Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

75.445exploits catalogados
34.432CVEs con explotación pública
24.695probados en laboratorio
13.627 exploits
GitHub PoC32
PHP RCE PoC for CVE-2024-4577 written in bash, go, python and a nuclei template
CVE-2024-4577CRITICALbajo ataqueransomware08 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC164
[漏洞复现] 全球首款利用PHP默认环境(XAMPP)的CVE-2024-4577 PHP-CGI RCE 漏洞 EXP。
CVE-2024-4577CRITICALbajo ataqueransomware08 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC9
Proof Of Concept RCE exploit for critical vulnerability in PHP <8.2.15 (Windows), allowing attackers to execute arbitrary commands.
CVE-2024-4577CRITICALbajo ataqueransomware08 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
Autonomy Ultraseek - Open Redirect
CVE-2009-034708 jun 2024
Open redirect vulnerability in cs.html in the Autonomy (formerly Verity) Ultraseek search engine allows remote attackers
43RIESGO
abrir
GitHub PoC
satchhacker/cve-2024-24919
CVE-2024-24919HIGHbajo ataqueransomware08 jun 2024
Information disclosure
100RIESGO
abrir
GitHub PoC43
POC & $BASH script for CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
princew88/CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC1
Wh02m1/CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC1
taida957789/CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
CVE-2024-24919 exploit that checks more files for better visibility
CVE-2024-24919HIGHbajo ataqueransomware07 jun 2024
Information disclosure
100RIESGO
abrir
GitHub PoC1
Nuclei Template for CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
CVE-2022-26134 exploit script
CVE-2022-26134CRITICALbajo ataqueransomware07 jun 2024
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RIESGO
abrir
GitHub PoC317
PHP CGI Argument Injection (CVE-2024-4577) Remote Code Execution PoC
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC1
PHP CGI Argument Injection (CVE-2024-4577) Remote Code Execution PoC
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC77
CVE-2024-4577 is a critical vulnerability in PHP affecting CGI configurations, allowing attackers to execute arbitrary commands via crafted URL parameters.
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC22
huseyinstif/CVE-2024-4577-Nuclei-Template
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC2
WordPress Automatic Plugin <= 3.92.0 - SQL Injection
CVE-2024-27956CRITICAL07 jun 2024
WordPress Automatic plugin <= 3.92.0 - Unauthenticated Arbitrary SQL Execution vulnerability
85RIESGO
abrir
GitHub PoC
WanLiChangChengWanLiChang/CVE-2024-4577-RCE-EXP
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
CVE-2021-22204 exploit script
CVE-2021-22204MEDIUMbajo ataque07 jun 2024
Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code exec
100RIESGO
abrir
GitHub PoC
CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
graphite-org/CVE-2024-4577
CVE-2024-4577CRITICALbajo ataqueransomware07 jun 2024
Argument Injection in PHP-CGI
100RIESGO
abrir
GitHub PoC
CVE-2022-29464 exploit script
CVE-2022-29464CRITICALbajo ataqueransomware07 jun 2024
Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /file
100RIESGO
abrir
GitHub PoC
oracle weblogic
CVE-2020-14883HIGHbajo ataque07 jun 2024
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions
100RIESGO
abrir
GitHub PoC
muhammad1596/CVE-2022-0847-DirtyPipe-Exploits
CVE-2022-0847HIGHbajo ataque06 jun 2024
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
NanoWraith/CVE-2024-5084
CVE-2024-5084CRITICAL06 jun 2024
Hash Form – Drag & Drop Form Builder <= 1.1.0 - Unauthenticated Arbitrary File Upload to Remote Code Execution
75RIESGO
abrir
GitHub PoC
WanLiChangChengWanLiChang/CVE-2024-25600
CVE-2024-25600CRITICAL06 jun 2024
WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability
85RIESGO
abrir
GitHub PoC
NanoWraith/CVE-2024-25600
CVE-2024-25600CRITICAL06 jun 2024
WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability
85RIESGO
abrir
GitHub PoC
CVE-2024-4295 Email Subscribers by Icegram Express <= 5.7.20 - Unauthenticated SQL Injection via hash
CVE-2024-4295CRITICAL06 jun 2024
Email Subscribers by Icegram Express <= 5.7.20 - Unauthenticated SQL Injection via hash
68RIESGO
abrir
GitHub PoC1
A Simple Exploit Code(POC) to Automate CVE-2024–24919
CVE-2024-24919HIGHbajo ataqueransomware06 jun 2024
Information disclosure
100RIESGO
abrir
anteriorpágina 218 / 455siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.