Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.689exploits catalogados
38.075CVEs con explotación pública
24.695probados en laboratorio
81.689 exploits
Exploit-DB✓ VexDay Proof
CiscoWorks Common Services 3.1.1 - Auditing Directory Traversal
CVE-2011-0966—webappsjava18 may 2011
Directory traversal vulnerability in cwhp/auditLog.do in the Homepage Auditing component in Cisco CiscoWorks Common Serv
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cisco Unified Operations Manager - Multiple Vulnerabilities
CVE-2011-0966—remotewindows18 may 2011
Directory traversal vulnerability in cwhp/auditLog.do in the Homepage Auditing component in Cisco CiscoWorks Common Serv
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cisco Unified Operations Manager - Multiple Vulnerabilities
CVE-2011-0962—remotewindows18 may 2011
Cross-site scripting (XSS) vulnerability in CSCOnm/servlet/com.cisco.nm.help.ServerHelpEngine in the Common Services Dev
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
TWiki 5.0.1 - 'origurl' Cross-Site Scripting
CVE-2011-1838—webappsphp18 may 2011
Multiple cross-site scripting (XSS) vulnerabilities in TemplateLogin.pm in TWiki before 5.0.2 allow remote attackers to
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CiscoWorks Common Services Framework 3.1.1 Help Servlet - Cross-Site Scripting
CVE-2011-0961—remotehardware18 may 2011
Cross-site scripting (XSS) vulnerability in cwhp/device.center.do in the Help servlet in Cisco CiscoWorks Common Service
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cisco Unified Operations Manager - Multiple Vulnerabilities
CVE-2011-0959—remotewindows18 may 2011
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Operations Manager (CUOM) before 8.6 allow remote a
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cisco Unified Operations Manager - Multiple Vulnerabilities
CVE-2011-0960—remotewindows18 may 2011
Multiple SQL injection vulnerabilities in Cisco Unified Operations Manager (CUOM) before 8.6 allow remote attackers to e
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
7-Technologies IGSS 9.00.00 b11063 - 'IGSSdataServer.exe' Remote Stack Overflow (Metasploit)
CVE-2011-1567—remotewindows16 may 2011
Multiple stack-based buffer overflows in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Grap
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Adobe Audition 3.0 build 7283 - Session File Handling Buffer Overflow (PoC)
CVE-2011-0614—doswindows13 may 2011
Buffer overflow in Adobe Audition 3.0.1 and earlier allows remote attackers to cause a denial of service (memory corrupt
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Oracle GlassFish Server - Administration Console Authentication Bypass
CVE-2011-1511—webappswindows12 may 2011
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Sun Products Suite 2.1.1 and 3.0.1 allows r
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache 1.4/2.2.x - APR 'apr_fnmatch()' Denial of Service
CVE-2011-0419—doslinux12 may 2011
Stack consumption vulnerability in the fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) libr
35RIESGO
abrir ↗
Metasploit300
Mozilla Firefox 3.6.16 mChannel Use-After-Free Vulnerability
CVE-2011-0065—10 may 2011
Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allo
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Struts 2.0.0 < 2.2.1.1 - XWork 's:submit' HTML Tag Cross-Site Scripting
CVE-2011-1772—remotemultiple10 may 2011
Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x before 2.2.3, and OpenSymphony XWork i
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ICONICS WebHMI - ActiveX Buffer Overflow (Metasploit)
CVE-2011-2089—remotewindows10 may 2011
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0
50RIESGO
abrir ↗
Metasploit300
Mozilla Firefox 3.6.16 mChannel Use-After-Free
CVE-2011-0065—10 may 2011
Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allo
60RIESGO
abrir ↗
Metasploit400
ICONICS WebHMI ActiveX Buffer Overflow
CVE-2011-2089—05 may 2011
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0
50RIESGO
abrir ↗
Metasploit300
SPlayer 3.7 Content-Type Buffer Overflow
CVE-2011-10022HIGH04 may 2011
SPlayer 3.7 Content-Type Header Buffer Overflow
36RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Perl 5.10 - Multiple Null Pointer Dereference Denial of Service Vulnerabilities
CVE-2011-0761—dosmultiple03 may 2011
Perl 5.10.x allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application cr
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ICONICS WebHMI - ActiveX Stack Overflow
CVE-2011-2089—remotewindows03 may 2011
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0
50RIESGO
abrir ↗
Metasploit300
Tom Sawyer Software GET Extension Factory Remote Code Execution
CVE-2011-2217—03 may 2011
Certain ActiveX controls in (1) tsgetxu71ex552.dll and (2) tsgetx71ex552.dll in Tom Sawyer GET Extension Factory 5.5.2.2
50RIESGO
abrir ↗
Metasploit400
MJM QuickPlayer 1.00 Beta 60a / QuickPlayer 2010 .s3m Stack Buffer Overflow
CVE-2011-10023HIGH30 abr 2011
MJM QuickPlayer <= 2010 .s3m Stack-Based Buffer Overflow
36RIESGO
abrir ↗
Metasploit400
MJM Core Player 2011 .s3m Stack Buffer Overflow
CVE-2011-10024HIGH30 abr 2011
MJM Core Player 2011 .s3m File Stack-Based Buffer Overflow
36RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
OProfile 0.9.6 - 'opcontrol' Utility 'set_event()' Local Privilege Escalation
CVE-2011-1760—locallinux29 abr 2011
utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to conduct eval injection attacks and gain privile
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Excel - Axis Properties Record Parsing Buffer Overflow (PoC) (MS11-02)
CVE-2011-0978—doswindows29 abr 2011
Stack-based buffer overflow in Microsoft Excel 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 for Mac; Excel Viewer SP2;
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Libmodplug 0.8.8.2 - '.abc' Stack Buffer Overflow (PoC)
CVE-2011-1761—doslinux28 abr 2011
Multiple stack-based buffer overflows in the (1) abc_new_macro and (2) abc_new_umacro functions in src/load_abc.cpp in l
28RIESGO
abrir ↗
Metasploit300
NetOp Remote Control Client 9.5 Buffer Overflow
CVE-2011-10012HIGH28 abr 2011
NetOp Remote Control Client 9.5 .dws File Buffer Overflow
36RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cisco Unified Communications Manager 8.5 - 'xmldirectorylist.jsp' Multiple SQL Injections
CVE-2011-1609—webappsjsp27 abr 2011
SQL injection vulnerability in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x before 6.1(5)su
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
EMC HomeBase Server - Directory Traversal Remote Code Execution (Metasploit)
CVE-2010-0620—remotewindows27 abr 2011
Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 al
28RIESGO
abrir ↗
Metasploit400
Magix Musik Maker 16 .mmm Stack Buffer Overflow
CVE-2011-10021HIGH26 abr 2011
Magix Musik Maker <= v16 .mmm Stack-Based Buffer Overflow
36RIESGO
abrir ↗
Metasploit300
Subtitle Processor 7.7.1 .M3U SEH Unicode Buffer Overflow
CVE-2011-10025HIGH26 abr 2011
Subtitle Processor 7.7.1 .m3u SEH Unicode Buffer Overflow
36RIESGO
abrir ↗
← anteriorpágina 1231 / 2723siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.