Critical Vulnerabilities with Public Exploits
Updated 4h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,105 results
Clear all
CVE-2020-25762
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.18
Seat Reservation System - SQL Injection
An issue was discovered in SourceCodester Seat Reservation System 1.0. The file admin_class.php does not perform input validation on the username and password parameters. An attacker can send malicious input in the post request to /admin/ajax.php?action=login and bypass authentication, extract sensitive information etc.
CWE-89
Sep 30, 2020
CVE-2020-28133
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Simple Grocery Store Sales AND Invent... - SQL Injection
An issue was discovered in SourceCodester Simple Grocery Store Sales And Inventory System 1.0. There was authentication bypass in web login functionality allows an attacker to gain client privileges via SQL injection in sales_inventory/login.php.
CWE-89
Nov 17, 2020
CVE-2020-26527
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Damstra Smart Asset <2020.7 - SSRF
An issue was discovered in API/api/Version in Damstra Smart Asset 2020.7. Cross-origin resource sharing trusts random origins by accepting the arbitrary 'Origin: example.com' header and responding with 200 OK and a wildcard 'Access-Control-Allow-Origin: *' header.
CWE-346
Oct 02, 2020
CVE-2020-26525
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.08
Damstra Smart Asset <2020.7 - SQL Injection
Damstra Smart Asset 2020.7 has SQL injection via the API/api/Asset originator parameter. This allows forcing the database and server to initiate remote connections to third party DNS servers.
CWE-89
Oct 02, 2020
CVE-2020-36885
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Sony IPELA Network Camera 1.82.01 - RCE
Sony IPELA Network Camera 1.82.01 contains a stack buffer overflow vulnerability in the ftpclient.cgi endpoint that allows remote attackers to execute arbitrary code. Attackers can exploit the vulnerability by sending a crafted POST request with oversized data to the FTP client functionality, potentially causing remote code execution or denial of service.
CWE-787
Dec 10, 2025
CVE-2020-25990
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Websitebaker - SQL Injection
WebsiteBaker 2.12.2 allows SQL Injection via parameter 'display_name' in /websitebaker/admin/preferences/save.php. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
CWE-89
Oct 01, 2020
CVE-2020-15492
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.38
Inneo Startup Tools < 13.0.70.3804 - Path Traversal
An issue was discovered in INNEO Startup TOOLS 2017 M021 12.0.66.3784 through 2018 M040 13.0.70.3804. The sut_srv.exe web application (served on TCP port 85) includes user input into a filesystem access without any further validation. This might allow an unauthenticated attacker to read files on the server via Directory Traversal, or possibly have unspecified other impact.
CWE-22
Jul 23, 2020
CVE-2020-37010
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
BearShare Lite 5.2.5 - Buffer Overflow
BearShare Lite 5.2.5 contains a buffer overflow vulnerability in the Advanced Search keywords input that allows attackers to execute arbitrary code. Attackers can craft a specially designed payload to overwrite the EIP register and execute shellcode by pasting malicious content into the search keywords field.
CWE-120
Jan 29, 2026
CVE-2020-15922
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.59
Midasolutions Eframework < 2.9.0 - OS Command Injection
There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) privileges. Authentication is required.
CWE-78
Jul 24, 2020
CVE-2020-25273
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Online Bus Booking System - SQL Injection
In SourceCodester Online Bus Booking System 1.0, there is Authentication bypass on the Admin Login screen in admin.php via username or password SQL injection.
CWE-89
Oct 08, 2020
CVE-2020-15921
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.18
Midasolutions Eframework < 2.9.0 - Authentication Bypass
Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restricted functionalities, such as Code Execution.
CWE-287
Jul 24, 2020
CVE-2020-25749
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.04
Rubetek Rv-3406 Firmware - Hard-coded Credentials
The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password. The Telnet service cannot be disabled and this password cannot be changed via standard functionality.
CWE-798
Sep 25, 2020
CVE-2020-25747
9.4
CRITICAL
1 PoC
Analysis
EPSS 0.02
Rubetek Rv-3406 Firmware - Missing Authentication
The Telnet service of Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) can allow a remote attacker to gain access to RTSP and ONFIV services without authentication. Thus, the attacker can watch live streams from the camera, rotate the camera, change some settings (brightness, clarity, time), restart the camera, or reset it to factory settings.
CWE-306
Sep 25, 2020
CVE-2020-37012
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Tea LaTex 1.0 - RCE
Tea LaTex 1.0 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary shell commands through the /api.php endpoint. Attackers can craft a malicious LaTeX payload with shell commands that are executed when processed by the application's tex2png API action.
CWE-78
Jan 29, 2026
CVE-2020-29282
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
BloodX 1.0 - SQL Injection
SQL injection vulnerability in BloodX 1.0 allows attackers to bypass authentication.
CWE-89
Dec 02, 2020
CVE-2020-24193
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.02
Sourcecodetester Daily Tracker System 1.0 - SQL Injection
A SQL injection vulnerability in login in Sourcecodetester Daily Tracker System 1.0 allows unauthenticated user to execute authentication bypass with SQL injection via the email parameter.
CWE-89
Sep 03, 2020
CVE-2020-24791
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.04
Thedaylightstudio Fuel Cms - SQL Injection
FUEL CMS 1.4.8 allows SQL injection via the 'fuel_replace_id' parameter in pages/replace/1. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
CWE-89
Mar 10, 2021
CVE-2020-36892
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Eibiz i-Media Server Digital Signage 3.8.0 - Privilege Escalation
Eibiz i-Media Server Digital Signage 3.8.0 contains an unauthenticated privilege escalation vulnerability in the updateUser object that allows attackers to modify user roles. Attackers can exploit the /messagebroker/amf endpoint to elevate privileges and take over user accounts by manipulating role settings without authentication.
CWE-306
Dec 10, 2025
CVE-2020-24932
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Sourcecodester Complaint Management System - SQL Injection
An SQL Injection vulnerability exists in Sourcecodester Complaint Management System 1.0 via the cid parameter in complaint-details.php.
CWE-89
Oct 27, 2021
CVE-2020-24841
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
SDG Pnpscada - SQL Injection
PNPSCADA 2.200816204020 allows SQL injection via parameter 'interf' in /browse.jsp. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
CWE-89
Feb 16, 2021