Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

75.589exploits catalogados
34.508CVEs con explotación pública
24.695probados en laboratorio
13.689 exploits
GitHub PoC
This repository has both an attack detection tool and a Proof-of-Concept (PoC) Python script for the WinRAR CVE-2023-38831 vulnerability.
CVE-2023-38831HIGHbajo ataqueransomware29 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC13
Adapted CVE-2020-0041 root exploit for Pixel 3
CVE-2020-0041HIGHbajo ataque29 ago 2023
In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could
71RIESGO
abrir
GitHub PoC
hanmin0512/CVE-2014-6271_pwnable
CVE-2014-6271CRITICALbajo ataque29 ago 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RIESGO
abrir
GitHub PoC5
Remote Code Execution on Junos OS CVE-2023-36846
CVE-2023-36846MEDIUMbajo ataque29 ago 2023
Junos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload arbitrary files
85RIESGO
abrir
GitHub PoC11
CVE-2023-38831 winrar exploit generator and get reverse shell
CVE-2023-38831HIGHbajo ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC40
Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)
CVE-2023-38831HIGHbajo ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC3
CVE-2023-38831 WinRAR
CVE-2023-38831HIGHbajo ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC4
KQL Hunting for WinRAR CVE-2023-38831
CVE-2023-38831HIGHbajo ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC22
Pasos necesarios para obtener una reverse shell explotando la vulnerabilidad de winrar CVE-2023-38831 en versiones anteriores a 6.23.
CVE-2023-38831HIGHbajo ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC
CVE-2023-28432检测工具
CVE-2023-28432HIGHbajo ataque28 ago 2023
Minio Information Disclosure in Cluster Deployment
100RIESGO
abrir
GitHub PoC90
CVE-2023-38831 PoC (Proof Of Concept)
CVE-2023-38831HIGHbajo ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC6
CloudPanel 2 Remote Code Execution Exploit
CVE-2023-35885CRITICAL28 ago 2023
CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication.
85RIESGO
abrir
GitHub PoC1
POC for CVE-2023-24489 with bash.
CVE-2023-24489CRITICALbajo ataque27 ago 2023
A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, coul
100RIESGO
abrir
GitHub PoC2
IR-HuntGuardians/CVE-2023-38831-HUNT
CVE-2023-38831HIGHbajo ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC7
PHPUnit RCE
CVE-2017-9841CRITICALbajo ataque27 ago 2023
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers to execute arbitrary PHP c
100RIESGO
abrir
GitHub PoC128
一款用于生成winrar程序RCE(即cve-2023-38831)的POC的工具。
CVE-2023-38831HIGHbajo ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC114
An easy to install and easy to run tool for generating exploit payloads for CVE-2023-38831, WinRAR RCE before versions 6.23
CVE-2023-38831HIGHbajo ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC1
Python implementation of CVE-2018-16858
CVE-2018-16858HIGH26 ago 2023
It was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attack which could
68RIESGO
abrir
GitHub PoC
krmxd/CVE-2023-2868
CVE-2023-2868CRITICALbajo ataque25 ago 2023
Remote Code injection in Barracuda Email Security Gateway
100RIESGO
abrir
GitHub PoC785
CVE-2023-38831 winrar exploit generator
CVE-2023-38831HIGHbajo ataqueransomware25 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC115
watchtowrlabs/juniper-rce_cve-2023-36844
CVE-2023-36844MEDIUMbajo ataque25 ago 2023
Junos OS: EX Series: A PHP vulnerability in J-Web allows an unauthenticated attacker to control important environment variables
100RIESGO
abrir
GitHub PoC7
A PoC exploit for CVE-2021-42013 - Apache 2.4.49 & 2.4.50 Remote Code Execution
CVE-2021-42013CRITICALbajo ataqueransomware25 ago 2023
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RIESGO
abrir
GitHub PoC
ptkhai15/OverlayFS---CVE-2021-3493
CVE-2021-3493HIGHbajo ataque25 ago 2023
The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting o
98RIESGO
abrir
GitHub PoC205
Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE
CVE-2023-36874HIGHbajo ataque24 ago 2023
Windows Error Reporting Service Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC12
PHP CGI Argument Injection.
CVE-2012-1823CRITICALbajo ataque24 ago 2023
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not
100RIESGO
abrir
GitHub PoC5
Citrix ADC RCE CVE-2023-3519
CVE-2023-3519CRITICALbajo ataqueransomware24 ago 2023
Unauthenticated remote code execution
100RIESGO
abrir
GitHub PoC91
lazy way to create CVE-2023-38831 winrar file for testing
CVE-2023-38831HIGHbajo ataqueransomware24 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RIESGO
abrir
GitHub PoC7
CVE-2023-38035 Recon oriented exploit, extract company name contact information
CVE-2023-38035CRITICALbajo ataqueransomware24 ago 2023
A security vulnerability in MICS Admin Portal in Ivanti MobileIron Sentry versions 9.18.0 and below, which may allow an
100RIESGO
abrir
GitHub PoC40
Ivanti Sentry CVE-2023-38035
CVE-2023-38035CRITICALbajo ataqueransomware23 ago 2023
A security vulnerability in MICS Admin Portal in Ivanti MobileIron Sentry versions 9.18.0 and below, which may allow an
100RIESGO
abrir
GitHub PoC
Lab environment to test CVE-2023-25725
CVE-2023-25725CRITICAL23 ago 2023
HAProxy before 2.7.3 may allow a bypass of access control because HTTP/1 headers are inadvertently lost in some situatio
48RIESGO
abrir
anteriorpágina 260 / 457siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.