Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.924exploits catalogados
38.251CVEs con explotación pública
24.695probados en laboratorio
81.924 exploits
Exploit-DB✓ VexDay Proof
Joomla! Component Deluxe Blog Factory 1.1.2 - Local File Inclusion
CVE-2010-1955—webappsphp14 abr 2010
Directory traversal vulnerability in the Deluxe Blog Factory (com_blogfactory) component 1.1.2 for Joomla! allows remote
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Aircrack-NG Tools svn r1675 - Remote Heap Buffer Overflow (PoC)
CVE-2010-1159—dosmultiple14 abr 2010
Multiple heap-based buffer overflows in Aircrack-ng before 1.1 allow remote attackers to cause a denial of service (cras
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Mocha LPD 1.9 - Remote Buffer Overflow (Denial of Service) (PoC)
CVE-2010-1687—doswindows14 abr 2010
Stack-based buffer overflow in lpd.exe in Mocha W32 LPD 1.9 allows remote attackers to cause a denial of service (crash)
23RIESGO
abrir ↗
Metasploit500
Windows Media Services ConnectFunnel Stack Buffer Overflow
CVE-2010-0478—13 abr 2010
Stack-based buffer overflow in nsum.exe in the Windows Media Unicast Service in Media Services for Microsoft Windows 200
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component QPersonel 1.0.2 - SQL Injection
CVE-2010-1720—webappsphp13 abr 2010
SQL injection vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 and earlier for Joomla! allows remote atta
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component JP Jobs 1.2.0 - 'id' SQL Injection
CVE-2010-1350—webappsphp13 abr 2010
SQL injection vulnerability in the JP Jobs (com_jp_jobs) component 1.4.1 and earlier for Joomla! allows remote attackers
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Openurgence vaccin 1.03 - Local File Inclusion / Remote File Inclusion
CVE-2010-1466—webappsphp13 abr 2010
Directory traversal vulnerability in scr/soustab.php in openUrgence Vaccin 1.03 allows remote attackers to read arbitrar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Zikula Application Framework 1.2.2 - 'ZLanguage.php?lang' Cross-Site Scripting
CVE-2010-1724—webappsphp13 abr 2010
Multiple cross-site scripting (XSS) vulnerabilities in Zikula Application Framework 1.2.2, and possibly earlier, allow r
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Zikula Application Framework 1.2.2 - 'index.php?func' Cross-Site Scripting
CVE-2010-1724—webappsphp13 abr 2010
Multiple cross-site scripting (XSS) vulnerabilities in Zikula Application Framework 1.2.2, and possibly earlier, allow r
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Jvehicles 1.0/2.0 - 'aid' SQL Injection
CVE-2010-1873—webappsphp13 abr 2010
SQL injection vulnerability in the Jvehicles (com_jvehicles) component 1.0, 2.0, and 2.1111 for Joomla! allows remote at
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Openurgence vaccin 1.03 - Local File Inclusion / Remote File Inclusion
CVE-2010-1467—webappsphp13 abr 2010
Multiple PHP remote file inclusion vulnerabilities in openUrgence Vaccin 1.03 allow remote attackers to execute arbitrar
23RIESGO
abrir ↗
Metasploit300
MS10-026 Microsoft MPEG Layer-3 Audio Stack Based Overflow
CVE-2010-0480—13 abr 2010
Multiple stack-based buffer overflows in the MPEG Layer-3 audio codecs in Microsoft Windows 2000 SP4, XP SP2 and SP3, Se
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
VMware Remote Console e.x.p build-158248 - Format String
CVE-2009-3732—dosmultiple12 abr 2010
Format string vulnerability in vmware-vmrc.exe build 158248 in VMware Remote Console (aka VMrc) allows remote attackers
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Arcade Games 1.0 - Local File Inclusion
CVE-2010-1714—webappsphp12 abr 2010
Directory traversal vulnerability in the Arcade Games (com_arcadegames) component 1.0 for Joomla! allows remote attacker
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Sweetykeeper 1.5 - Local File Inclusion
CVE-2010-1474—webappsphp12 abr 2010
Directory traversal vulnerability in the Sweety Keeper (com_sweetykeeper) component 1.5.x for Joomla! allows remote atta
38RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Horoscope 1.5.0 - Local File Inclusion
CVE-2010-1472—webappsphp12 abr 2010
Directory traversal vulnerability in the Daily Horoscope (com_horoscope) component 1.5.0 for Joomla! allows remote attac
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component SermonSpeaker - SQL Injection
CVE-2010-1477—webappsphp12 abr 2010
SQL injection vulnerability in the SermonSpeaker (com_sermonspeaker) component before 3.2.1 for Joomla! allows remote at
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component SermonSpeaker - SQL Injection
CVE-2010-1559—webappsphp12 abr 2010
SQL injection vulnerability in the SermonSpeaker (com_sermonspeaker) component before 3.2.1 for Joomla! allows remote at
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
YaPiG 0.94.0u - Remote File Inclusion
CVE-2005-1882—webappsphp12 abr 2010
PHP remote file inclusion vulnerability in last_gallery.php in YaPiG 0.93u and 0.94u allows remote attackers to execute
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
TANDBERG Video Communication Server 4.2.1/4.3.0 - Multiple Remote Vulnerabilities
CVE-2009-4511—webappsphp12 abr 2010
Multiple directory traversal vulnerabilities in the web administration interface on the TANDBERG Video Communication Ser
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Web TV 1.0 - Local File Inclusion
CVE-2010-1470—webappsphp12 abr 2010
Directory traversal vulnerability in the Web TV (com_webtv) component 1.0 for Joomla! allows remote attackers to read ar
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Online Market 2.x - Local File Inclusion
CVE-2010-1722—webappsphp12 abr 2010
Directory traversal vulnerability in the Online Market (com_market) component 2.x for Joomla! allows remote attackers to
38RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Advertising 0.25 - Local File Inclusion
CVE-2010-1473—webappsphp12 abr 2010
Directory traversal vulnerability in the Advertising (com_advertising) component 0.25 for Joomla! allows remote attacker
38RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Address Book 1.5.0 - Local File Inclusion
CVE-2010-1471—webappsphp12 abr 2010
Directory traversal vulnerability in the AddressBook (com_addressbook) component 1.5.0 for Joomla! allows remote attacke
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Online Exam 1.5.0 - Local File Inclusion
CVE-2010-1715—webappsphp12 abr 2010
Directory traversal vulnerability in the Online Examination (aka Online Exam or com_onlineexam) component 1.5.0 for Joom
38RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Elite Gaming Ladders 3.5 - 'match' SQL Injection
CVE-2010-5016—webappsphp11 abr 2010
SQL injection vulnerability in matchdb.php in Elite Gaming Ladders 3.5 and earlier allows remote attackers to execute ar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component Multi-Venue Restaurant Menu Manager 1.5.2 - SQL Injection
CVE-2010-1468—webappsphp11 abr 2010
SQL injection vulnerability in the Multi-Venue Restaurant Menu Manager (aka MVRMM or com_mv_restaurantmenumanager) compo
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component AlphaUserPoints 1.5.5 - Local File Inclusion
CVE-2010-1476—webappsphp11 abr 2010
Directory traversal vulnerability in the AlphaUserPoints (com_alphauserpoints) component 1.5.5 for Joomla! allows remote
38RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component JProject Manager 1.0 - Local File Inclusion
CVE-2010-1469—webappsphp11 abr 2010
Directory traversal vulnerability in the Ternaria Informatica JProject Manager (com_jprojectmanager) component 1.0 for J
38RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Joomla! Component RokModule 1.1 - 'moduleid' Blind SQL Injection
CVE-2010-1480—webappsphp11 abr 2010
SQL injection vulnerability in the RokModule (com_rokmodule) component 1.1 for Joomla! allows remote attackers to execut
23RIESGO
abrir ↗
← anteriorpágina 1305 / 2731siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.