Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.453exploits catalogados
37.908CVEs con explotación pública
24.695probados en laboratorio
81.453 exploits
Exploit-DB✓ VexDay Proof
Apple iOS Mobile Mail - LibTIFF Buffer Overflow (Metasploit)
CVE-2010-0188HIGHbajo ataqueransomwareremoteios09 oct 2012
Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a
100RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apple iOS Mobile Mail - LibTIFF Buffer Overflow (Metasploit)
CVE-2006-3459—remoteios09 oct 2012
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apple iOS Mobile Safari - LibTIFF Buffer Overflow (Metasploit)
CVE-2010-0188HIGHbajo ataqueransomwareremoteios09 oct 2012
Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a
100RIESGO
abrir ↗
Exploit-DB
PLIB 1.8.5 - 'ssg/ssgParser.cxx' Local Buffer Overflow
CVE-2012-4552—localwindows09 oct 2012
Stack-based buffer overflow in the error function in ssg/ssgParser.cxx in PLIB 1.8.5 allows remote attackers to execute
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 3.2.x - 'uname()' System Call Local Information Disclosure
CVE-2012-0957—locallinux09 oct 2012
The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive i
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apple iOS Mobile Safari - LibTIFF Buffer Overflow (Metasploit)
CVE-2006-3459—remoteios09 oct 2012
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RIESGO
abrir ↗
Metasploit600
Project Pier Arbitrary File Upload Vulnerability
CVE-2012-10036CRITICAL08 oct 2012
Project Pier <= 0.8.8 Arbitrary File Upload RCE
63RIESGO
abrir ↗
Metasploit0
D-Link DIR-605L Captcha Handling Buffer Overflow
CVE-2012-10021CRITICAL08 oct 2012
D-Link DIR-605L Captcha Handling Buffer Overflow
63RIESGO
abrir ↗
Metasploit600
PhpTax pfilez Parameter Exec Remote Code Injection
CVE-2012-10037CRITICAL08 oct 2012
PhpTax pfilez Parameter Exec Remote Code Injection
63RIESGO
abrir ↗
Exploit-DB
Template CMS 2.1.1 - Multiple Vulnerabilities
CVE-2012-4902—webappsphp04 oct 2012
Multiple cross-site request forgery (CSRF) vulnerabilities in Template CMS 2.1.1 and earlier allow remote attackers to h
23RIESGO
abrir ↗
Exploit-DB
Template CMS 2.1.1 - Multiple Vulnerabilities
CVE-2012-4901—webappsphp04 oct 2012
Cross-site scripting (XSS) vulnerability in Template CMS 2.1.1 and earlier allows remote attackers to inject arbitrary w
23RIESGO
abrir ↗
Exploit-DB
XnView 1.99.1 - '.JLS' File Decompression Heap Overflow
CVE-2012-4988—doswindows04 oct 2012
Heap-based buffer overflow in the xjpegls.dll (aka JLS, JPEG-LS, or JPEG lossless) format plugin in XnView 1.99 and 1.99
23RIESGO
abrir ↗
Exploit-DB
Novell Sentinel Log Manager 1.2.0.2 - Retention Policy
CVE-2012-6534—webappswindows04 oct 2012
Novell Sentinel Log Manager before 1.2.0.3 allows remote attackers to create data retention policies via a crafted text/
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
JPEGsnoop 1.5.2 - WriteAV Crash (PoC)
CVE-2012-6307—doswindows04 oct 2012
A vulnerability exists in JPEGsnoop 1.5.2 due to an unspecified issue in JPEG file handling, which could let a malicious
23RIESGO
abrir ↗
Metasploit500
Turbo FTP Server 1.30.823 PORT Overflow
CVE-2012-10035CRITICAL03 oct 2012
Turbo FTP Server 1.30.823/826 PORT Command Buffer Overflow
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PowerTCP WebServer for - ActiveX Denial of Service
CVE-2012-3819—doswindows28 sep 2012
Stack consumption vulnerability in dartwebserver.dll 1.9 and earlier, as used in Dart PowerTCP WebServer for ActiveX and
23RIESGO
abrir ↗
Exploit-DB
JAMF Casper Suite MDM - Cross-Site Request Forgery
CVE-2012-4051—webappsjsp27 sep 2012
Multiple cross-site request forgery (CSRF) vulnerabilities in editAccount.html in the JAMF Software Server (JSS) interfa
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Trend Micro Control Manager 5.5/6.0 AdHocQuery - (Authenticated) Blind SQL Injection
CVE-2012-2998—webappswindows27 sep 2012
SQL injection vulnerability in the ad hoc query module in Trend Micro Control Manager (TMCM) before 5.5.0.1823 and 6.0 b
23RIESGO
abrir ↗
Exploit-DB
Cisco DPC2100 - Denial of Service
CVE-2011-1613—doshardware26 sep 2012
Unspecified vulnerability in Cisco Wireless LAN Controller (WLC) software 6.0 before 6.0.200.0, 7.0 before 7.0.98.216, a
28RIESGO
abrir ↗
Metasploit300
phpMyAdmin 3.5.2.2 server_sync.php Backdoor
CVE-2012-5159—25 sep 2012
phpMyAdmin 3.5.2.2, as distributed by the cdnetworks-kr-1 mirror during an unspecified time frame in 2012, contains an e
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WordPress Plugin MF Gig Calendar - Cross-Site Scripting
CVE-2012-4242—webappsphp20 sep 2012
Cross-site scripting (XSS) vulnerability in the MF Gig Calendar plugin 0.9.2 for WordPress allows remote attackers to in
38RIESGO
abrir ↗
Metasploit600
Kloxo Local Privilege Escalation
CVE-2012-10022HIGH18 sep 2012
Kloxo <= 6.1.12 Local Privilege Escalation
36RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Novell Groupwise 8.0.2 HP3 and 2012 - Integer Overflow
CVE-2012-0271—doswindows17 sep 2012
Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 befo
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CoSoSys Endpoint Protector - Predictable Password Generation
CVE-2012-2994—remotehardware17 sep 2012
The CoSoSys Endpoint Protector 4 appliance establishes an EPProot password based entirely on the appliance serial number
23RIESGO
abrir ↗
Exploit-DB
Netsweeper WebAdmin Portal - Multiple Vulnerabilities
CVE-2012-3859—webappsphp17 sep 2012
Unspecified vulnerability in the WebAdmin Portal in Netsweeper has unknown impact and attack vectors, a different vulner
23RIESGO
abrir ↗
Exploit-DB
Trend Micro Interscan Messaging Security Suite - Persistent Cross-Site Scripting / Cross-Site Request Forgery
CVE-2012-2995—webappsaix14 sep 2012
Multiple cross-site scripting (XSS) vulnerabilities in Trend Micro InterScan Messaging Security Suite 7.1-Build_Win32_13
23RIESGO
abrir ↗
Exploit-DB
Trend Micro Interscan Messaging Security Suite - Persistent Cross-Site Scripting / Cross-Site Request Forgery
CVE-2012-2996—webappsaix14 sep 2012
Cross-site request forgery (CSRF) vulnerability in saveAccountSubTab.imss in Trend Micro InterScan Messaging Security Su
23RIESGO
abrir ↗
Metasploit400
MS12-063 Microsoft Internet Explorer execCommand Use-After-Free Vulnerability
CVE-2012-4969HIGHbajo ataque14 sep 2012
Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 al
100RIESGO
abrir ↗
Metasploit600
Auxilium RateMyPet Arbitrary File Upload Vulnerability
CVE-2012-10038CRITICAL14 sep 2012
Auxilium RateMyPet Arbitrary File Upload RCE
63RIESGO
abrir ↗
Metasploit600
ZEN Load Balancer Filelog Command Execution
CVE-2012-10039CRITICAL14 sep 2012
ZEN Load Balancer Filelog Command Execution
63RIESGO
abrir ↗
← anteriorpágina 1170 / 2716siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.