Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
76.496exploits catalogados
34.964CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.443Referência 21.899GitHub PoC 13.937VulnCheck XDB 8510Nuclei 4239Metasploit 3468✓ solo verificadosrecientespopularesriesgo
13.937 exploits
GitHub PoC★ 1
CVE-2021-22005_PoC
The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with netw
100RIESGO
abrir ↗GitHub PoC★ 2
FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This can lead to Pre-Auth Remote Code Execution.
FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This ca
60RIESGO
abrir ↗GitHub PoC★ 3
CVE-2019-19781
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. Th
100RIESGO
abrir ↗GitHub PoC★ 19
Windows HTTP协议栈远程代码执行漏洞 CVE-2021-31166
HTTP Protocol Stack Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC
Sudo heap-based buffer overflow privilege escalation commands and mitigations.
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RIESGO
abrir ↗GitHub PoC★ 1
Quick and dirty CVE-2021-38647 (Omigod) exploit written in Go.
Open Management Infrastructure Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 1
AmesianX/CVE-2021-21220
Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to po
98RIESGO
abrir ↗GitHub PoC★ 10
C# PrintNightmare (CVE-2021-1675)
Windows Print Spooler Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 209
Python implementation for PrintNightmare (CVE-2021-1675 / CVE-2021-34527)
Windows Print Spooler Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 13
CVE-2021-22005批量验证python脚本
The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with netw
100RIESGO
abrir ↗GitHub PoC★ 1
Python script to obtain RCE on Mantis Bug Tracker prior to version 1.2.x Check CVE-2008-4687 for additional information
manage_proj_page.php in Mantis before 1.1.4 allows remote authenticated users to execute arbitrary code via a sort param
50RIESGO
abrir ↗GitHub PoC★ 17
CVE-2021-3156 - sudo exploit for ubuntu 18.04 & 20.04
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RIESGO
abrir ↗GitHub PoC★ 1
CVE-2021-38647 is an unauthenticated RCE vulnerability effecting the OMI agent as root.
Open Management Infrastructure Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 1
BeneficialCode/CVE-2021-1732
Windows Win32k Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 5
CVE-2021-33739 PoC Analysis
Microsoft DWM Core Library Elevation of Privilege Vulnerability
71RIESGO
abrir ↗GitHub PoC★ 1
Windows Kernel Registry Elevation of Privilege Vulnerability
An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory
23RIESGO
abrir ↗GitHub PoC
CVE-2021-22005
The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with netw
100RIESGO
abrir ↗GitHub PoC
CVE 2021 40444 Windows Exploit services.dll
Microsoft MSHTML Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 1
pisut4152/Sigma-Rule-for-CVE-2021-22005-scanning-activity
The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with netw
100RIESGO
abrir ↗GitHub PoC★ 8
1ZRR4H/CVE-2021-22005
The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with netw
100RIESGO
abrir ↗GitHub PoC
https://github.com/corelight/CVE-2021-38647 without the bloat
Open Management Infrastructure Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 68
CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD
Open Management Infrastructure Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 3
OMIGod / CVE-2021-38647 POC and Demo environment
Open Management Infrastructure Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC
Modifed ver of the original exploit to save some times on password reseting for unprivileged user
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenti
60RIESGO
abrir ↗GitHub PoC★ 1
Converted Metasploit exploits for Adobe Flash vulnerabilities CVE-2015-3090, CVE-2015-3105, CVE-2015-5119, and CVE-2015-5122 to a Python3 script.
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460
60RIESGO
abrir ↗GitHub PoC★ 102
Modified code so that we don´t need to rely on CAB archives
Microsoft MSHTML Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 11
Scan for evidence of CVE-2021-30860 (FORCEDENTRY) exploit
An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2021-005 Catali
93RIESGO
abrir ↗GitHub PoC★ 3
[CVE-2021-26084] Confluence pre-auth RCE test script
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RIESGO
abrir ↗GitHub PoC★ 1
A Vagrant VM test lab to learn about CVE-2021-38647 in the Open Management Infrastructure agent (aka "omigod").
Open Management Infrastructure Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 2
CVE-2021-40539 POC
Zoho ManageEngine ADSelfService Plus version 6113 and prior is vulnerable to REST API authentication bypass with resulta
100RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.