Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

76.496exploits catalogados
34.964CVEs con explotación pública
24.695probados en laboratorio
13.937 exploits
GitHub PoC2
NYCY_homework_&_meeting
CVE-2021-3560HIGHbajo ataque28 jul 2021
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
91RIESGO
abrir
GitHub PoC1
Exploit for CVE-2018-12636
CVE-2018-1263628 jul 2021
The iThemes Security (better-wp-security) plugin before 7.0.3 for WordPress allows SQL Injection (by attackers with Admi
35RIESGO
abrir
GitHub PoC7
HiveNightmare aka SeriousSAM
CVE-2021-36934HIGHbajo ataque27 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC1
An implementation of CVE-2017-12617
CVE-2017-12617HIGHbajo ataque27 jul 2021
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTT
100RIESGO
abrir
GitHub PoC1
0x0D1n/CVE-2021-36934
CVE-2021-36934HIGHbajo ataque26 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC
Exodusro/CVE-2021-3156
CVE-2021-3156HIGHbajo ataque26 jul 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RIESGO
abrir
GitHub PoC3
haidv35/CVE-2021-21972
CVE-2021-21972CRITICALbajo ataqueransomware26 jul 2021
The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor
100RIESGO
abrir
GitHub PoC5
PoC for CVE-2021-36934 Aka HiveNightmare/SeriousSAM written in python3
CVE-2021-36934HIGHbajo ataque25 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC
This PowerShell script will take the mitigation measures for CVE-2021-36934 described by Microsoft and the US CERT team. https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-36934 https://kb.cert.org/vuls/id/506989 USE AT YOUR OWN RISK -- BACKUPS MAY BREAK.
CVE-2021-36934HIGHbajo ataque25 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC1
This Repo is PoC environment of CVE-2014-6271(https://nvd.nist.gov/vuln/detail/cve-2014-6271).
CVE-2014-6271CRITICALbajo ataque24 jul 2021
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RIESGO
abrir
GitHub PoC3
C# PoC for CVE-2021-36934/HiveNightmare/SeriousSAM
CVE-2021-36934HIGHbajo ataque24 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC
Exploit Analysis of The WhatsApp Double-Free Vulnerability (CVE-2019-11932) Using the GEF-GDB Debugger
CVE-2019-1193223 jul 2021
A double free vulnerability in the DDGifSlurp function in decoding.c in the android-gif-drawable library before version
35RIESGO
abrir
GitHub PoC
3t4n/samba-3.0.24-CVE-2007-2447-vunerable-
CVE-2007-244723 jul 2021
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RIESGO
abrir
GitHub PoC3
magichk/cve-2021-22146
CVE-2021-2214622 jul 2021
All versions of Elastic Cloud Enterprise has the Elasticsearch “anonymous” user enabled by default in deployed clusters.
28RIESGO
abrir
GitHub PoC1
idea-oss/laravel-CVE-2021-3129-EXP
CVE-2021-3129CRITICALbajo ataqueransomware22 jul 2021
Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitra
100RIESGO
abrir
GitHub PoC8
Small and dirty PoC for CVE-2021-36934
CVE-2021-36934HIGHbajo ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC35
PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version 1809 or newer
CVE-2021-36934HIGHbajo ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC9
HiveNightmare a.k.a. SeriousSam Local Privilege Escalation in Windows – CVE-2021-36934
CVE-2021-36934HIGHbajo ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC1
A capability to identify and remediate CVE-2021-36934 (HiveNightmare)
CVE-2021-36934HIGHbajo ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC1
CVE-2021-36934 PowerShell Fix
CVE-2021-36934HIGHbajo ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC3
see https://github.com/cube0x0/CVE-2021-1675
CVE-2021-1675HIGHbajo ataqueransomware22 jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC2
Windows Elevation of Privilege Vulnerability (SeriousSAM)
CVE-2021-36934HIGHbajo ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC1
CVE-2021-36934 PowerShell scripts
CVE-2021-36934HIGHbajo ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC5
Detection and Mitigation script for CVE-2021-36934 (HiveNightmare aka. SeriousSam)
CVE-2021-36934HIGHbajo ataque21 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC9
Fix for the CVE-2021-36934
CVE-2021-36934HIGHbajo ataque21 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC1
Winter3un/CVE-2021-1675
CVE-2021-1675HIGHbajo ataqueransomware20 jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC210
Pure Nim implementation for exploiting CVE-2021-36934, the SeriousSAM local privilege escalation
CVE-2021-36934HIGHbajo ataque20 jul 2021
Windows Elevation of Privilege Vulnerability
98RIESGO
abrir
GitHub PoC
h3x0v3rl0rd/CVE-2019-16278
CVE-2019-16278CRITICALbajo ataque19 jul 2021
Directory Traversal in the function http_verify in nostromo nhttpd through 1.9.6 allows an attacker to achieve remote co
100RIESGO
abrir
GitHub PoC
zha0/Microsoft-CVE-2021-1675
CVE-2021-1675HIGHbajo ataqueransomware18 jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC3
h3x0v3rl0rd/CVE-2019-9053
CVE-2019-905318 jul 2021
An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve
35RIESGO
abrir
anteriorpágina 364 / 465siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.