Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.270exploits catalogados
37.818CVEs con explotación pública
24.695probados en laboratorio
81.270 exploits
Exploit-DB✓ VexDay Proof
Linux Kernel 3.3.5 - 'b43' Wireless Driver Privilege Escalation
CVE-2013-2852—locallinux07 jun 2013
Format string vulnerability in the b43_request_firmware function in drivers/net/wireless/b43/main.c in the Broadcom B43
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Quick TFTP Server Pro 2.2 - Denial of Service
CVE-2008-1610—doswindows07 jun 2013
Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service o
50RIESGO
abrir ↗
Metasploit600
ZPanel 10.0.0.2 htpasswd Module Username Command Execution
CVE-2013-10053HIGH07 jun 2013
ZPanel <= 10.0.0.2 htpasswd Module Username Command Execution
36RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Novell ZENworks Mobile Device Managment 2.6.1/2.7.0 - Local File Inclusion (Metasploit)
CVE-2013-1081—webappswindows07 jun 2013
Directory traversal vulnerability in MDM.php in Novell ZENworks Mobile Management (ZMM) 2.6.1 and 2.7.0 allows remote at
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - textNode Use-After-Free (MS13-037) (Metasploit)
CVE-2013-1311—remotewindows07 jun 2013
Use-after-free vulnerability in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via a cr
28RIESGO
abrir ↗
Metasploit600
ZPanel zsudo Local Privilege Escalation Exploit
CVE-2013-10052HIGH07 jun 2013
ZPanel zsudo Local Privilege Escalation
36RIESGO
abrir ↗
Exploit-DB
Asus RT56U 3.0.0.4.360 - Remote Command Injection
CVE-2013-5948—webappshardware07 jun 2013
The Network Analysis tab (Main_Analysis_Content.asp) in the ASUS RT-AC68U and other RT series routers with firmware befo
23RIESGO
abrir ↗
Metasploit600
Foreman (Red Hat OpenStack/Satellite) bookmarks/create Code Injection
CVE-2013-2121—06 jun 2013
Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote
43RIESGO
abrir ↗
Metasploit300
Foreman (Red Hat OpenStack/Satellite) users/create Mass Assignment
CVE-2013-2113—06 jun 2013
The create method in app/controllers/users_controller.rb in Foreman before 1.2.0-RC2 allows remote authenticated users w
43RIESGO
abrir ↗
Exploit-DB
Imperva SecureSphere Operations Manager 9.0.0.5 - Multiple Vulnerabilities
CVE-2013-4092—webappsjsp05 jun 2013
The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows context-dependent att
23RIESGO
abrir ↗
Exploit-DB
Imperva SecureSphere Operations Manager 9.0.0.5 - Multiple Vulnerabilities
CVE-2013-4091—webappsjsp05 jun 2013
The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 does not have an off autocom
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Struts - includeParams Remote Code Execution (Metasploit)
CVE-2013-1966—remotemultiple05 jun 2013
Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not
60RIESGO
abrir ↗
Exploit-DB
Imperva SecureSphere Operations Manager 9.0.0.5 - Multiple Vulnerabilities
CVE-2013-4095—webappsjsp05 jun 2013
plain/actionsets.html in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 all
23RIESGO
abrir ↗
Exploit-DB
DS3 Authentication Server - Multiple Vulnerabilities
CVE-2013-4098—webappshardware05 jun 2013
ServerAdmin/ErrorViewer.jsp in DS3 Authentication Server allow remote attackers to inject arbitrary error-page text via
23RIESGO
abrir ↗
Exploit-DB
DS3 Authentication Server - Multiple Vulnerabilities
CVE-2013-4096—webappshardware05 jun 2013
ServerAdmin/TestTelnetConnection.jsp in DS3 Authentication Server allows remote authenticated users to execute arbitrary
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNAP VioStor NVR / QNAP NAS - Remote Code Execution
CVE-2013-0143—webappscgi05 jun 2013
cgi-bin/pingping.cgi on QNAP VioStor NVR devices with firmware 4.0.3, and in the Surveillance Station Pro component in Q
23RIESGO
abrir ↗
Exploit-DB
DS3 Authentication Server - Multiple Vulnerabilities
CVE-2013-4097—webappshardware05 jun 2013
ServerAdmin/TestDRConnection.jsp in DS3 Authentication Server allows remote attackers to obtain sensitive information vi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Plesk < 9.5.4 - Remote Command Execution
CVE-2013-4878—remotephp05 jun 2013
The default configuration of Parallels Plesk Panel 9.0.x and 9.2.x on UNIX, and Small Business Panel 10.x on UNIX, has a
35RIESGO
abrir ↗
Exploit-DB
Imperva SecureSphere Operations Manager 9.0.0.5 - Multiple Vulnerabilities
CVE-2013-4093—webappsjsp05 jun 2013
The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote attackers to o
23RIESGO
abrir ↗
Exploit-DB
Imperva SecureSphere Operations Manager 9.0.0.5 - Multiple Vulnerabilities
CVE-2013-4094—webappsjsp05 jun 2013
The Key Management feature in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Xpient - Cash Drawer Operation
CVE-2013-2571—remotehardware05 jun 2013
Iris 3.8 before build 1548, as used in Xpient point of sale (POS) systems, allows remote attackers to execute arbitrary
28RIESGO
abrir ↗
GitHub PoC★ 17
CVE-2013-2094 exploit for android
CVE-2013-2094HIGHbajo ataque05 jun 2013
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data t
83RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MiniUPnPd 1.0 - Remote Stack Buffer Overflow Remote Code Execution (Metasploit)
CVE-2013-0230—remotelinux05 jun 2013
Stack-based buffer overflow in the ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Oracle WebCenter Content - 'CheckOutAndOpen.dll' ActiveX Remote Code Execution (Metasploit)
CVE-2013-1559—remotewindows05 jun 2013
Unspecified vulnerability in the Oracle WebCenter Content component in Oracle Fusion Middleware 10.1.3.5.1 and 11.1.1.6.
50RIESGO
abrir ↗
VulnCheck XDB
local
CVE-2013-2094HIGHbajo ataque05 jun 2013
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data t
83RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apple Mac OSX Server - DirectoryService Buffer Overflow
CVE-2013-0984—dososx05 jun 2013
Directory Service in Apple Mac OS X through 10.6.8 allows remote attackers to execute arbitrary code or cause a denial o
28RIESGO
abrir ↗
Metasploit600
Netgear DGN1000 Setup.cgi Unauthenticated RCE
CVE-2024-12847CRITICAL05 jun 2013
NETGEAR DGN setup.cgi OS Command Injection
68RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Struts - OGNL Expression Injection
CVE-2013-2134—remotemultiple05 jun 2013
Apache Struts 2 before 2.3.14.3 allows remote attackers to execute arbitrary OGNL code via a request with a crafted acti
45RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Struts - includeParams Remote Code Execution (Metasploit)
CVE-2013-2115—remotemultiple05 jun 2013
Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MongoDB - 'conn' Mongo Object Remote Code Execution
CVE-2013-3969—remotemultiple04 jun 2013
The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a
28RIESGO
abrir ↗
← anteriorpágina 1143 / 2709siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.