Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

76.607exploits catalogados
34.986CVEs con explotación pública
24.695probados en laboratorio
76.607 exploits
GitHub PoC
regreSSHion is a security tool designed to test for vulnerabilities related to CVE-2024-6387, specifically focusing on SSH and remote access exploitation.
CVE-2024-6387HIGH09 jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RIESGO
abrir
GitHub PoC
dgourillon/mitigate-CVE-2024-6387
CVE-2024-6387HIGH09 jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RIESGO
abrir
GitHub PoC
PoC for CVE-2023-4220 - Chamilo LMS - Unauthenticated File Upload in BigUpload
CVE-2023-4220HIGH09 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
GitHub PoC
This Rust Code is designed to check SSH servers for the CVE-2024-6387 vulnerability
CVE-2024-6387HIGH09 jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RIESGO
abrir
GitHub PoC102
This Python script checks for the CVE-2024-6387 vulnerability in OpenSSH servers. It supports multiple IP addresses, URLs, CIDR ranges, and ports. The script can also read addresses from a file.
CVE-2024-6387HIGH09 jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RIESGO
abrir
GitHub PoC
foudadev/CVE-2007-2447
CVE-2007-244709 jul 2024
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH09 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH09 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
VulnCheck XDB
local
CVE-2024-38193HIGHbajo ataque09 jul 2024
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
76RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH08 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-4885CRITICALbajo ataque08 jul 2024
WhatsUp Gold GetFileWithoutZip Directory Traversal Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC17
Exploit for CVE-2024-4885
CVE-2024-4885CRITICALbajo ataque08 jul 2024
WhatsUp Gold GetFileWithoutZip Directory Traversal Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC
This is a exploit for CVE-2007-2447; Vulnerable SMB
CVE-2007-244708 jul 2024
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RIESGO
abrir
GitHub PoC5
This is an Exploit for Unrestricted file upload in big file upload functionality in Chamilo-LMS for this location "/main/inc/lib/javascript/bigupload/inc/bigUpload.php" in Chamilo LMS <= v1.11.24, and Attackers can obtain remote code execution via uploading of web shell.
CVE-2023-4220HIGH08 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
GitHub PoC11
Exploit for CVE-2024-4883
CVE-2024-4883CRITICAL08 jul 2024
WhatsUp Gold WriteDataFile Directory Traversal Remote Code Execution Vulnerability
60RIESGO
abrir
GitHub PoC188
Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (CVE-2024-6387)
CVE-2024-6387HIGH08 jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RIESGO
abrir
GitHub PoC
Chef Inspec profile for checking regreSSHion vulnerability CVE-2024-6387
CVE-2024-6387HIGH08 jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RIESGO
abrir
GitHub PoC4
PIN-based Authentication Bypass vulnerability in Kaiten
CVE-2024-41276CRITICAL08 jul 2024
A vulnerability in Kaiten version 57.131.12 and earlier allows attackers to bypass the PIN code authentication mechanism
48RIESGO
abrir
GitHub PoC
poc for CVE-2024-34102
CVE-2024-34102CRITICALbajo ataque08 jul 2024
XXE can expose crypt key and other secrets granting full admin access
100RIESGO
abrir
GitHub PoC
CosmicSting (CVE-2024-34102) POC / Patch Validator
CVE-2024-34102CRITICALbajo ataque07 jul 2024
XXE can expose crypt key and other secrets granting full admin access
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
GitHub PoC1
Unrestricted file upload in big file upload functionality in `/main/inc/lib/javascript/bigupload/inc/bigUpload.php` in Chamilo LMS <= v1.11.24 allows unauthenticated attackers to perform stored cross-site scripting attacks and obtain remote code execution via uploading of web shell.
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
GitHub PoC5
This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
GitHub PoC
This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
GitHub PoC1
RCE Chamilo 1.11.24
CVE-2023-4220HIGH07 jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RIESGO
abrir
GitHub PoC
YISF 2024 CTF-Web (Directory Traversal via ".tar" file, CVE-2007-4559), easy
CVE-2007-4559CRITICAL07 jul 2024
Directory traversal vulnerability in the (1) extract and (2) extractall functions in the tarfile module in Python allows
53RIESGO
abrir
anteriorpágina 369 / 2554siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.