Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.859exploits catalogados
38.203CVEs con explotación pública
24.695probados en laboratorio
81.859 exploits
Exploit-DB✓ VexDay Proof
Joomla! Component RSComments 1.0.0 - Persistent Cross-Site Scripting
CVE-2010-2464—webappsphp19 jun 2010
Multiple cross-site scripting (XSS) vulnerabilities in the RSComments (com_rscomments) component 1.0.0 Rev 2 for Joomla!
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Spring Framework - Arbitrary code Execution
CVE-2010-1622—webappsmultiple18 jun 2010
SpringSource Spring Framework 2.5.x before 2.5.6.SEC02, 2.5.7 before 2.5.7.SR01, and 3.0.x before 3.0.3 allows remote at
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PowerZip 7.21 (Build 4010) - Stack Buffer Overflow
CVE-2010-3885—doswindows18 jun 2010
20RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
H264WebCam - Boundary Condition Error
CVE-2010-2349—doswindows18 jun 2010
H264WebCam 3.7 allows remote attackers to cause a denial of service (crash) via a long URI in a GET request, which trigg
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
(Gabriel's FTP Server) Open & Compact FTP Server 1.2 - Full System Access
CVE-2010-2620—remotewindows18 jun 2010
Open&Compact FTP Server (Open-FTPD) 1.2 and earlier allows remote attackers to bypass authentication by sending (1) LIST
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PowerZip 7.21 (Build 4010) - Stack Buffer Overflow
CVE-2010-3227—doswindows18 jun 2010
Stack-based buffer overflow in the UpdateFrameTitleForDocument method in the CFrameWnd class in mfc42.dll in the Microso
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Banner Management Script - SQL Injection
CVE-2010-4981—webappsphp18 jun 2010
SQL injection vulnerability in trackads.php in YourFreeWorld Banner Management allows remote attackers to execute arbitr
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BlazeDVD 5.1 (Windows 7) - '.plf' File Stack Buffer Overflow (ASLR + DEP Bypass)
CVE-2006-6199—localwindows17 jun 2010
Stack-based buffer overflow in BlazeVideo BlazeDVD Standard and Professional 5.0, and possibly earlier, allows remote at
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netware - SMB Remote Stack Overflow (PoC)
CVE-2010-2351—dosnovell17 jun 2010
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remo
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Batch Audio Converter Lite Edition 1.0.0.0 - Local Stack Buffer Overflow (SEH)
CVE-2010-2348—localwindows17 jun 2010
Stack-based buffer overflow in Batch Audio Converter Lite Edition 1.0.0.0 and earlier allows remote attackers to execute
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Samba 2.2.8 (BSD x86) - 'trans2open' Remote Overflow (Metasploit)
CVE-2003-0201—remotebsd_x8617 jun 2010
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
File Sharing Wizard 1.5.0 - Remote Overflow (SEH)
CVE-2010-2331—remotewindows17 jun 2010
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to execute arbitrary code via a
23RIESGO
abrir ↗
Metasploit500
HP OpenView Network Node Manager ovwebsnmpsrv.exe ovutil Buffer Overflow
CVE-2010-1961—16 jun 2010
Buffer overflow in ovutil.dll in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remo
50RIESGO
abrir ↗
Metasploit500
HP OpenView Network Node Manager ovwebsnmpsrv.exe main Buffer Overflow
CVE-2010-1964—16 jun 2010
Buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers t
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
CVE-2010-5018—webappsphp16 jun 2010
Cross-site scripting (XSS) vulnerability in products/classified/headersearch.php in 2daybiz Online Classified Script all
23RIESGO
abrir ↗
Exploit-DB
EZPX Photoblog 1.2 Beta - Remote File Inclusion
CVE-2010-2341—webappsphp16 jun 2010
PHP remote file inclusion vulnerability in system/application/views/public/commentform.php in EZPX Photoblog 1.2 beta al
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
2DayBiz ybiz Network Community Script - SQL Injection / Cross-Site Scripting
CVE-2010-5015—webappsphp16 jun 2010
SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arb
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Rosoft Audio Converter 4.4.4 - Local Buffer Overflow
CVE-2010-2329—localwindows16 jun 2010
Buffer overflow in Rosoft Audio Converter 4.4.4 allows remote attackers to execute arbitrary code via a long playlist en
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
CVE-2010-5019—webappsphp16 jun 2010
SQL injection vulnerability in view_photo.php in 2daybiz Online Classified Script allows remote attackers to execute arb
23RIESGO
abrir ↗
Exploit-DB
Nakid CMS 0.5.2 - Remote File Inclusion
CVE-2010-2358—webappsphp16 jun 2010
PHP remote file inclusion vulnerability in modules/catalog/upload_photo.php in Nakid CMS 0.5.2, when magic_quotes_gpc is
23RIESGO
abrir ↗
Metasploit400
Samba chain_reply Memory Corruption (Linux x86)
CVE-2010-2063—16 jun 2010
Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0
60RIESGO
abrir ↗
Metasploit300
Titan FTP XCRC Directory Traversal Information Disclosure
CVE-2010-2426—15 jun 2010
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Alt-N MDaemon 9.6.4 - IMAPD FETCH Buffer Overflow (Metasploit)
CVE-2008-1358—remotewindows15 jun 2010
Stack-based buffer overflow in the IMAP server in Alt-N Technologies MDaemon 9.6.4 allows remote authenticated users to
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FlipViewer FViewerLoading - ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-2919—remotewindows15 jun 2010
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipView
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Quick TFTP Server Pro 2.1 - Transfer-Mode Overflow (Metasploit)
CVE-2008-1610—remotewindows15 jun 2010
Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service o
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
EnjoySAP SAP GUI - ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-3605—remotewindows15 jun 2010
Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEnd\SapGui\kwedit.dll in the EnjoySAP
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Borland CaliberRM - StarTeam Multicast Service Buffer Overflow (Metasploit)
CVE-2008-0311—remotewindows15 jun 2010
Stack-based buffer overflow in the PGMWebHandler::parse_request function in the StarTeam Multicast Service component (ST
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Smart ASP Survey - Cross-Site Scripting / SQL Injection
CVE-2010-5045—webappsasp15 jun 2010
Cross-site scripting (XSS) vulnerability in poll/default.asp in Smart ASP Survey allows remote attackers to inject arbit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ShixxNOTE 6.net - Font Field Overflow (Metasploit)
CVE-2004-1595—remotewindows15 jun 2010
Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field.
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
CVE-2006-3524—remotewindows15 jun 2010
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RIESGO
abrir ↗
← anteriorpágina 1286 / 2729siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.