Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

76.313exploits catalogados
34.834CVEs con explotación pública
24.695probados en laboratorio
24.443 exploits
Exploit-DBVexDay Proof
Adobe - U3D CLODProgressiveMeshDeclaration Array Overrun (Metasploit) (2)
CVE-2009-3953HIGHbajo ataquelocalwindows25 sep 2010
The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x befor
100RIESGO
abrir
Exploit-DBVexDay Proof
E-Xoopport Samsara 3.1 (eCal Module) - Blind SQL Injection
CVE-2010-4942webappsphp25 sep 2010
SQL injection vulnerability in location.php in the eCal module in E-Xoopport Samsara 3.1 and earlier allows remote attac
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Excel - Malformed FEATHEADER Record (MS09-067) (Metasploit)
CVE-2009-3129HIGHbajo ataquelocalwindows25 sep 2010
Microsoft Office Excel 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Office 2004 and 2008 for Mac; Open XML File Format Conv
100RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Visual Basic - '.VBP' Local Buffer Overflow (Metasploit)
CVE-2007-4776localwindows25 sep 2010
Buffer overflow in Microsoft Visual Basic 6.0 and Enterprise Edition 6.0 SP6 allows user-assisted remote attackers to ex
50RIESGO
abrir
Exploit-DBVexDay Proof
Adobe - 'Collab.collectEmailInfo()' Local Buffer Overflow (Metasploit)
CVE-2007-5659HIGHbajo ataquelocalwindows25 sep 2010
Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code
100RIESGO
abrir
Exploit-DBVexDay Proof
ACDSee - '.XPM' File Section Buffer Overflow (Metasploit)
CVE-2007-2193localwindows25 sep 2010
Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build
50RIESGO
abrir
Exploit-DBVexDay Proof
Adobe - 'Doc.media.newPlayer' Use-After-Free (Metasploit) (2)
CVE-2009-4324HIGHbajo ataquelocalwindows25 sep 2010
Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9.x before
100RIESGO
abrir
Exploit-DBVexDay Proof
PointDev IDEAL Migration - Buffer Overflow (Metasploit)
CVE-2009-4265dosaix25 sep 2010
Stack-based buffer overflow in Ideal Administration 2009 9.7.1, and possibly other versions, allows remote attackers to
50RIESGO
abrir
Exploit-DBVexDay Proof
Adobe Flash Player - 'newfunction' Invalid Pointer Use (Metasploit) (2)
CVE-2010-1297HIGHbajo ataquelocalwindows25 sep 2010
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrob
100RIESGO
abrir
Exploit-DBVexDay Proof
Adobe Acrobat - Bundled LibTIFF Integer Overflow (Metasploit)
CVE-2010-0188HIGHbajo ataqueransomwarelocalwindows25 sep 2010
Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a
100RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft PowerPoint Viewer - TextBytesAtom Stack Buffer Overflow (MS10-004) (Metasploit)
CVE-2010-0033localwindows25 sep 2010
Stack-based buffer overflow in Microsoft Office PowerPoint 2003 SP3 allows remote attackers to execute arbitrary code vi
50RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft HTML Help Workshop 4.74 - '.hhp' Index Buffer Overflow (Metasploit) (3)
CVE-2009-0133localwindows25 sep 2010
Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary
50RIESGO
abrir
Exploit-DBVexDay Proof
Adobe - 'Collab.getIcon()' Local Buffer Overflow (Metasploit) (2)
CVE-2009-0927HIGHbajo ataquelocalwindows25 sep 2010
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows r
100RIESGO
abrir
Exploit-DBVexDay Proof
Free Download Manager 3.0 Build 844 - Torrent Parsing Buffer Overflow (Metasploit)
CVE-2009-0184localwindows25 sep 2010
Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Bui
43RIESGO
abrir
Exploit-DBVexDay Proof
Adobe - JBIG2Decode Memory Corruption (Metasploit) (2)
CVE-2009-0658localwindows25 sep 2010
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft HTML Help Workshop 4.74 - '.hhp' compiled Buffer Overflow (Metasploit) (4)
CVE-2006-0564localwindows25 sep 2010
Stack-based buffer overflow in Microsoft HTML Help Workshop 4.74.8702.0, and possibly earlier versions, and as included
60RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft HTML Help Workshop 4.74 - '.hhp' Cotent Buffer Overflow (Metasploit) (2)
CVE-2006-0564localwindows25 sep 2010
Stack-based buffer overflow in Microsoft HTML Help Workshop 4.74.8702.0, and possibly earlier versions, and as included
60RIESGO
abrir
Exploit-DBVexDay Proof
Mozilla Firefox CSS - font-face Remote Code Execution
CVE-2010-2752doswindows25 sep 2010
Integer overflow in an array class in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x befo
23RIESGO
abrir
Exploit-DBVexDay Proof
URSoft W32Dasm 8.93 - Disassembler Function Buffer Overflow (Metasploit)
CVE-2005-0308localwindows25 sep 2010
Buffer overflow in the wsprintf function in W32Dasm 8.93 and earlier allows remote attackers to execute arbitrary code v
50RIESGO
abrir
Exploit-DBVexDay Proof
DjVu - 'DjVu_ActiveX_MSOffice.dll' ActiveX Component Buffer Overflow (Metasploit)
CVE-2008-4922remotewindows25 sep 2010
Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers
50RIESGO
abrir
Exploit-DBVexDay Proof
SasCam Webcam Server 2.6.5 - 'Get()' Method Buffer Overflow (Metasploit)
CVE-2008-6898remotewindows25 sep 2010
Buffer overflow in the XHTTP Module 4.1.0.0 in the ActiveX control for SaschArt SasCam Webcam Server 2.6.5 allows remote
50RIESGO
abrir
Exploit-DBVexDay Proof
Linksys WRT54 Access Point - 'apply.cgi' Remote Buffer Overflow (Metasploit)
CVE-2005-2799remotehardware24 sep 2010
Buffer overflow in apply.cgi in Linksys WRT54G 3.01.03, 3.03.6, and possibly other versions before 4.20.7, allows remote
60RIESGO
abrir
Exploit-DBVexDay Proof
FreePBX 2.8.0 - Recordings Interface Allows Remote Code Execution
CVE-2010-3490webappsphp24 sep 2010
Directory traversal vulnerability in page.recordings.php in the System Recordings component in the configuration interfa
23RIESGO
abrir
Exploit-DB
Joomla! Component Elite Experts - SQL Injection
CVE-2010-4944webappswindows_x8624 sep 2010
SQL injection vulnerability in the Elite Experts (com_elite_experts) component for Mambo and Joomla! allows remote attac
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft MPEG Layer-3 Audio Decoder - Division By Zero
CVE-2010-0480doswindows24 sep 2010
Multiple stack-based buffer overflows in the MPEG Layer-3 audio codecs in Microsoft Windows 2000 SP4, XP SP2 and SP3, Se
50RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Excel - OBJ Record Stack Overflow
CVE-2010-0822localwindows24 sep 2010
Stack-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 for Mac, Office 2008 for Mac, and Open XML F
60RIESGO
abrir
Exploit-DBVexDay Proof
WAnewsletter 2.1.2 - SQL Injection
CVE-2010-4940webappsphp23 sep 2010
SQL injection vulnerability in index.php in WAnewsletter 2.1.2 allows remote attackers to execute arbitrary SQL commands
23RIESGO
abrir
Exploit-DB
GeekLog 1.3.8 (filemgmt) - SQL Injection
CVE-2010-4933webappsphp23 sep 2010
SQL injection vulnerability in filemgmt/singlefile.php in Geeklog 1.3.8 allows remote attackers to execute arbitrary SQL
23RIESGO
abrir
Exploit-DBVexDay Proof
Adobe Acrobat Reader and Flash - 'newfunction' Remote Code Execution
CVE-2010-2168dosmultiple23 sep 2010
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbi
28RIESGO
abrir
Exploit-DBVexDay Proof
Adobe Shockwave Director tSAC - Chunk Memory Corruption
CVE-2010-2866doswindows22 sep 2010
Integer signedness error in the DIRAPI module in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to cau
28RIESGO
abrir
anteriorpágina 347 / 815siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.