Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.689exploits catalogados
38.075CVEs con explotación pública
24.695probados en laboratorio
81.689 exploits
Metasploit400
ScadaTEC ScadaPhone Stack Buffer Overflow
CVE-2011-4535—12 sep 2011
Buffer overflow in TurboPower Abbrevia before 4.0, as used in ScadaTEC ScadaPhone 5.3.11.1230 and earlier, ScadaTEC Modb
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ScadaTEC ModbusTagServer & ScadaPhone - '.zip' Local Buffer Overflow
CVE-2011-4535—localwindows12 sep 2011
Buffer overflow in TurboPower Abbrevia before 4.0, as used in ScadaTEC ScadaPhone 5.3.11.1230 and earlier, ScadaTEC Modb
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
KnFTP Server - Remote Buffer Overflow
CVE-2011-5166—remotewindows12 sep 2011
Multiple stack-based buffer overflows in KnFTP 1.0.0 allow remote attackers to execute arbitrary code via a long string
23RIESGO
abrir ↗
Metasploit500
CyberLink Power2Go name Attribute (p2g) Stack Buffer Overflow Exploit
CVE-2011-5171—12 sep 2011
Multiple stack-based buffer overflows in CyberLink Power2Go 7 (build 196) and 8 (build 1031) allow remote attackers to e
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MYRE Real Estate Software - Multiple Vulnerabilities
CVE-2011-3393—webappsphp09 sep 2011
Multiple cross-site scripting (XSS) vulnerabilities in findagent.php in MYRE Real Estate Software allow remote attackers
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BisonWare BisonFTP Server 3.5 - Remote Buffer Overflow (Metasploit)
CVE-1999-1510—remotewindows09 sep 2011
Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MYRE Real Estate Software - Multiple Vulnerabilities
CVE-2011-3394—webappsphp09 sep 2011
SQL injection vulnerability in findagent.php in MYRE Real Estate Software allows remote attackers to execute arbitrary S
23RIESGO
abrir ↗
Exploit-DB
WordPress Plugin Event Registration 5.44 - SQL Injection
CVE-2010-4839—webappsphp09 sep 2011
SQL injection vulnerability in the Event Registration plugin 5.32 and earlier for WordPress allows remote attackers to e
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Spring Security - HTTP Header Injection
CVE-2011-2732—remotemultiple09 sep 2011
CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x b
23RIESGO
abrir ↗
Exploit-DB
DVD X Player 5.5 Pro - Local Overflow (SEH + ASLR + DEP Bypass)
CVE-2007-3068—localwindows08 sep 2011
Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Wireshark 1.6.1 - Malformed Packet Trace File Remote Denial of Service
CVE-2011-3483—doswindows08 sep 2011
Wireshark 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (application crash) via a malformed ca
23RIESGO
abrir ↗
Metasploit200
CTEK SkyRouter 4200 and 4300 Command Execution
CVE-2011-5010—08 sep 2011
apps/a3/cfg_ethping.cgi in the Ctek SkyRouter 4200 and 4300 allows remote attackers to execute arbitrary commands via sh
50RIESGO
abrir ↗
Metasploit300
Procyon Core Server HMI Coreservice.exe Stack Buffer Overflow
CVE-2011-3322—08 sep 2011
Core Server HMI Service (Coreservice.exe) in Scadatec Limited Procyon SCADA 1.06, and other versions before 1.14, allows
50RIESGO
abrir ↗
Metasploit300
eSignal and eSignal Pro File Parsing Buffer Overflow in QUO
CVE-2011-3494—06 sep 2011
WinSig.exe in eSignal 10.6.2425 and earlier allows remote attackers to cause a denial of service (crash) and possibly ex
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
DVD X Player 5.5 Pro - Overwrite (SEH)
CVE-2007-3068—localwindows06 sep 2011
Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Zikula Application Framework 1.2.7/1.3 - 'themename' Cross-Site Scripting
CVE-2011-3979—webappsphp05 sep 2011
Cross-site scripting (XSS) vulnerability in ztemp/view_compiled/Theme/theme_admin_setasdefault.php in the theme module i
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel < 2.6.36.2 (Ubuntu 10.04) - 'Half-Nelson.c' Econet Privilege Escalation
CVE-2010-4073—locallinux05 sep 2011
The ipc subsystem in the Linux kernel before 2.6.37-rc1 does not initialize certain structures, which allows local users
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel < 2.6.36.2 (Ubuntu 10.04) - 'Half-Nelson.c' Econet Privilege Escalation
CVE-2010-3848—locallinux05 sep 2011
Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel < 2.6.36.2 (Ubuntu 10.04) - 'Half-Nelson.c' Econet Privilege Escalation
CVE-2010-3850—locallinux05 sep 2011
The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADM
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apple QuickTime - PICT PnSize Buffer Overflow (Metasploit)
CVE-2011-0257—localwindows03 sep 2011
Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a deni
50RIESGO
abrir ↗
Exploit-DB
BroadWin Webaccess Client - Multiple Vulnerabilities
CVE-2012-0242—doswindows02 sep 2011
Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code
23RIESGO
abrir ↗
Exploit-DB
BroadWin Webaccess Client - Multiple Vulnerabilities
CVE-2012-0241—doswindows02 sep 2011
Advantech/BroadWin WebAccess before 7.0 allows remote attackers to cause a denial of service (memory corruption) via a m
23RIESGO
abrir ↗
Metasploit300
rsyslog Long Tag Off-By-Two DoS
CVE-2011-3200—01 sep 2011
Stack-based buffer overflow in the parseLegacySyslogMsg function in tools/syslogd.c in rsyslogd in rsyslog 4.6.x before
23RIESGO
abrir ↗
Exploit-DB
Linux Kernel 3.0.0 - 'perf_count_sw_cpu_clock' event Denial of Service
CVE-2011-2918—doslinux01 sep 2011
The Performance Events subsystem in the Linux kernel before 3.1 does not properly handle event overflows associated with
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
DVD X Player 5.5 - '.plf' Playlist Buffer Overflow (Metasploit)
CVE-2007-3068—localwindows01 sep 2011
Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Citrix Gateway - ActiveX Control Stack Buffer Overflow (Metasploit)
CVE-2011-2882—remotewindows31 ago 2011
Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Ed
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Open Admin Tool 2.71 - Multiple Cross-Site Scripting Vulnerabilities
CVE-2011-3390—webappsphp30 ago 2011
Multiple cross-site scripting (XSS) vulnerabilities in index.php in IBM OpenAdmin Tool (OAT) before 2.72 for Informix al
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MapServer 6.0 - '.Map' File Double-Free Remote Denial of Service
CVE-2011-2975—doswindows30 ago 2011
Double free vulnerability in the msAddImageSymbol function in mapsymbol.c in MapServer before 6.0.1 might allow remote a
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
LifeSize Room - Command Injection (Metasploit)
CVE-2011-2763—webappsphp28 ago 2011
The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) and 4.7.18 allows remote attackers to execute arbitra
50RIESGO
abrir ↗
Metasploit500
Free MP3 CD Ripper 1.1 WAV File Stack Buffer Overflow
CVE-2011-5165—27 ago 2011
Stack-based buffer overflow in Free MP3 CD Ripper 1.1, 2.6 and earlier, when converting a file, allows user-assisted rem
50RIESGO
abrir ↗
← anteriorpágina 1225 / 2723siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.