Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

82.745exploits catalogados
38.712CVEs con explotación pública
24.695probados en laboratorio
82.745 exploits
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Overflow (Hardware DEP)
CVE-2007-1765—localwindows03 abr 2007
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
HP Mercury Quality Center 9.0 build 9.1.0.4352 - SQL Execution
CVE-2007-1882—remotemultiple03 abr 2007
qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment in HP Mercury Quality Center 9.0 build 9.1.0.4352 allows remote authen
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Overflow (Hardware DEP)
CVE-2007-0038—localwindows03 abr 2007
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Universal Generator
CVE-2007-0038—remotewindows03 abr 2007
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Universal Generator
CVE-2007-1765—remotewindows03 abr 2007
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
XOOPS Module XFsection 1.07 - 'articleId' Blind SQL Injection
CVE-2005-0725—webappsphp02 abr 2007
SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows rem
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PulseAudio 0.9.5 - 'Assert()' Remote Denial of Service
CVE-2007-1804—doslinux02 abr 2007
PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LEN
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
XOOPS Module WF-Section 1.01 - 'articleId' SQL Injection
CVE-2005-0725—webappsphp02 abr 2007
SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows rem
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
XOOPS Module Zmagazine 1.0 - 'print.php' SQL Injection
CVE-2005-0725—webappsphp02 abr 2007
SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows rem
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Buffer Overflow
CVE-2007-0038—localwindows02 abr 2007
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Buffer Overflow
CVE-2007-1765—localwindows02 abr 2007
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Frontbase 4.2.7 - (Authenticated) Remote Buffer Overflow (2.2)
CVE-2007-1511—remotewindows02 abr 2007
Buffer overflow in FrontBase Relational Database Server 4.2.7 and earlier allows remote authenticated users, with privil
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Remote (eeye patch Bypass)
CVE-2007-0038—remotewindows01 abr 2007
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP - Animated Cursor '.ani' Remote Overflow (2)
CVE-2007-1765—remotewindows01 abr 2007
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Remote (eeye patch Bypass)
CVE-2007-1765—remotewindows01 abr 2007
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/Vista - Animated Cursor '.ani' Remote Overflow
CVE-2007-0038—remotewindows01 abr 2007
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP - Animated Cursor '.ani' Remote Overflow (2)
CVE-2007-0038—remotewindows01 abr 2007
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/Vista - Animated Cursor '.ani' Remote Overflow
CVE-2007-1765—remotewindows01 abr 2007
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IPSwitch IMail Server 8.20 - IMAPD Remote Buffer Overflow
CVE-2005-1255—remotewindows01 abr 2007
Multiple stack-based buffer overflows in the IMAP server in IMail 8.12 and 8.13 in Ipswitch Collaboration Suite (ICS), a
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
HP Instant Support - ActiveX Control Driver Check Buffer Overflow
CVE-2007-3554—remotewindows01 abr 2007
Stack-based buffer overflow in the HPSDDX Class (SDD) ActiveX control in sdd.dll in HP Instant Support - Driver Check be
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Symantec (Multiple Products) - 'SPBBCDrv' Driver Local Denial of Service
CVE-2007-1793—doswindows01 abr 2007
SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate certain arguments before b
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WinMail Server 4.4 build 1124 - 'WebMail' Remote Add Super User
CVE-2005-3811—webappsphp01 abr 2007
Directory traversal vulnerability in admin/main.php in AMAX Magic Winmail Server 4.2 (build 0824) and earlier allows rem
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP 5.1.6 - 'Msg_Receive()' Memory Allocation Integer Overflow
CVE-2007-1890—remotephp31 mar 2007
Integer overflow in the msg_receive function in PHP 4 before 4.4.5 and PHP 5 before 5.2.1, on FreeBSD and possibly other
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Lotus Domino Server 6.5 - Remote Overflow
CVE-2007-1675—remotewindows31 mar 2007
Buffer overflow in the CRAM-MD5 authentication mechanism in the IMAP server (nimap.exe) in IBM Lotus Domino before 6.5.6
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Stack Overflow
CVE-2007-0038—localwindows31 mar 2007
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP-Fusion 6.1.5 Mod Calendar_Panel - 'Show_Event.php' SQL Injection
CVE-2007-1845—webappsphp31 mar 2007
SQL injection vulnerability in show_event.php in the Expanded Calendar (calendar_panel) 2.00 module for PHP-Fusion allow
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Stack Overflow
CVE-2007-1765—localwindows31 mar 2007
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP 5.1.6 - 'Imap_Mail_Compose()' Remote Buffer Overflow
CVE-2007-1825—remotephp31 mar 2007
Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
JC URLShrink 1.3.1 - Remote Code Execution
CVE-2007-1795—webappsphp30 mar 2007
JCcorp URLshrink 1.3.1 allows remote attackers to execute arbitrary PHP code via the email address field in an HTML link
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
dproxy-nexgen (Linux x86) - Remote Buffer Overflow
CVE-2007-1866—remotelinux_x8630 mar 2007
Stack-based buffer overflow in the dns_decode_reverse_name function in dns_decode.c in dproxy-nexgen allows remote attac
28RIESGO
abrir ↗
← anteriorpágina 1484 / 2759siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.