0.25rc3 - 'Username' map script ... - Exploit Database
Aug 18, 2010 · versions 3.0.20 through 3.0.25rc3 when using the non-default "username map script" configuration option. By specifying a username containing shell meta characters, attackers can …