Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
79.896exploits catalogados
36.847CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.475Referência 23.360GitHub PoC 15.224VulnCheck XDB 8946Nuclei 4390Metasploit 3501✓ solo verificadosrecientespopularesriesgo
19.066 exploits
Exploit-DB✓ VexDay Proof
Yahoo! Messenger 8.1.0.249 - ActiveX Control Buffer Overflow (Metasploit)
Buffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
CA BrightStor ARCserve Backup - 'AddColumn()' ActiveX Buffer Overflow (Metasploit)
Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including Br
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Tumbleweed SecureTransport FileTransfer - 'vcst_eu.dll' ActiveX Control Buffer Overflow (Metasploit)
Stack-based buffer overflow in the IActiveXTransfer.FileTransfer method in the SecureTransport FileTransfer ActiveX cont
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ShixxNOTE 6.net - Font Field Overflow (Metasploit)
Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field.
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Borland CaliberRM - StarTeam Multicast Service Buffer Overflow (Metasploit)
Stack-based buffer overflow in the PGMWebHandler::parse_request function in the StarTeam Multicast Service component (ST
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SIPfoundry sipXphone 2.6.0.27 - CSeq Buffer Overflow (Metasploit)
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Kerio Personal Firewall 2.1.4 - Authentication Packet Overflow (Metasploit)
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows r
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - IDQ Path Overflow (MS01-033) (Metasploit)
Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier a
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Ipswitch IMail Server - IMAP SEARCH Buffer Overflow (Metasploit)
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote au
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Smart ASP Survey - Cross-Site Scripting / SQL Injection
Cross-site scripting (XSS) vulnerability in poll/default.asp in Smart ASP Survey allows remote attackers to inject arbit
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
FlipViewer FViewerLoading - ActiveX Control Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipView
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
File Sharing Wizard 1.5.0 - Buffer Overflow (PoC)
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to cause a denial of service (c
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SasCam 2.6.5 - Remote HTTP Server Crash
Soft SaschArt SasCAM Webcam Server 2.6.5, 2.7, and earlier allows remote attackers to cause a denial of service (crash)
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Trellian FTP Client 3.01 - PASV Remote Buffer Overflow (Metasploit)
Stack-based buffer overflow in Trellian FTP client 3.01, including 3.1.3.1789, allows remote attackers to execute arbitr
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RealPlayer - 'rmoc3260.dll' ActiveX Control Heap Corruption (Metasploit)
The RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll in RealNetworks RealPlayer Enterprise, RealPlayer 10, Rea
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Mercury/32 < 4.01b - PH Server Module Buffer Overflow (Metasploit)
Buffer overflow in Mercury Mail Transport System 4.01b allows remote attackers to execute arbitrary code via a long requ
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
MailEnable - IMAPD W3C Logging Buffer Overflow (Metasploit)
Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Alt-N MDaemon 9.6.4 - IMAPD FETCH Buffer Overflow (Metasploit)
Stack-based buffer overflow in the IMAP server in Alt-N Technologies MDaemon 9.6.4 allows remote authenticated users to
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Quick TFTP Server Pro 2.1 - Transfer-Mode Overflow (Metasploit)
Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service o
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AIM Triton 1.0.4 - CSeq Buffer Overflow (Metasploit)
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XnView 1.97.4 - '.MBM' File Remote Heap Buffer Overflow
Heap-based buffer overflow in XnView 1.97.4 and possibly earlier allows remote attackers to execute arbitrary code via a
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
VideoWhisper PHP 2 Way Video Chat - 'r' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in VideoWhisper PHP 2 Way Video Chat component for Joomla! allows remote attack
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LibTIFF 3.9.4 - Unknown Tag Second Pass Processing Remote Denial of Service
LibTIFF 3.9.0 ignores tags in certain situations during the first stage of TIFF file processing and does not properly ha
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Python 3.2 - 'audioop' Module Memory Corruption
The audioop module in Python 2.7 and 3.2 does not verify the relationships between size arguments and byte string length
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
UTStats - Cross-Site Scripting / SQL Injection / Full Path Disclosure
SQL injection vulnerability in index.php in UTStats Beta 4 and earlier allows remote attackers to execute arbitrary SQL
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
UTStats - Cross-Site Scripting / SQL Injection / Full Path Disclosure
Cross-site scripting (XSS) vulnerability in pages/match_report.php in UTStats Beta 4 and earlier allows remote attackers
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
UnrealIRCd 3.2.8.1 - Remote Downloader/Execute
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Yamamah Photo Gallery 1.00 - 'download.php' Local File Disclosure
Directory traversal vulnerability in themes/default/download.php in Yamamah Photo Gallery 1.00, as distributed before 20
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Digital Interchange Document Library - SQL Injection
SQL injection vulnerability in view_group.asp in Digital Interchange Document Library 5.8.5 allows remote attackers to e
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.