Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
80.184exploits catalogados
37.029CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.476Referência 23.521GitHub PoC 15.321VulnCheck XDB 8970Nuclei 4394Metasploit 3502✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Language.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'IssuePublish.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Event.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'DatabaseObject.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Country.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ArticlePublish.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ArticleData.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ArticleComment.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ArticleAttachment.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'article.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - '/implementation/Management/db_connect.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP Tru64 5.0.1 - DOP Command Privilege Escalation
Unspecified vulnerability in dop in HP Tru64 UNIX 5.1B-4, 5.1B-3, and 5.1A PK6 allows local users to gain privileges via
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'image.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ArticleIndex.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ArticleImage.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SmartCode VNC Manager 3.6 - 'scvncctrl.dll' Denial of Service
Heap-based buffer overflow in the ConnectAsyncEx function in VNC Viewer ActiveX control (scvncctrl.dll) in the SmartCode
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Alias.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Section.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Advanced Guestbook 2.4.2 - 'picture.php' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in picture.php in Advanced Guestbook 2.4.2 allows remote attackers to inject ar
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5.0.1 - 'TBLinf32.dll' ActiveX Control Remote Code Execution
The tblinf32.dll (aka vstlbinf.dll) ActiveX control for Internet Explorer 5.01, 6 SP1, and 7 uses an incorrect IObjectsa
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
FipsCMS 2.1 - 'pid' SQL Injection
SQL injection vulnerability in index.asp in fipsCMS 2.1 allows remote attackers to execute arbitrary SQL commands via th
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SunShop Shopping Cart 4.0 - 'index.php' Multiple SQL Injections
SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 allows remote attackers to execute
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SunShop Shopping Cart 4.0 - 'index.php?l' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 allows remote attacke
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PHP PEAR 1.5.3 - INSTALL-AS Attribute Arbitrary File Overwrite
Directory traversal vulnerability in the installer in PEAR 1.0 through 1.5.3 allows user-assisted remote attackers to ov
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OTRS 2.0.4 - index.pl Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.pl in Open Ticket Request System (OTRS) 2.0.x allows remote attackers
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Trend Micro ServerProtect 5.58 - 'SpntSvc.exe' Remote Stack Buffer Overflow
Multiple stack-based buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2 Build 1174 allow remote
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ELinks Relative 0.10.6/011.1 - Path Arbitrary Code Execution
Untrusted search path vulnerability in the add_filename_to_string function in intl/gettext/loadmsgcat.c for Elinks 0.11.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Versalsoft HTTP File Uploader - ActiveX 6.36 AddFile Remote Denial of Service
Buffer overflow in the AddFile function in VersalSoft HTTP File Upload ActiveX control (UFileUploaderD.dll) allows remot
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Net Portal Dynamic System (NPDS) 5.10 - Remote Code Execution (2)
Multiple SQL injection vulnerabilities in mainfile.php in NPDS 5.10 and earlier allow remote authenticated users to exec
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft SharePoint Server 3.0 - Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Microsoft Windows SharePoint Services 3.0 for Windows Server 2003
35RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.