Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.859exploits catalogados
38.203CVEs con explotación pública
24.695probados en laboratorio
81.859 exploits
Exploit-DB✓ VexDay Proof
libpng 1.4.2 - Denial of Service
CVE-2010-1205—dosmultiple20 jul 2010
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might
35RIESGO
abrir ↗
Metasploit300
JBoss Seam 2 Remote Command Execution
CVE-2010-1871HIGHbajo ataque19 jul 2010
JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, does not properly
100RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
OpenLDAP 2.4.22 - 'modrdn' Multiple Vulnerabilities
CVE-2010-0211—doslinux19 jul 2010
The slap_modrdn2mods function in modrdn.c in OpenLDAP 2.4.22 does not check the return value of a call to the smr_normal
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Ghostscript - '.PostScript' File Stack Overflow
CVE-2010-1869—localbsd18 jul 2010
Stack-based buffer overflow in the parser function in GhostScript 8.70 and 8.64 allows context-dependent attackers to ex
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Automatic .LNK Shortcut File Code Execution
CVE-2010-2568HIGHbajo ataquelocalwindows18 jul 2010
Windows Shell in Microsoft Windows XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 all
100RIESGO
abrir ↗
Exploit-DB
Kayako eSupport 3.70.02 - 'functions.php' SQL Injection
CVE-2010-2911—webappsphp18 jul 2010
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL com
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
AIX5l with FTP-Server - Hash Disclosure
CVE-2010-3187—remoteaix18 jul 2010
Buffer overflow in ftpd in IBM AIX 5.3 and earlier allows remote attackers to execute arbitrary code via a long NLST com
28RIESGO
abrir ↗
Exploit-DB
Kayako eSupport 3.70.02 - 'functions.php' SQL Injection
CVE-2010-2912—webappsphp18 jul 2010
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL com
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Automatic .LNK Shortcut File Code Execution
CVE-2015-0096—localwindows18 jul 2010
Untrusted search path vulnerability in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
rpc.pcnfsd - Remote Format String
CVE-2010-1039—remoteaix18 jul 2010
Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, a
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Kayako eSupport 3.70.02 - SQL Injection
CVE-2010-2912—webappsphp17 jul 2010
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL com
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MoreAmp - Local Buffer Overflow (SEH) (Metasploit)
CVE-2010-2439—localwindows17 jul 2010
Stack-based buffer overflow in MoreAmp allows remote attackers to execute arbitrary code via a long line in a song list
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Kayako eSupport 3.70.02 - SQL Injection
CVE-2010-2911—webappsphp17 jul 2010
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL com
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component StaticXT - SQL Injection
CVE-2010-2919—webappsphp17 jul 2010
SQL injection vulnerability in the StaticXT (com_staticxt) component for Joomla! allows remote attackers to execute arbi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Mini-stream RM-MP3 Converter 3.1.2.1 - '.pls' Local Stack Buffer Overflow Universal
CVE-2010-5081—localwindows_x8616 jul 2010
Stack-based buffer overflow in Mini-Stream RM-MP3 Converter 3.1.2.1 allows remote attackers to execute arbitrary code vi
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BS Scripts Directory - 'articlesdetails.php' SQL Injection
CVE-2010-2906—webappsphp16 jul 2010
SQL injection vulnerability in articlesdetails.php in ScriptsFeed and BrotherScripts (BS) Scripts Directory allows remot
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Pre Podcast Portal - Authentication Bypass
CVE-2010-4959—webappsphp16 jul 2010
SQL injection vulnerability in the login feature in Pre Projects Pre Podcast Portal allows remote attackers to execute a
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SAP DB 7.4 - WebTools Buffer Overflow (Metasploit)
CVE-2007-3614—remotewindows16 jul 2010
Multiple stack-based buffer overflows in waHTTP.exe (aka the SAP DB Web Server) in SAP DB, possibly 7.3 through 7.5, all
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Novell Groupwise Internet Agent - Stack Overflow
CVE-2010-2777—dosmultiple16 jul 2010
Stack-based buffer overflow in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise 7.x befo
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - Daxctle.OCX KeyFrame Method Heap Buffer Overflow (MS06-067) (Metasploit)
CVE-2006-4777—remotewindows16 jul 2010
Heap-based buffer overflow in the DirectAnimation Path Control (DirectAnimation.PathControl) COM object (daxctle.ocx) fo
60RIESGO
abrir ↗
Metasploit600
Microsoft Windows Shell LNK Code Execution
CVE-2010-2568HIGHbajo ataque16 jul 2010
Windows Shell in Microsoft Windows XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 all
100RIESGO
abrir ↗
Metasploit500
Mini-Stream RM-MP3 Converter v3.1.2.1 PLS File Stack Buffer Overflow
CVE-2010-5081—16 jul 2010
Stack-based buffer overflow in Mini-Stream RM-MP3 Converter 3.1.2.1 allows remote attackers to execute arbitrary code vi
50RIESGO
abrir ↗
Metasploit600
Microsoft Windows Shell LNK Code Execution
CVE-2010-2568HIGHbajo ataque16 jul 2010
Windows Shell in Microsoft Windows XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 all
100RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BS Scripts Directory - 'info.php' SQL Injection
CVE-2010-2905—webappsphp15 jul 2010
SQL injection vulnerability in info.php in ScriptsFeed and BrotherScripts (BS) Scripts Directory allows remote attackers
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Samba 2.2.8 (Linux x86) - 'trans2open' Remote Overflow (Metasploit)
CVE-2003-0201—remotelinux_x8614 jul 2010
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗
Exploit-DB
Struts2/XWork < 2.2.0 - Remote Command Execution
CVE-2010-1870—remotemultiple14 jul 2010
The OGNL extensive expression evaluation capability in XWork in Struts 2.0.0 through 2.1.8.1, as used in Atlassian Fishe
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Samba 3.0.24 (Linux) - 'lsa_io_trans_names' Heap Overflow (Metasploit)
CVE-2007-2446—remotelinux14 jul 2010
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Excel - 0x5D record Stack Overflow (MS10-038)
CVE-2010-0822—localwindows14 jul 2010
Stack-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 for Mac, Office 2008 for Mac, and Open XML F
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IPSwitch WhatsUp Gold 8.03 - Remote Buffer Overflow (Metasploit)
CVE-2004-0798—remotewindows14 jul 2010
Buffer overflow in the _maincfgret.cgi script for Ipswitch WhatsUp Gold before 8.03 Hotfix 1 allows remote attackers to
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Nagios3 - 'statuswml.cgi' 'Ping' Command Execution (Metasploit)
CVE-2009-2288—webappscgi14 jul 2010
statuswml.cgi in Nagios before 3.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in t
60RIESGO
abrir ↗
← anteriorpágina 1277 / 2729siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.