Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
80.184exploits catalogados
37.029CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.476Referência 23.521GitHub PoC 15.321VulnCheck XDB 8970Nuclei 4394Metasploit 3502✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
PHPwebnews 0.1 - 'bukutamu.php' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Endy Kristanto Surat kabar / News Management Online (aka phpwebne
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PHPwebnews 0.1 - 'iklan.php' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Endy Kristanto Surat kabar / News Management Online (aka phpwebne
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Livor 2.5 - 'index.php' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.php in Arizona Dream Livre d'or (livor) 2.5 allows remote attackers to
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Man Command - -H Flag Local Buffer Overflow
Buffer overflow in man and mandb (man-db) 2.4.3 and earlier allows local users to execute arbitrary code via crafted arg
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Wserve HTTP Server 4.6 - Long Directory Name Denial of Service
Buffer overflow in wserve_console.exe in Wserve HTTP Server (whttp) 4.6 allows remote attackers to cause a denial of ser
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
TrueCrypt 4.3 - 'setuid' Local Privilege Escalation
TrueCrypt 4.3, when installed setuid root, allows local users to cause a denial of service (filesystem unavailability) o
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
phpMyNewsletter 0.6.10 - 'customize.php' Remote File Inclusion
PHP remote file inclusion vulnerability in customize.php for phpMyNewsletter 0.6.10 allows remote attackers to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AOL SuperBuddy - ActiveX Control Remote Code Execution (Metasploit)
The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition derefe
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP Mercury Quality Center - Spider90.ocx ProgColor Overflow
Stack-based buffer overflow in the SPIDERLib.Loader ActiveX control (Spider90.ocx) 9.1.0.4353 in TestDirector (TD) for M
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IrfanView 3.99 - Multiple .BMP Denial of Service Vulnerabilities
Buffer overflow in IrfanView 3.99 allows context-dependent attackers to cause a denial of service and possibly execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Gazi Okul Sitesi 2007 - 'Fotokategori.asp' SQL Injection
SQL injection vulnerability in fotokategori.asp in Gazi Okul Sitesi 2007 allows remote attackers to execute arbitrary SQ
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
FastStone Image Viewer 2.9/3.6 - '.bmp' Image Handling Memory Corruption
Integer overflow in FastStone Image Viewer 2.9 allows context-dependent attackers to cause a denial of service and possi
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ACDSee 9.0 Photo Manager - Multiple '.BMP' Denial of Service Vulnerabilities
Integer overflow in ACDSee Photo Manager 9.0 allows context-dependent attackers to cause a denial of service and possibl
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Universal Generator
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Overflow (Hardware DEP)
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP Mercury Quality Center 9.0 build 9.1.0.4352 - SQL Execution
qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment in HP Mercury Quality Center 9.0 build 9.1.0.4352 allows remote authen
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Overflow (Hardware DEP)
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Universal Generator
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Buffer Overflow
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XOOPS Module WF-Section 1.01 - 'articleId' SQL Injection
SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows rem
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PulseAudio 0.9.5 - 'Assert()' Remote Denial of Service
PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LEN
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Frontbase 4.2.7 - (Authenticated) Remote Buffer Overflow (2.2)
Buffer overflow in FrontBase Relational Database Server 4.2.7 and earlier allows remote authenticated users, with privil
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Animated Cursor '.ani' Local Buffer Overflow
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XOOPS Module XFsection 1.07 - 'articleId' Blind SQL Injection
SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows rem
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XOOPS Module Zmagazine 1.0 - 'print.php' SQL Injection
SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows rem
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP - Animated Cursor '.ani' Remote Overflow (2)
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/Vista - Animated Cursor '.ani' Remote Overflow
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP Instant Support - ActiveX Control Driver Check Buffer Overflow
Stack-based buffer overflow in the HPSDDX Class (SDD) ActiveX control in sdd.dll in HP Instant Support - Driver Check be
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/Vista - Animated Cursor '.ani' Remote Overflow
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attack
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP - Animated Cursor '.ani' Remote Overflow (2)
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.