Critical Vulnerabilities with Public Exploits
Updated 4h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,118 results
Clear all
CVE-2021-47796
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Denver SHC-150 Smart Wifi Camera - RCE
Denver SHC-150 Smart Wifi Camera contains a hardcoded telnet credential vulnerability that allows unauthenticated attackers to access a Linux shell. Attackers can connect to port 23 using the default credential to execute arbitrary commands on the camera's operating system.
CWE-798
Jan 16, 2026
CVE-2021-43130
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Sourcecodester CRM 1.0 - SQL Injection
An SQL Injection vulnerability exists in Sourcecodester Customer Relationship Management System (CRM) 1.0 via the username parameter in customer/login.php.
CWE-89
Nov 03, 2021
CVE-2021-47798
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
NoteBurner 2.35 - Buffer Overflow
NoteBurner 2.35 contains a buffer overflow vulnerability in the license code input field that allows attackers to crash the application. Attackers can generate a 6000-byte payload and paste it into the 'Name' and 'Code' fields to trigger an application crash.
CWE-120
Jan 16, 2026
CVE-2021-31761
9.6
CRITICAL
3 PoCs
Analysis
EPSS 0.82
Webmin - XSS
Webmin 1.973 is affected by reflected Cross Site Scripting (XSS) to achieve Remote Command Execution through Webmin's running process feature.
CWE-79
Apr 25, 2021
CVE-2021-37593
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.01
Peel Shopping - SQL Injection
PEEL Shopping version 9.4.0 allows remote SQL injection. A public user/guest (unauthenticated) can inject a malicious SQL query in order to affect the execution of predefined SQL commands. Upon a successful SQL injection attack, an attacker can read sensitive data from the database and possibly modify database data.
CWE-89
Jul 30, 2021
CVE-2021-26691
9.8
CRITICAL
1 PoC
EPSS 0.40
Apache HTTP Server < 2.4.46 - Out-of-Bounds Write
In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow
CWE-122
Jun 10, 2021
CVE-2021-33353
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.02
Wyomind Help Desk Magento 2 <1.3.7 - Path Traversal
Directory Traversal vulnerability in Wyomind Help Desk Magento 2 extension v.1.3.6 and before fixed in v.1.3.7 allows attacker to execute arbitrary code via the file attachment directory setting.
CWE-22
Mar 08, 2023
CVE-2021-33352
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.01
Wyomind Help Desk Magento 2 <1.3.7 - RCE
An issue in Wyomind Help Desk Magento 2 extension v.1.3.6 and before fixed in v.1.3.7 allows attacker to execute arbitrary code via a phar file upload in the ticket message field.
CWE-434
Mar 08, 2023
CVE-2021-33351
9.0
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Wyomind Help Desk Magento 2 <1.3.7 - XSS
Cross Site Scripting Vulnerability in Wyomind Help Desk Magento 2 extension v.1.3.6 and before and fixed in v.1.3.7 allows attackers to escalte privileges via a crafted payload in the ticket message field.
CWE-79
Mar 08, 2023
CVE-2021-36622
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Online Covid Vaccination Scheduler System - Unrestricted File Upload
Sourcecodester Online Covid Vaccination Scheduler System 1.0 is affected vulnerable to Arbitrary File Upload. The admin panel has an upload function of profile photo accessible at http://localhost/scheduler/admin/?page=user. An attacker could upload a malicious file such as shell.php with the Content-Type: image/png. Then, the attacker have to visit the uploaded profile photo to access the shell.
CWE-434
Aug 03, 2021
CVE-2021-36623
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Sourcecodester Phone Shop Sales Management System 1.0 - RCE
Arbitrary File Upload in Sourcecodester Phone Shop Sales Management System 1.0 enables RCE.
CWE-434
Aug 03, 2021
CVE-2021-36624
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Phone Shop Sales Management System - SQL Injection
Sourcecodester Phone Shop Sales Managements System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
CWE-89
Jul 30, 2021
CVE-2021-43484
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.13
Simple Client Management System 1.0 - RCE
A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.
CWE-89
Mar 31, 2022
CVE-2021-47811
9.1
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Grocerycrud Grocery Crud < 2.0.1 - SQL Injection
Grocery Crud 1.6.4 contains a SQL injection vulnerability in the order_by parameter that allows remote attackers to manipulate database queries. Attackers can inject malicious SQL code through the order_by[] parameter in POST requests to the ajax_list endpoint to potentially extract or modify database information.
CWE-89
Jan 16, 2026
CVE-2021-27200
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.03
WoWonder 3.0.4 - Code Injection
In WoWonder 3.0.4, remote attackers can take over any account due to the weak cryptographic algorithm in recover.php. The code parameter is easily predicted from the time of day.
CWE-330
Jun 11, 2021
CVE-2021-47812
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Grav - Missing Authorization
GravCMS 1.10.7 contains an unauthenticated vulnerability that allows remote attackers to write arbitrary YAML configuration and execute PHP code through the scheduler endpoint. Attackers can exploit the admin-nonce parameter to inject base64-encoded payloads and create malicious custom jobs with system command execution.
CWE-862
Jan 16, 2026
CVE-2021-26714
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.02
Mitel Micontact Center Enterprise < 9.4 - Path Traversal
The Enterprise License Manager portal in Mitel MiContact Center Enterprise before 9.4 could allow a user to access restricted files and folders due to insufficient access control. A successful exploit could allow an attacker to view and modify application data via Directory Traversal.
Mar 29, 2021
CVE-2021-31251
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.11
Chiyu-tech Bf-430 Firmware - Authentication Bypass
An authentication bypass in telnet server in BF-430 and BF431 232/422 TCP/IP Converter, BF-450M and SEMAC from CHIYU Technology Inc allows obtaining a privileged connection with the target device by supplying a specially malformed request and an attacker may force the remote telnet server to believe that the user has already authenticated.
CWE-287
Jun 04, 2021
CVE-2021-47819
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
ProjeQtOr Project Management 9.1.4 - RCE
ProjeQtOr Project Management 9.1.4 contains a file upload vulnerability that allows guest users to upload malicious PHP files with arbitrary code execution capabilities. Attackers can upload a PHP script through the profile attachment section and execute system commands by accessing the uploaded file with a specially crafted request parameter.
CWE-434
Jan 15, 2026
CVE-2021-33564
9.8
CRITICAL
EXPLOITED
2 PoCs
Analysis
NUCLEI
EPSS 0.93
Dragonfly <1.4.0 - Command Injection
An argument injection vulnerability in the Dragonfly gem before 1.4.0 for Ruby allows remote attackers to read and write to arbitrary files via a crafted URL when the verify_url option is disabled. This may lead to code execution. The problem occurs because the generate and process features mishandle use of the ImageMagick convert utility.
CWE-88
May 29, 2021