Public arsenal
Exploits
867 indexed CVEs have a ready-to-use public exploit, 108 of them in the CISA KEV catalog and 326 affecting a tracked app.
- CVEs with exploit
- 867
- Exploits catalogued
- 1,030
- In CISA KEV
- 108
- On tracked fleet
- 326
| CVE | Severity | Sources | EPSS | Apps |
|---|---|---|---|---|
|
CVE-2023-28288
Microsoft SharePoint Server Spoofing Vulnerability |
HIGH | ExploitDB | 6% | — |
|
CVE-2018-0952
Diagnostic Hub Standard Collector Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 6% | |
|
CVE-2016-3219
The kernel-mode driver in Microsoft Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka… |
HIGH | ExploitDB | 6% | |
|
CVE-2017-6074
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 6% | |
|
CVE-2023-33131
Microsoft Outlook Remote Code Execution Vulnerability |
HIGH | ExploitDB | 6% | |
|
CVE-2017-0167
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 6% | |
|
CVE-2023-21752
Windows Backup Service Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2018-16083
An out of bounds read in forward error correction code in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker… |
HIGH | ExploitDB | 5% | |
|
CVE-2015-8664
Integer overflow in the WebCursor::Deserialize function in content/common/cursors/webcursor.cc in Google Chrome before 47.0.2526.… |
HIGH | ExploitDB | 5% | |
|
CVE-2019-0863
KEV Windows Error Reporting Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2016-0007
The sandbox implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows … |
HIGH | ExploitDB | 5% | |
|
CVE-2019-1476
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-8477
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-8483
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2016-0073
Windows Kernel Local Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2016-0079
Windows Kernel Local Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-0300
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-0100
Windows COM Session Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2019-1089
Windows RPCSS Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-8490
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2018-16071
A use after free in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap corruptio… |
HIGH | ExploitDB | 5% | |
|
CVE-2017-0299
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2019-0543
KEV Microsoft Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2022-45639
OS Command injection vulnerability in sleuthkit fls tool 4.11.1 allows attackers to execute arbitrary commands via a crafted valu… |
HIGH | ExploitDB | 5% | — |
|
CVE-2019-5796
Data race in extensions guest view in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap c… |
HIGH | ExploitDB | 5% | |
|
CVE-2016-6754
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 5% | |
|
CVE-2021-31950
Microsoft SharePoint Server Spoofing Vulnerability |
HIGH | ExploitDB | 5% | — |
|
CVE-2019-1125
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2019-0730
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2019-0731
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2015-9222
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 4% | |
|
CVE-2017-8665
Xamarin.iOS Elevation Of Privilege Vulnerability |
HIGH | ExploitDB | 4% | — |
|
CVE-2016-5348
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 4% | |
|
CVE-2019-0836
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2017-8684
Windows GDI+ Information Disclosure Vulnerability |
HIGH | ExploitDB | 4% | — |
|
CVE-2019-0796
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2017-8678
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2017-8680
Windows GDI+ Information Disclosure Vulnerability |
HIGH | ExploitDB | 4% | — |
|
CVE-2017-8681
Windows GDI+ Information Disclosure Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2017-8687
Win32k Information Disclosure Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2016-6707
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 4% | |
|
CVE-2016-7216
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | — |
|
CVE-2016-7224
VHD Driver Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2016-7225
VHD Driver Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2016-7226
VHD Driver Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2018-0746
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2023-23408
Azure Apache Ambari Spoofing Vulnerability |
HIGH | ExploitDB | 4% | — |
|
CVE-2016-0006
The sandbox implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows … |
HIGH | ExploitDB | 4% | |
|
CVE-2018-8410
Windows Registry Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 4% | |
|
CVE-2025-32023
Redis allows out of bounds writes in hyperloglog commands leading to RCE |
HIGH | ExploitDB | 4% | — |
Exploits aggregated from ExploitDB, Nuclei, Metasploit and GitHub PoCs, mapped to the CVEs Scout indexes. For defensive research and exposure testing only.