Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

76.107exploits catalogados
34.679CVEs con explotación pública
24.695probados en laboratorio
13.812 exploits
GitHub PoC57
PoC for CVE-2022-1388_F5_BIG-IP
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC230
POC for CVE-2022-1388
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC37
CVE-2022-1388 F5 BIG-IP iControl REST RCE
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC
Hudi233/CVE-2022-1388
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC1
batch scan CVE-2022-1388
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC2
CVE-2022-1388 POC exploit
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC25
Generate primary obfuscated or secondary obfuscated CVE-2021-44228 or CVE-2021-45046 payloads to evade WAF detection.
CVE-2021-44228CRITICALbajo ataqueransomware09 may 2022
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RIESGO
abrir
GitHub PoC147
Atlassian Bitbucket Data Center RCE(CVE-2022-26133) verification.
CVE-2022-26133CRITICAL09 may 2022
SharedSecretClusterAuthenticator in Atlassian Bitbucket Data Center versions 5.14.0 and later before 7.6.14, 7.7.0 and l
70RIESGO
abrir
GitHub PoC2
CVE-2022-1388 F5 BIG-IP iControl REST身份验证绕过漏洞
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC
Trinadh465/device_renesas_kernel_AOSP10_r33_CVE-2022-0492
CVE-2022-0492HIGHbajo ataque09 may 2022
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. Th
86RIESGO
abrir
GitHub PoC8
F5 BIG-IP iControl REST身份验证绕过漏洞
CVE-2022-1388CRITICALbajo ataqueransomware09 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC48
CVE-2022-24734 PoC
CVE-2022-24734HIGH08 may 2022
Remote code execution in mybb
78RIESGO
abrir
GitHub PoC
Files required to demonstrate CVE-2022-0847 vulnerability in Linux Kernel v5.8
CVE-2022-0847HIGHbajo ataque08 may 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC8
blind-intruder/CVE-2022-1388-RCE-checker-and-POC-Exploit
CVE-2022-1388CRITICALbajo ataqueransomware08 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC
A vulnerability scanner that detects CVE-2021-21980 vulnerabilities.
CVE-2022-1388CRITICALbajo ataqueransomware07 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC93
CVE-2022-1388 F5 BIG-IP RCE 批量检测
CVE-2022-1388CRITICALbajo ataqueransomware07 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC2
fuzzing with libFuzzer,inlude openssl heartbleed (CVE-2014-0160)
CVE-2014-0160HIGHbajo ataque07 may 2022
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packe
100RIESGO
abrir
GitHub PoC1
cve-2022-29464 EXP
CVE-2022-29464CRITICALbajo ataqueransomware07 may 2022
Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /file
100RIESGO
abrir
GitHub PoC
Just proof of concept for Cisco CVE-2020-3452. Using external or internal file base.
CVE-2020-3452HIGHbajo ataque07 may 2022
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability
100RIESGO
abrir
GitHub PoC
jr64/CVE-2015-0311
CVE-2015-0311HIGHbajo ataque07 may 2022
Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Window
100RIESGO
abrir
GitHub PoC6
WordPress Plugin MasterStudy LMS 2.7.5 - Unauthenticated Admin Account Creation
CVE-2022-044106 may 2022
MasterStudy LMS < 2.7.6 - Unauthenticated Admin Account Creation
60RIESGO
abrir
GitHub PoC28
This vulnerability may allow an unauthenticated attacker with network access to the BIG-IP system through the management port and/or self IP addresses to execute arbitrary system commands, create or delete files, or disable services. There is no data plane exposure; this is a control plane issue only.
CVE-2022-1388CRITICALbajo ataqueransomware06 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC16
may the poc with you
CVE-2022-1040CRITICALbajo ataque06 may 2022
An authentication bypass vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sopho
100RIESGO
abrir
GitHub PoC
Satheesh575555/external_expat_AOSP10_r33_CVE-2022-25236
CVE-2022-25236CRITICAL06 may 2022
xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace
60RIESGO
abrir
GitHub PoC1
1
CVE-2022-29464CRITICALbajo ataqueransomware05 may 2022
Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /file
100RIESGO
abrir
GitHub PoC53
K23605346: BIG-IP iControl REST vulnerability CVE-2022-1388
CVE-2022-1388CRITICALbajo ataqueransomware05 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC25
Simple script realizado en bash, para revisión de múltiples hosts para CVE-2022-1388 (F5)
CVE-2022-1388CRITICALbajo ataqueransomware05 may 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RIESGO
abrir
GitHub PoC
CVE-2022-22954 analyst
CVE-2022-22954CRITICALbajo ataqueransomware05 may 2022
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side templa
100RIESGO
abrir
GitHub PoC
CVE-2018-17553 PoC
CVE-2018-1755303 may 2022
An "Unrestricted Upload of File with Dangerous Type" issue with directory traversal in navigate_upload.php in Naviwebs N
60RIESGO
abrir
GitHub PoC13
PoC of CVE-2022-24707
CVE-2022-24707HIGH03 may 2022
SQL injection in anuko timetracker
41RIESGO
abrir
anteriorpágina 316 / 461siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.