Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

75.447exploits catalogados
34.432CVEs con explotación pública
24.695probados en laboratorio
24.443 exploits
Exploit-DBVexDay Proof
Kolibri Web Server 2.0 - GET (SEH)
CVE-2014-4158remotewindows14 jul 2014
Stack-based buffer overflow in Kolibri 2.0 allows remote attackers to execute arbitrary code via a long URI in a GET req
28RIESGO
abrir
Exploit-DB
Shopizer 1.1.5 - Multiple Vulnerabilities
CVE-2014-4962webappsphp14 jul 2014
Shopizer 1.1.5 and earlier allows remote attackers to reduce the total cost of their shopping cart via a negative number
23RIESGO
abrir
Exploit-DBVexDay Proof
WordPress Plugin DZS-VideoGallery - Cross-Site Scripting / Command Injection
CVE-2014-9094webappsphp13 jul 2014
Multiple cross-site scripting (XSS) vulnerabilities in deploy/designer/preview.php in the Digital Zoom Studio (DZS) Vide
38RIESGO
abrir
Exploit-DB
OpenVPN Private Tunnel Core Service - Unquoted Service Path Privilege Escalation
CVE-2014-5455MEDIUMlocalwindows_x8612 jul 2014
Unquoted Windows search path vulnerability in the ptservice service prior to PrivateTunnel version 3.0 (Windows) and Ope
33RIESGO
abrir
Exploit-DBVexDay Proof
WeBid - Multiple Cross-Site Scripting / LDAP Injection Vulnerabilities
CVE-2014-5101webappsphp10 jul 2014
Multiple cross-site scripting (XSS) vulnerabilities in WeBid 1.1.1 allow remote attackers to inject arbitrary web script
23RIESGO
abrir
Exploit-DB
Infoblox 6.8.2.11 - OS Command Injection
CVE-2014-3418webappslinux_x8610 jul 2014
config/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via she
23RIESGO
abrir
Exploit-DB
OpenVAS Manager 4.0 - Authentication Bypass
CVE-2013-6765remotelinux10 jul 2014
OpenVAS Manager 3.0 before 3.0.7 and 4.0 before 4.0.4 allows remote attackers to bypass the OMP authentication restricti
23RIESGO
abrir
Exploit-DBVexDay Proof
WordPress Plugin BSK PDF Manager - '/wp-admin/admin.php' Multiple SQL Injections
CVE-2014-4944webappsphp09 jul 2014
Multiple SQL injection vulnerabilities in inc/bsk-pdf-dashboard.php in the BSK PDF Manager plugin 1.3.2 for WordPress al
23RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1781doswindows_x8608 jul 2014
Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1796doswindows_x8608 jul 2014
Microsoft Internet Explorer 6 and 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of se
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1797doswindows_x8608 jul 2014
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (me
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1795doswindows_x8608 jul 2014
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1785doswindows_x8608 jul 2014
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co
35RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1786doswindows_x8608 jul 2014
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1790doswindows_x8608 jul 2014
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory co
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1792doswindows_x8608 jul 2014
Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1784doswindows_x8608 jul 2014
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1794doswindows_x8608 jul 2014
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (me
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-2775doswindows_x8608 jul 2014
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RIESGO
abrir
Exploit-DBVexDay Proof
Dolibarr ERP/CRM 3.5.3 - Multiple Vulnerabilities
CVE-2014-3991webappsphp08 jul 2014
Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr ERP/CRM 3.5.3 allow remote attackers to inject arbitrary
23RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1783doswindows_x8608 jul 2014
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1778doswindows_x8608 jul 2014
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary web script with increased privileg
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1782doswindows_x8608 jul 2014
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1791doswindows_x8608 jul 2014
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-2772doswindows_x8608 jul 2014
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1770doswindows_x8608 jul 2014
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary co
35RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-2771doswindows_x8608 jul 2014
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (me
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-2765doswindows_x8608 jul 2014
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1804doswindows_x8608 jul 2014
Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor
28RIESGO
abrir
Exploit-DB
Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)
CVE-2014-1774doswindows_x8608 jul 2014
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor
28RIESGO
abrir
anteriorpágina 222 / 815siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.