Metasploit
1,875 exploits
Active since Aug 1990
Windows Adobe Type Manager Library - RCE
CVSS 8.8
Seagate Business NAS <2015.00322 - RCE
CVSS 9.8
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
PHP-Charts 1.0 - Unauthenticated Remote Code Execution via GET Parameter Eval Injection
Foxit Reader Plugin 2.2.1.530 - Buffer Overflow
Glossword 1.8.8-1.8.12 - Authenticated Arbitrary File Upload and Remote Code Execution via Administrative Interface
Kordil EDMS v2.2.60rc3 - Unauthenticated RCE
Netgear routers <1.1.00.45 - Command Injection
CVSS 7.2
Netgear router <1.0.0.36 - Command Injection
CVSS 7.2
D-Link DIR-615H1 <8.04 - Command Injection
CVSS 7.2
Linksys router <v2.0.03 - Command Injection
LibrettoCMS 1.1.7 - Unauthenticated RCE
ZPanel - Local Privilege Escalation via zsudo Sudoers Misconfiguration
InstantCMS < 1.6 - Remote PHP Code Execution via Search View Handler
CVSS 9.8
D-Link DIR-300/615 - Command Injection
CVSS 8.8
Raidsonic IB-NAS5220 and IB-NAS4220 - Unauthenticated OS Command Injection via timeHandler.cgi timeZone Parameter
D-Link DIR-300 rev B & DIR-600 <2.13/2.14b01 - Command Injection
CVSS 9.8
Agnitum Outpost Internet Security 8.1 - Privilege Escalation
WebTester 5.x - Unauthenticated OS Command Injection via install2.php Parameters
ProcessMaker Open Source 2.x - Code Injection
Kimai 0.9.2.x - Unauthenticated SQL Injection via db_restore.php dates[] Parameter
ZoneMinder Video Server <1.25.0 - Command Injection
Polycom HDX System Software < 3.0.5 - Use of Hard-coded Credentials
CVSS 9.8
Distributed Ruby <1.8 - Code Injection
CVSS 9.8
Distributed Ruby <1.8 - Buffer Overflow
CVSS 9.8