Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
82.451exploits catalogados
38.590CVEs con explotación pública
24.695probados en laboratorio
TodosReferência 24.767Exploit-DB 24.485GitHub PoC 15.955VulnCheck XDB 9270Nuclei 4456Metasploit 3518✓ solo verificadosrecientespopularesriesgo
82.451 exploits
Exploit-DB✓ VexDay Proof
CommuniGate Pro 5.1.8 - Web Mail HTML Injection
Cross-site scripting (XSS) vulnerability in the WebMail system in Stalker CommuniGate Pro 5.1.8 and earlier, when using
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LibEXIF 0.6.x - Exif_Data_Load_Data_Entry Remote Integer Overflow
Integer overflow in the exif_data_load_data_entry function in exif-data.c in libexif before 0.6.14 allows user-assisted
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
TFTP Server TFTPDWin 0.4.2 - Directory Traversal
Directory traversal vulnerability in TFTPdWin 0.4.2 allows remote attackers to read or modify arbitrary files outside th
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
McAfee Security Center IsOldAppInstalled - ActiveX Buffer Overflow
Buffer overflow in the IsOldAppInstalled function in the McSubMgr.McSubMgr Subscription Manager ActiveX control (MCSUBMG
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PHP Multi User Randomizer 2006.09.13 - 'Configure_Plugin.TPL.php' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in PHP Multi User Randomizer (phpMUR) 2006.09.13 allow remote attack
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 7 - Arbitrary File Rewrite (MS07-027)
Unspecified vulnerability in the mdsauth.dll COM object in Microsoft Windows Media Server in the Microsoft Internet Expl
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun Microsystems Solaris SRSEXEC 3.2.x - Arbitrary File Read Local Information Disclosure
srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file per
38RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
aForum 1.32 - 'CommonAbsDir' Remote File Inclusion
PHP remote file inclusion vulnerability in common/errormsg.php in aForum 1.32 and possibly earlier, when register_global
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Barcodewiz ActiveX Control 2.0 - 'Barcodewiz.dll' Remote Buffer Overflow (PoC)
Stack-based buffer overflow in the Verify function in the BarCodeWiz ActiveX control 2.0 and 2.52 (BarcodeWiz.dll) allow
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Barcodewiz ActiveX Control 2.52 - 'Barcodewiz.dll' Overwrite (SEH)
Stack-based buffer overflow in the Verify function in the BarCodeWiz ActiveX control 2.0 and 2.52 (BarcodeWiz.dll) allow
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
CA (Multiple Products) - Console Server / 'InoCore.dll' Remote Code Execution
CA Anti-Virus for the Enterprise r8 and Threat Manager r8 before 20070510 use weak permissions (NULL security descriptor
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GDivX Zenith Player AviFixer Class - 'fix.dll 1.0.0.1' Buffer Overflow (PoC)
SQL injection vulnerability in browse.php in Ed Charkow SuperCharged Linking allows remote attackers to execute arbitrar
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GIMP 2.2.14 (Windows x86) - '.ras' Download/Execute Buffer Overflow
Stack-based buffer overflow in the set_color_table function in sunras.c in the SUNRAS plugin in Gimp 2.2.14 allows user-
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'user.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'topic.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'UrlType.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Log.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'article.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - '/implementation/Management/db_connect.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'LoginAttempts.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'LocalizerConfig.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ShortURL.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IncrediMail IMMenuShellExt - ActiveX Control Buffer Overflow
Stack-based buffer overflow in the DoWebMenuAction function in the IncrediMail IMMenuShellExt ActiveX control (ImShExt.d
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Subscription.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'IPAccess.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'LocalizerLanguage.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'SubscriptionDefaultTime.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'SubscriptionSection.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'issue.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Alias.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.