Critical Vulnerabilities with Public Exploits
Updated 2h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,118 results
Clear all
CVE-2021-26822
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.10
Phpgurukul Teachers Record Management System - SQL Injection
Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in search-teacher.php. This vulnerability can be exploited by a remote unauthenticated attacker to leak sensitive information and perform code execution attacks.
CWE-89
Feb 15, 2021
CVE-2021-21014
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.01
Magento <2.4.1-2.3.6 - Authenticated RCE
Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are vulnerable to a file upload restriction bypass. Successful exploitation could lead to arbitrary code execution by an authenticated attacker. Access to the admin console is required for successful exploitation.
CWE-434
Feb 11, 2021
CVE-2021-26809
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Phpgurukul Car Rental Portal - Unrestricted File Upload
PHPGurukul Car Rental Project version 2.0 suffers from a remote shell upload vulnerability in changeimage1.php.
CWE-434
Feb 17, 2021
CVE-2021-31650
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Online Grading System - SQL Injection
A SQL injection vulnerability in Sourcecodester Online Grading System 1.0 allows remote attackers to execute arbitrary SQL commands via the uname parameter.
CWE-89
Dec 16, 2022
CVE-2021-47731
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Selea Targa IP OCR-ANPR Camera - Info Disclosure
Selea Targa IP OCR-ANPR Camera contains a hard-coded developer password vulnerability that allows unauthorized configuration access through an undocumented page. Attackers can exploit the hidden endpoint by using the hard-coded password 'Selea781830' to enable configuration upload and overwrite device settings.
CWE-306
Dec 09, 2025
CVE-2021-47728
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.02
Selea Targa IP OCR-ANPR Camera - Command Injection
Selea Targa IP OCR-ANPR Camera contains an unauthenticated command injection vulnerability in utils.php that allows remote attackers to execute arbitrary shell commands. Attackers can exploit the 'addr' and 'port' parameters to inject commands and gain www-data user access through chained local file inclusion techniques.
CWE-78
Dec 09, 2025
CVE-2021-26201
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Casap Automated Enrollment System - SQL Injection
The Login Panel of CASAP Automated Enrollment System 1.0 is vulnerable to SQL injection authentication bypass. An attacker can obtain access to the admin panel by injecting a SQL query in the username field of the login page.
CWE-89
Feb 15, 2021
CVE-2021-26200
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Library System - SQL Injection
The user area for Library System 1.0 is vulnerable to SQL injection where a user can bypass the authentication and login as the admin user.
CWE-89
Feb 15, 2021
CVE-2021-3239
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.38
E-Learning System 1.0 - SQL Injection
E-Learning System 1.0 suffers from an unauthenticated SQL injection vulnerability, which allows remote attackers to execute arbitrary code on the hosting web server and gain a reverse shell.
CWE-89
Feb 15, 2021
CVE-2021-47900
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Gila CMS <2.0.0 - RCE
Gila CMS versions prior to 2.0.0 contain a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary system commands through manipulated HTTP headers. Attackers can inject PHP code in the User-Agent header with shell_exec() to run system commands by sending crafted requests to the admin endpoint.
CWE-98
Jan 27, 2026
CVE-2021-3110
9.8
CRITICAL
1 PoC
Analysis
NUCLEI
EPSS 0.72
Prestashop - SQL Injection
The store system in PrestaShop 1.7.7.0 allows time-based boolean SQL injection via the module=productcomments controller=CommentGrade id_products[] parameter.
CWE-89
Jan 20, 2021
CVE-2021-3118
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Medicalexpo Ecs Imaging < 6.21.5 - SQL Injection
EVOLUCARE ECSIMAGING (aka ECS Imaging) through 6.21.5 has multiple SQL Injection issues in the login form and the password-forgotten form (such as /req_password_user.php?email=). This allows an attacker to steal data in the database and obtain access to the application. (The database component runs as root.) NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CWE-89
Jan 11, 2021
CVE-2021-47901
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Dirsearch 0.4.1 - Code Injection
Dirsearch 0.4.1 contains a CSV injection vulnerability when using the --csv-report flag that allows attackers to inject formulas through redirected endpoints. Attackers can craft malicious server redirects with comma-separated paths containing Excel formulas to manipulate the generated CSV report.
CWE-1236
Jan 27, 2026
CVE-2021-3018
9.8
CRITICAL
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.79
ipeak Infosystems ibexwebCMS <3.5 - SQL Injection
ipeak Infosystems ibexwebCMS (aka IPeakCMS) 3.5 is vulnerable to an unauthenticated Boolean-based SQL injection via the id parameter on the /cms/print.php page.
CWE-89
Jan 05, 2021
CVE-2021-3278
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.02
Local Service Search Engine Management System 1.0 - Auth Bypass
Local Service Search Engine Management System 1.0 has a vulnerability through authentication bypass using SQL injection . Using this vulnerability, an attacker can bypass the login page.
CWE-89
Jan 26, 2021
CVE-2021-41487
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Nokia Vitalsuite - SQL Injection
NOKIA VitalSuite SPM 2020 is affected by SQL injection through UserName'.
CWE-89
Jun 16, 2022
CVE-2020-0796
10.0
CRITICAL
KEV
SSVC ACTIVE
RANSOMWARE
134 PoCs
Analysis
NUCLEI
EPSS 0.94
Microsoft Windows 10 1903 - Memory Corruption
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.
CWE-119
Mar 12, 2020
CVE-2020-7388
10.0
CRITICAL
2 PoCs
Analysis
EPSS 0.69
Sage Adxadmin < 93.2.53 - Authentication Bypass by Spoofing
Sage X3 Unauthenticated Remote Command Execution (RCE) as SYSTEM in AdxDSrv.exe component. By editing the client side authentication request, an attacker can bypass credential validation. While exploiting this does require knowledge of the installation path, that information can be learned by exploiting CVE-2020-7387. This issue was fixed in AdxAdmin 93.2.53, which ships with updates for on-premises versions of Sage X3 including Version 9 (components shipped with Syracuse 9.22.7.2 and later), Sage X3 HR & Payroll Version 9 (those components that ship with Syracuse 9.24.1.3), Version 11 (components shipped with Syracuse 11.25.2.6 and later), and Version 12 (components shipped with Syracuse 12.10.2.8 and later) of Sage X3. Other on-premises versions of Sage X3 are unsupported by the vendor.
CWE-290
Jul 22, 2021
CVE-2020-8010
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.81
CA Unified Infrastructure Management Nimsoft 7.80 - Remote Buffer Overflow
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the robot (controller) component. A remote attacker can execute commands, read from, or write to the target system.
Feb 18, 2020
CVE-2020-35665
9.8
CRITICAL
EXPLOITED
3 PoCs
Analysis
EPSS 0.89
Terra-master Terramaster Operating System - OS Command Injection
An unauthenticated command-execution vulnerability exists in TerraMaster TOS through 4.2.06 via shell metacharacters in the Event parameter in include/makecvs.php during CSV creation.
CWE-78
Dec 23, 2020