Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

80.409exploits catalogados
37.196CVEs con explotación pública
24.695probados en laboratorio
80.409 exploits
Exploit-DB
Symphony CMS 2.6.7 - Session Fixation
CVE-2016-4309webappsphp20 jun 2016
Session fixation vulnerability in Symphony CMS 2.6.7, when session.use_only_cookies is disabled, allows remote attackers
23RIESGO
abrir
Exploit-DB
SolarWinds Virtualization Manager - Local Privilege Escalation
CVE-2016-3643HIGHbajo ataquelocallinux16 jun 2016
SolarWinds Virtualization Manager 6.3.1 and earlier allow local users to gain privileges by leveraging a misconfiguratio
71RIESGO
abrir
GitHub PoC
CVE-2016-0051 样本库
CVE-2016-005116 jun 2016
The WebDAV client in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Window
43RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 7 - win32k Bitmap Use-After-Free (MS16-062) (2)
CVE-2016-0173doswindows15 jun 2016
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
23RIESGO
abrir
Exploit-DB
Bomgar Remote Support - Code Execution (Metasploit)
CVE-2015-0935remotelinux15 jun 2016
Bomgar Remote Support before 15.1.1 allows remote attackers to execute arbitrary PHP code via crafted serialized data to
28RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 7 - win32k Bitmap Use-After-Free (MS16-062) (1)
CVE-2016-0171doswindows15 jun 2016
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
23RIESGO
abrir
Metasploit300
NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
CVE-2016-323614 jun 2016
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and
40RIESGO
abrir
Metasploit300
NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
CVE-2016-321314 jun 2016
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and
30RIESGO
abrir
Exploit-DBVexDay Proof
Easy RM to MP3 Converter 2.7.3.700 - '.m3u' File (Universal ASLR + DEP Bypass)
CVE-2009-1330localwindows13 jun 2016
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX / iOS Kernel - UAF Racing getProperty on IOHDIXController and testNetBootMethod on IOHDIXControllerUserClient
CVE-2016-1807dosmultiple10 jun 2016
Race condition in the Disk Images subsystem in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watch
23RIESGO
abrir
Exploit-DBVexDay Proof
IPFire - 'Shellshock' Bash Environment Variable Command Injection (Metasploit)
CVE-2014-6271CRITICALbajo ataqueremotecgi10 jun 2016
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - GeForce GPU Driver Stack Buffer Overflow
CVE-2016-1861dososx10 jun 2016
The NVIDIA Graphics Drivers subsystem in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privi
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - NULL Dereference in CoreCaptureResponder Due to Unchecked Return Value
CVE-2016-1803dososx10 jun 2016
CoreCapture in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in AppleMuxControl.kext
CVE-2016-1794dososx10 jun 2016
The AppleGraphicsControlClient::checkArguments method in AppleGraphicsControl in Apple OS X before 10.11.5 allows attack
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - Out-of-Bounds Read of Object Pointer Due to Insufficient Checks in Raw Cast to enum Type
CVE-2016-1823dososx10 jun 2016
The IOHIDDevice::handleReportWithTime function in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and wa
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in nvCommandQueue::GetHandleIndex in GeForce.kext
CVE-2016-1846dososx10 jun 2016
The nvCommandQueue::GetHandleIndex method in the NVIDIA Graphics Drivers subsystem in Apple OS X before 10.11.5 allows a
23RIESGO
abrir
Exploit-DBVexDay Proof
Apache Struts - REST Plugin With Dynamic Method Invocation Remote Code Execution (Metasploit)
CVE-2016-3087remotemultiple10 jun 2016
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, a
60RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in AppleGraphicsDeviceControl
CVE-2016-1793dososx10 jun 2016
AppleGraphicsDeviceControlClient in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - Use-After-Free Due to Bad Locking in IOAcceleratorFamily2
CVE-2016-1819dososx10 jun 2016
Use-after-free vulnerability in the IOAccelContext2::clientMemoryForType method in Apple iOS before 9.3.2, OS X before 1
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - Null Pointer Dereference in IOAudioEngine
CVE-2016-1821dososx10 jun 2016
IOAudioFamily in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a
23RIESGO
abrir
Exploit-DBVexDay Proof
Google Android - '/system/bin/sdcard' Stack Buffer Overflow (PoC)
CVE-2016-2494dosandroid10 jun 2016
Off-by-one error in sdcard/sdcard.c in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Kernel - NULL Dereference in IOAccelSharedUserClient2::page_off_resource
CVE-2016-1813dososx10 jun 2016
The IOAccelSharedUserClient2::page_off_resource method in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1
23RIESGO
abrir
GitHub PoC2
Docker container implementing tests for CVE-2016-2107 - LuckyNegative20
CVE-2016-210709 jun 2016
The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a
45RIESGO
abrir
GitHub PoC1
A PoC of CVE-2016-2098 (rails4.2.5.1 / view render)
CVE-2016-209807 jun 2016
Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to e
60RIESGO
abrir
Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
CVE-2016-1336webappsasp07 jun 2016
goform/Docsis_system on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a
23RIESGO
abrir
GitHub PoC
thejackerz/scanner-exploit-joomla-CVE-2015-8562
CVE-2015-856207 jun 2016
Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbi
60RIESGO
abrir
Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
CVE-2016-1328webappsasp07 jun 2016
goform/WClientMACList on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a
23RIESGO
abrir
Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
CVE-2016-1337webappsasp07 jun 2016
Cisco EPC3928 devices allow remote attackers to obtain sensitive configuration and credential information by making requ
23RIESGO
abrir
Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
CVE-2015-6401webappsasp07 jun 2016
Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication re
23RIESGO
abrir
Exploit-DB
Cisco EPC 3928 - Multiple Vulnerabilities
CVE-2015-6402webappsasp07 jun 2016
Cross-site scripting (XSS) vulnerability in the management interface on Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11,
23RIESGO
abrir
anteriorpágina 1012 / 2681siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.