Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.924exploits catalogados
38.251CVEs con explotación pública
24.695probados en laboratorio
TodosReferência 24.506Exploit-DB 24.485GitHub PoC 15.787VulnCheck XDB 9186Nuclei 4448Metasploit 3512✓ solo verificadosrecientespopularesriesgo
81.924 exploits
Exploit-DB✓ VexDay Proof
Joomla! Component News Portal 1.5.x - Local File Inclusion
Directory traversal vulnerability in the iJoomla News Portal (com_news_portal) component 1.5.x for Joomla! allows remote
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component XOBBIX 1.0 - 'prodid' SQL Injection
SQL injection vulnerability in the XOBBIX (com_xobbix) component 1.0.1 for Joomla! allows remote attackers to execute ar
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Freestyle FAQ Lite 1.3 - 'faqid' SQL Injection
SQL injection vulnerability in the Freestyle FAQs Lite (com_fsf) component, possibly 1.3, for Joomla! allows remote atta
23RIESGO
abrir ↗Exploit-DB
Microsoft Office 2010 Beta - Communicator SIP Denial of Service
Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers to cause a denial of ser
45RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Saber Cart 1.0.0.12 - Local File Inclusion
Directory traversal vulnerability in the Seber Cart (com_sebercart) component 1.0.0.12 and 1.0.0.13 for Joomla!, when ma
38RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Juke Box 1.7 - Local File Inclusion
Directory traversal vulnerability in the JOOFORGE Jutebox (com_jukebox) component 1.0 and 1.7 for Joomla! allows remote
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Joomla! Flickr 1.0 - Local File Inclusion
Directory traversal vulnerability in joomlaflickr.php in the Joomla Flickr (com_joomlaflickr) component 1.0.3 for Joomla
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Jzip 1.3 - '.zip' Unicode Buffer Overflow (PoC)
Stack-based buffer overflow in Jzip 1.3 through 2.0.0.132900 allows remote attackers to cause a denial of service (crash
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Fabrik 2.0 - Local File Inclusion
Directory traversal vulnerability in the Fabrik (com_fabrik) component 2.0 for Joomla! allows remote attackers to read a
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component JInventory 1.23.02 - Local File Inclusion
Directory traversal vulnerability in jinventory.php in the JInventory (com_jinventory) component 1.23.02 and possibly ot
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 3.0.24 (Solaris) - 'lsa_io_trans_names' Heap Overflow (Metasploit)
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component SVMap 1.1.1 - Local File Inclusion
Directory traversal vulnerability in the SVMap (com_svmap) component 1.1.1 for Joomla! allows remote attackers to read a
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component LoginBox - Local File Inclusion
Directory traversal vulnerability in the LoginBox Pro (com_loginbox) component for Joomla! allows remote attackers to re
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Magic Updater - Local File Inclusion
Directory traversal vulnerability in the Magic Updater (com_joomlaupdater) component for Joomla! allows remote attackers
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 3.0.10 (OSX) - 'lsa_io_trans_names' Heap Overflow (Metasploit)
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Shoutbox Pro - Local File Inclusion
Directory traversal vulnerability in the Shoutbox Pro (com_shoutbox) component for Joomla! allows remote attackers to re
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Uiga Proxy - Remote File Inclusion
PHP remote file inclusion vulnerability in include/template.php in Uiga Proxy, when register_globals is enabled, allows
23RIESGO
abrir ↗Metasploit600
AjaXplorer checkInstall.php Remote Command Execution
AjaXplorer < 2.6 checkInstall.php Unauthenticated RCE
63RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
nodesforum 1.033 - Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Nodesforum 1.033 and 1.045, when register_globals is enabled, allo
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Picasa 2.0 - Local File Inclusion
Directory traversal vulnerability in the Picasa (com_joomlapicasa2) component 2.0 and 2.0.5 for Joomla! allows remote at
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component redSHOP 1.0 - Local File Inclusion
Directory traversal vulnerability in the redSHOP (com_redshop) component 1.0.x for Joomla! allows remote attackers to re
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Facil-CMS 0.1RC2 - Local/Remote File Inclusion
Multiple directory traversal vulnerabilities in Facil CMS 0.1RC allow remote attackers to read arbitrary files via a ..
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component redTWITTER 1.0 - Local File Inclusion
Directory traversal vulnerability in the redTWITTER (com_redtwitter) component 1.0.x including 1.0b11 for Joomla! allows
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ZipCentral - '.zip' File (SEH)
Stack-based buffer overflow in ZipCentral 4.01 allows remote user-assisted attackers to execute arbitrary code via a ZIP
23RIESGO
abrir ↗Metasploit500
EasyFTP Server MKD Command Stack Buffer Overflow
EasyFTP MKD Command buffer overflow
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
eZip Wizard 3.0 - '.zip' File (SEH)
Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .z
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component JP Jobs 1.4.1 - SQL Injection
SQL injection vulnerability in the JP Jobs (com_jp_jobs) component 1.4.1 and earlier for Joomla! allows remote attackers
23RIESGO
abrir ↗Exploit-DB
Microsoft Internet Explorer Tabular Data Control - ActiveX Remote Code Execution
The Tabular Data Control (TDC) ActiveX control in Microsoft Internet Explorer 5.01 SP4, 6 on Windows XP SP2 and SP3, and
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IncrediMail 2.0 - ActiveX (Authenticated) Buffer Overflow (PoC)
Buffer overflow in the Authenticate method in the INCREDISPOOLERLib.Pop ActiveX control in ImSpoolU.dll in IncrediMail 2
23RIESGO
abrir ↗Exploit-DB
PHP-fusion dsmsf Mod Downloads - SQL Injection
SQL injection vulnerability in screen.php in the Download System mSF (dsmsf) module for PHP-Fusion allows remote attacke
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.