Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.859exploits catalogados
38.203CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.483Referência 24.469GitHub PoC 15.768VulnCheck XDB 9182Nuclei 4447Metasploit 3510✓ solo verificadosrecientespopularesriesgo
81.859 exploits
Exploit-DB✓ VexDay Proof
Joomla! Component RSComments 1.0.0 - Persistent Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in the RSComments (com_rscomments) component 1.0.0 Rev 2 for Joomla!
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Spring Framework - Arbitrary code Execution
SpringSource Spring Framework 2.5.x before 2.5.6.SEC02, 2.5.7 before 2.5.7.SR01, and 3.0.x before 3.0.3 allows remote at
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
H264WebCam - Boundary Condition Error
H264WebCam 3.7 allows remote attackers to cause a denial of service (crash) via a long URI in a GET request, which trigg
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
(Gabriel's FTP Server) Open & Compact FTP Server 1.2 - Full System Access
Open&Compact FTP Server (Open-FTPD) 1.2 and earlier allows remote attackers to bypass authentication by sending (1) LIST
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PowerZip 7.21 (Build 4010) - Stack Buffer Overflow
Stack-based buffer overflow in the UpdateFrameTitleForDocument method in the CFrameWnd class in mfc42.dll in the Microso
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Banner Management Script - SQL Injection
SQL injection vulnerability in trackads.php in YourFreeWorld Banner Management allows remote attackers to execute arbitr
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BlazeDVD 5.1 (Windows 7) - '.plf' File Stack Buffer Overflow (ASLR + DEP Bypass)
Stack-based buffer overflow in BlazeVideo BlazeDVD Standard and Professional 5.0, and possibly earlier, allows remote at
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Netware - SMB Remote Stack Overflow (PoC)
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remo
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Batch Audio Converter Lite Edition 1.0.0.0 - Local Stack Buffer Overflow (SEH)
Stack-based buffer overflow in Batch Audio Converter Lite Edition 1.0.0.0 and earlier allows remote attackers to execute
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.8 (BSD x86) - 'trans2open' Remote Overflow (Metasploit)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
File Sharing Wizard 1.5.0 - Remote Overflow (SEH)
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to execute arbitrary code via a
23RIESGO
abrir ↗Metasploit500
HP OpenView Network Node Manager ovwebsnmpsrv.exe ovutil Buffer Overflow
Buffer overflow in ovutil.dll in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remo
50RIESGO
abrir ↗Metasploit500
HP OpenView Network Node Manager ovwebsnmpsrv.exe main Buffer Overflow
Buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers t
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in products/classified/headersearch.php in 2daybiz Online Classified Script all
23RIESGO
abrir ↗Exploit-DB
EZPX Photoblog 1.2 Beta - Remote File Inclusion
PHP remote file inclusion vulnerability in system/application/views/public/commentform.php in EZPX Photoblog 1.2 beta al
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
2DayBiz ybiz Network Community Script - SQL Injection / Cross-Site Scripting
SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arb
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Rosoft Audio Converter 4.4.4 - Local Buffer Overflow
Buffer overflow in Rosoft Audio Converter 4.4.4 allows remote attackers to execute arbitrary code via a long playlist en
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
SQL injection vulnerability in view_photo.php in 2daybiz Online Classified Script allows remote attackers to execute arb
23RIESGO
abrir ↗Exploit-DB
Nakid CMS 0.5.2 - Remote File Inclusion
PHP remote file inclusion vulnerability in modules/catalog/upload_photo.php in Nakid CMS 0.5.2, when magic_quotes_gpc is
23RIESGO
abrir ↗Metasploit400
Samba chain_reply Memory Corruption (Linux x86)
Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0
60RIESGO
abrir ↗Metasploit300
Titan FTP XCRC Directory Traversal Information Disclosure
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earl
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Alt-N MDaemon 9.6.4 - IMAPD FETCH Buffer Overflow (Metasploit)
Stack-based buffer overflow in the IMAP server in Alt-N Technologies MDaemon 9.6.4 allows remote authenticated users to
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
FlipViewer FViewerLoading - ActiveX Control Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipView
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Quick TFTP Server Pro 2.1 - Transfer-Mode Overflow (Metasploit)
Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service o
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
EnjoySAP SAP GUI - ActiveX Control Buffer Overflow (Metasploit)
Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEnd\SapGui\kwedit.dll in the EnjoySAP
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Borland CaliberRM - StarTeam Multicast Service Buffer Overflow (Metasploit)
Stack-based buffer overflow in the PGMWebHandler::parse_request function in the StarTeam Multicast Service component (ST
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Smart ASP Survey - Cross-Site Scripting / SQL Injection
Cross-site scripting (XSS) vulnerability in poll/default.asp in Smart ASP Survey allows remote attackers to inject arbit
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ShixxNOTE 6.net - Font Field Overflow (Metasploit)
Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field.
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.