Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
80.409exploits catalogados
37.196CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.478Referência 23.664GitHub PoC 15.347VulnCheck XDB 9003Nuclei 4415Metasploit 3502✓ solo verificadosrecientespopularesriesgo
80.409 exploits
Exploit-DB
Symphony CMS 2.6.7 - Session Fixation
Session fixation vulnerability in Symphony CMS 2.6.7, when session.use_only_cookies is disabled, allows remote attackers
23RIESGO
abrir ↗Exploit-DB
SolarWinds Virtualization Manager - Local Privilege Escalation
SolarWinds Virtualization Manager 6.3.1 and earlier allow local users to gain privileges by leveraging a misconfiguratio
71RIESGO
abrir ↗GitHub PoC
CVE-2016-0051 样本库
The WebDAV client in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Window
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 7 - win32k Bitmap Use-After-Free (MS16-062) (2)
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
23RIESGO
abrir ↗Exploit-DB
Bomgar Remote Support - Code Execution (Metasploit)
Bomgar Remote Support before 15.1.1 allows remote attackers to execute arbitrary PHP code via crafted serialized data to
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows 7 - win32k Bitmap Use-After-Free (MS16-062) (1)
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
23RIESGO
abrir ↗Metasploit300
NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and
40RIESGO
abrir ↗Metasploit300
NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and
30RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Easy RM to MP3 Converter 2.7.3.700 - '.m3u' File (Universal ASLR + DEP Bypass)
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX / iOS Kernel - UAF Racing getProperty on IOHDIXController and testNetBootMethod on IOHDIXControllerUserClient
Race condition in the Disk Images subsystem in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watch
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IPFire - 'Shellshock' Bash Environment Variable Command Injection (Metasploit)
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - GeForce GPU Driver Stack Buffer Overflow
The NVIDIA Graphics Drivers subsystem in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privi
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - NULL Dereference in CoreCaptureResponder Due to Unchecked Return Value
CoreCapture in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in AppleMuxControl.kext
The AppleGraphicsControlClient::checkArguments method in AppleGraphicsControl in Apple OS X before 10.11.5 allows attack
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - Out-of-Bounds Read of Object Pointer Due to Insufficient Checks in Raw Cast to enum Type
The IOHIDDevice::handleReportWithTime function in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and wa
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in nvCommandQueue::GetHandleIndex in GeForce.kext
The nvCommandQueue::GetHandleIndex method in the NVIDIA Graphics Drivers subsystem in Apple OS X before 10.11.5 allows a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache Struts - REST Plugin With Dynamic Method Invocation Remote Code Execution (Metasploit)
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, a
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in AppleGraphicsDeviceControl
AppleGraphicsDeviceControlClient in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - Use-After-Free Due to Bad Locking in IOAcceleratorFamily2
Use-after-free vulnerability in the IOAccelContext2::clientMemoryForType method in Apple iOS before 9.3.2, OS X before 1
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in IOAudioEngine
IOAudioFamily in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Google Android - '/system/bin/sdcard' Stack Buffer Overflow (PoC)
Off-by-one error in sdcard/sdcard.c in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Kernel - NULL Dereference in IOAccelSharedUserClient2::page_off_resource
The IOAccelSharedUserClient2::page_off_resource method in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1
23RIESGO
abrir ↗GitHub PoC★ 2
Docker container implementing tests for CVE-2016-2107 - LuckyNegative20
The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a
45RIESGO
abrir ↗GitHub PoC★ 1
A PoC of CVE-2016-2098 (rails4.2.5.1 / view render)
Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to e
60RIESGO
abrir ↗Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
goform/Docsis_system on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a
23RIESGO
abrir ↗GitHub PoC
thejackerz/scanner-exploit-joomla-CVE-2015-8562
Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbi
60RIESGO
abrir ↗Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
goform/WClientMACList on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a
23RIESGO
abrir ↗Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
Cisco EPC3928 devices allow remote attackers to obtain sensitive configuration and credential information by making requ
23RIESGO
abrir ↗Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication re
23RIESGO
abrir ↗Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
Cross-site scripting (XSS) vulnerability in the management interface on Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11,
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.