Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

76.542exploits catalogados
34.971CVEs con explotación pública
24.695probados en laboratorio
21.899 exploits
Referência
CVE-2026-8189
Wavlink NU516U1 adm.cgi wzdrepeater os command injection
33RIESGO
abrir
Referência
CVE-2026-8188
Wavlink NU516U1 adm.cgi change_wifi_password os command injection
33RIESGO
abrir
Referência
CVE-2010-0672
SQL injection vulnerability in index.php in WSN Guest 1.02 allows remote attackers to execute arbitrary SQL commands via
23RIESGO
abrir
Referência
CVE-2017-12542
A authentication bypass and execution of code vulnerability in HPE Integrated Lights-out 4 (iLO 4) version prior to 2.53
60RIESGO
abrir
Referência
CVE-2022-30190
CVE-2022-30190HIGHbajo ataqueransomware
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RIESGO
abrir
Referência
CVE-2017-8680
The Windows kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server
23RIESGO
abrir
ReferênciaVexDay Proof
All Club CMS 0.0.1f - 'index.php' Local File Inclusion
CVE-2008-0602webappsphp
Directory traversal vulnerability in index.php in All Club CMS (ACCMS) 0.0.1f and earlier allows remote attackers to inc
23RIESGO
abrir
ReferênciaVexDay Proof
Mambo Component 'com_awesom' 0.3.2 - 'listid' SQL Injection
CVE-2008-0603webappsphp
SQL injection vulnerability in index.php in the amazOOP Awesom! (com_awesom) 0.3.2component for Mambo and Joomla! allows
23RIESGO
abrir
ReferênciaVexDay Proof
Mambo Component Shambo2 - 'itemID' SQL Injection
CVE-2008-0606webappsphp
SQL injection vulnerability in index.php in the Shambo2 (com_shambo2) component for Mambo and Joomla! allows remote atta
23RIESGO
abrir
ReferênciaVexDay Proof
RMSOFT Gallery System 2.0 - 'id' SQL Injection
CVE-2008-0611webappsphp
SQL injection vulnerability in rmgs/images.php in the RMSOFT Gallery System 2.0 module for XOOPS allows remote attackers
23RIESGO
abrir
ReferênciaVexDay Proof
PhotoKorn Gallery 1.543 - 'pic' SQL Injection
CVE-2008-0614webappsphp
SQL injection vulnerability in index.php in Photokorn Gallery 1.543 allows remote attackers to execute arbitrary SQL com
23RIESGO
abrir
ReferênciaVexDay Proof
NERO Media Player 1.4.0.35b - '.m3u' File Buffer Overflow (PoC)
CVE-2008-0619doswindows
Buffer overflow in NeroMediaPlayer.exe in Nero Media Player 1.4.0.35 and earlier allows remote attackers to execute arbi
28RIESGO
abrir
ReferênciaVexDay Proof
SapLPD 6.28 (Windows x86) - Remote Buffer Overflow
CVE-2008-0621remotewindows_x86
Buffer overflow in SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to
60RIESGO
abrir
ReferênciaVexDay Proof
Yahoo! Music Jukebox 2.2 - 'AddImage()' ActiveX Remote Buffer Overflow (1)
CVE-2008-0623remotewindows
Stack-based buffer overflow in the YMP Datagrid ActiveX control (datagrid.dll) in Yahoo! Music Jukebox 2.2.2.056 allows
23RIESGO
abrir
ReferênciaVexDay Proof
Yahoo! Music Jukebox 2.2 - 'AddImage()' ActiveX Remote Buffer Overflow (2)
CVE-2008-0623remotewindows
Stack-based buffer overflow in the YMP Datagrid ActiveX control (datagrid.dll) in Yahoo! Music Jukebox 2.2.2.056 allows
23RIESGO
abrir
ReferênciaVexDay Proof
Yahoo! Music JukeBox 2.2 - 'AddButton()' ActiveX Remote Buffer Overflow
CVE-2008-0624remotewindows
Buffer overflow in the YMP Datagrid ActiveX control (datagrid.dll) in Yahoo! JukeBox 2.2.2.56 allows remote attackers to
23RIESGO
abrir
Referência
CVE-2026-8121
Open5GS NSSF conv.c ogs_sbi_parse_plmn_list denial of service
33RIESGO
abrir
Referência
CVE-2026-8120
Open5GS NSSF nnssf-handler.c denial of service
33RIESGO
abrir
Referência
CVE-2026-8119
Open5GS NSSF nghttp2-server.c ogs_sbi_stream_find_by_id denial of service
33RIESGO
abrir
Referência
CVE-2017-8681
The Windows kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server
23RIESGO
abrir
ReferênciaVexDay Proof
Astanda Directory Project 1.2 - 'link_id' SQL Injection
CVE-2008-0649webappsphp
SQL injection vulnerability in detail.php in Astanda Directory Project (ADP) 1.2 and 1.3 allows remote attackers to exec
23RIESGO
abrir
Referência
CVE-2010-0690
SQL injection vulnerability in index.php in CommodityRentals Video Games Rentals allows remote attackers to execute arbi
23RIESGO
abrir
ReferênciaVexDay Proof
Mambo Component com_downloads - SQL Injection
CVE-2008-0652webappsphp
SQL injection vulnerability in index.php in the Downloads (com_downloads) component for Mambo and Joomla! allows remote
23RIESGO
abrir
ReferênciaVexDay Proof
Joomla! Component Ynews 1.0.0 - 'id' SQL Injection
CVE-2008-0653webappsphp
SQL injection vulnerability in index.php in the Ynews (com_ynews) 1.0.0 component for Joomla! allows remote attackers to
23RIESGO
abrir
ReferênciaVexDay Proof
FaceBook PhotoUploader - 'ImageUploader4.ocx 4.5.57.0' Remote Buffer Overflow
CVE-2008-0660remotewindows
Multiple stack-based buffer overflows in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.6.17.0, 4.5.70.0,
35RIESGO
abrir
Referência
CVE-2010-0693
SQL injection vulnerability in products.php in CommodityRentals Trade Manager Script allows remote attackers to execute
23RIESGO
abrir
ReferênciaVexDay Proof
Joomla! Component com_noticias 1.0 - SQL Injection
CVE-2008-0670webappsphp
SQL injection vulnerability in index.php in the Noticias (com_noticias) 1.0 component for Joomla! allows remote attacker
23RIESGO
abrir
ReferênciaVexDay Proof
The Everything Development System Pre-1.0 - SQL Injection
CVE-2008-0675webappsphp
SQL injection vulnerability in cms/index.pl in The Everything Development Engine in The Everything Development System Pr
23RIESGO
abrir
Referência
CVE-2010-0694
SQL injection vulnerability in the PerchaGallery (com_perchagallery) component before 1.5b for Joomla! allows remote att
23RIESGO
abrir
Referência
CVE-2016-0049
Kerberos in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server
28RIESGO
abrir
anteriorpágina 320 / 730siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.