Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

76.107exploits catalogados
34.679CVEs con explotación pública
24.695probados en laboratorio
13.812 exploits
GitHub PoC
githublihaha/DirtyPIPE-CVE-2022-0847
CVE-2022-0847HIGHbajo ataque15 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC3
Python script to check if your kernel is vulnerable to Dirty pipe CVE-2022-0847
CVE-2022-0847HIGHbajo ataque15 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC2
Exploits for Hotel Druid 3.0.3 - Remote Code Execution (RCE) CVE-2022-22909
CVE-2022-2290914 mar 2022
HotelDruid v3.0.3 was discovered to contain a remote code execution (RCE) vulnerability which is exploited via an attack
35RIESGO
abrir
GitHub PoC
Exploit for the Rails CVE-2019-5420
CVE-2019-542014 mar 2022
A remote code execution vulnerability in development mode Rails <5.2.2.1, <6.0.0.beta3 can allow an attacker to guess th
60RIESGO
abrir
GitHub PoC15
CVE-2022-0847 POC
CVE-2022-0847HIGHbajo ataque14 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC3
Implementation of CVE-2022-0847 as a shellcode
CVE-2022-0847HIGHbajo ataque14 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC2
dirtypipe
CVE-2022-0847HIGHbajo ataque14 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC12
spring-cloud-gateway-rce CVE-2022-22947
CVE-2022-22947CRITICALbajo ataque13 mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RIESGO
abrir
GitHub PoC3
CVE-2022-0847 (Dirty Pipe) is an arbitrary file overwrite vulnerability that allows escalation of privileges by modifying or overwriting arbitrary read-only files e.g. /etc/passwd, /etc/shadow.
CVE-2022-0847HIGHbajo ataque13 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC1
Dirty Pipe (CVE-2022-0847) zafiyeti kontrolü
CVE-2022-0847HIGHbajo ataque13 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC727
A collection of exploits and documentation that can be used to exploit the Linux Dirty Pipe vulnerability.
CVE-2022-0847HIGHbajo ataque12 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC6
my personal exploit of CVE-2022-0847(dirty pipe)
CVE-2022-0847HIGHbajo ataque12 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC4
CVE-2022-0847 Python exploit to get root or write a no write permission, immutable or read-only mounted file.
CVE-2022-0847HIGHbajo ataque12 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC32
CVE-2022-0492 EXP and Analysis write up
CVE-2022-0492HIGHbajo ataque11 mar 2022
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. Th
86RIESGO
abrir
GitHub PoC
cve-2022-22947-docker
CVE-2022-22947CRITICALbajo ataque11 mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RIESGO
abrir
GitHub PoC
Greetdawn/CVE-2022-0847-DirtyPipe-
CVE-2022-0847HIGHbajo ataque11 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC2
dskmehra/CVE-2022-0848
CVE-2022-0848CRITICAL11 mar 2022
OS Command Injection in part-db/part-db
60RIESGO
abrir
GitHub PoC10
A Python-based DirtyPipe (CVE-2022-0847) POC to pop a root shell
CVE-2022-0847HIGHbajo ataque11 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
babyshen/CVE-2019-13272
CVE-2019-13272HIGHbajo ataque10 mar 2022
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a proce
98RIESGO
abrir
GitHub PoC4
仅仅是poc,并不是exp
CVE-2022-24990CRITICALbajo ataqueransomware10 mar 2022
TerraMaster NAS 4.2.29 and earlier allows remote attackers to discover the administrative password by sending "User-Agen
100RIESGO
abrir
GitHub PoC
CVE-2019-18818/19606 Strapi RCE
CVE-2019-1881810 mar 2022
strapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and packages/s
60RIESGO
abrir
GitHub PoC
osungjinwoo/CVE-2022-0847-Dirty-Pipe
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
PaoPaoLong-lab/Spring-CVE-2022-22947-
CVE-2022-22947CRITICALbajo ataque10 mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RIESGO
abrir
GitHub PoC
CVE-2022-0847-DirtyPipe-Exploit
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC25
CVE-2022-0847 POC and Docker and Analysis write up
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC5
CVE-2022-22947 Exploit script
CVE-2022-22947CRITICALbajo ataque10 mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RIESGO
abrir
GitHub PoC
A root exploit for CVE-2022-0847 (Dirty Pipe)
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
edsonjt81/CVE-2022-0847-Linux
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC2
A “Dirty Pipe” vulnerability with CVE-2022-0847 and a CVSS score of 7.8 has been identified, affecting Linux Kernel 5.8 and higher. The vulnerability allows attackers to overwrite data in read-only files. Threat actors can exploit this vulnerability to privilege themselves with code injection.
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
pentestblogin/pentestblog-CVE-2022-0847
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
anteriorpágina 325 / 461siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.