Metasploit
1,875 exploits
Active since Aug 1990
Mozilla Firefox <1.5, Thunderbird <1.5 - RCE
Firefox < 37.0 and ESR 31.x < 31.6 - Remote Code Execution via resource: URL Bypass
Movable Type 4.2x, 4.3x Web Upgrade Remote Code Execution
Metasploit Web UI - Diagnostic Console Command Execution (Metasploit)
MediaWiki <1.22.2/<1.21.5/<1.19.11 - RCE
ManageEngine Security Manager Plus 5.5 build 5505 - SQL Injection (Metasploit)
ManageEngine EventLog Analyzer 9.0/8.2 - Remote Code Execution via ZIP Traversal
ManageEngine Desktop Central < 10.0.479 - Remote Code Execution via Java Deserialization in FileStorage
CVSS 9.8
Legend Perl IRC Bot - Remote Code Execution (Metasploit)
Legend Perl IRC Bot - Remote Code Execution (Metasploit)
Jenkins XStream Groovy classpath Deserialization Vulnerability
CVSS 8.8
Jenkins - Script-Console Java Execution (Metasploit)
JBoss Application Server - Unauthenticated Administrative Access via Default Configuration
JBoss JMX Console Deployer Upload and Execute
CVSS 5.3
JBoss JMX Console Deployer Upload and Execute
CVSS 5.3
JBoss Application Server - Unauthenticated Administrative Access via Default Configuration
Oracle Java SE JDK/JRE 7/6u27/5.0u31/1.4.2_33 & JRockit R28.1.4 - RCE via RMI
Java Applet Rhino Script Engine Remote Code Execution
CVSS 9.8
Oracle JRE 7 through Update 11 and OpenJDK 7 - Security Sandbox Bypass via JMX
CVSS 5.3
Oracle JRE - Improper Access Control
CVSS 3.7
Oracle Java SE <7 Update 21 - Info Disclosure
Oracle Java SE <7.7 - Info Disclosure
Java Applet AverageRangeStatisticImpl Remote Code Execution
CVSS 9.8
Oracle JDK and JRE - Remote Code Execution via Reflection and JDBC Driver Manager
Oracle Java SE/Jav for Bus <6-5 - Info Disclosure