Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

77.020exploits catalogados
35.276CVEs con explotación pública
24.695probados en laboratorio
77.020 exploits
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware04 jun 2024
Information disclosure
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-21683HIGH04 jun 2024
This High severity RCE (Remote Code Execution) vulnerability was introduced in version 5.2 of Confluence Data Center and
78RIESGO
abrir
VulnCheck XDB
local
CVE-2024-2961HIGH04 jun 2024
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4
78RIESGO
abrir
GitHub PoC1
CVE-2023-51518: Preauthenticated Java Deserialization via JMX in Apache James
CVE-2023-51518CRITICAL03 jun 2024
Apache James server: Privilege escalation via JMX pre-authentication deserialisation
48RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-32113CRITICALbajo ataque03 jun 2024
Apache OFBiz: Path traversal leading to RCE
100RIESGO
abrir
VulnCheck XDB
local
CVE-2024-2961HIGH03 jun 2024
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4
78RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
GitHub PoC27
Apache OFBIZ Path traversal leading to RCE POC[CVE-2024-32113 & CVE-2024-36104]
CVE-2024-32113CRITICALbajo ataque03 jun 2024
Apache OFBiz: Path traversal leading to RCE
100RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
GitHub PoC79
Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)
CVE-2024-4358CRITICALbajo ataque03 jun 2024
Registration Authentication Bypass Vulnerability
100RIESGO
abrir
GitHub PoC11
0nin0hanz0/CVE-2024-24919-PoC
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
GitHub PoC1
birdlex/cve-2024-24919-checker
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
GitHub PoC3
CVE-2024-24919 Exploit and PoC - Critical LFI for Remote Access VPN or Mobile Access.
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
GitHub PoC
Exploit created by nu11secur1ty (https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2022-37706)
CVE-2022-37706HIGH03 jun 2024
enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and th
56RIESGO
abrir
GitHub PoC2
kevcooper/CVE-2024-1086-checker
CVE-2024-1086HIGHbajo ataqueransomware03 jun 2024
Use-after-free in Linux kernel's netfilter: nf_tables component
76RIESGO
abrir
GitHub PoC4
Nmap script to check vulnerability CVE-2024-24919
CVE-2024-24919HIGHbajo ataqueransomware03 jun 2024
Information disclosure
100RIESGO
abrir
Metasploit0
macOS PackageKit ZSH Environment Privilege Escalation
CVE-2024-27822HIGH03 jun 2024
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sonoma 14.5. An app may be able to
36RIESGO
abrir
GitHub PoC1
New exploit for Apache APISIX v2.12.1 - Remote code execution (RCE)
CVE-2022-24112CRITICALbajo ataque03 jun 2024
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RIESGO
abrir
GitHub PoC3
Sonatype Nexus Repository Manager 3 (LFI)
CVE-2024-4956HIGH03 jun 2024
Nexus Repository 3 - Path Traversal
61RIESGO
abrir
GitHub PoC19
Apache HugeGraph Server Unauthenticated RCE - CVE-2024-27348 Proof of concept Exploit
CVE-2024-27348CRITICALbajo ataque03 jun 2024
Apache HugeGraph-Server: Command execution in gremlin
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-4358CRITICALbajo ataque03 jun 2024
Registration Authentication Bypass Vulnerability
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-27348CRITICALbajo ataque03 jun 2024
Apache HugeGraph-Server: Command execution in gremlin
100RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2021-41773HIGHbajo ataqueransomware02 jun 2024
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RIESGO
abrir
GitHub PoC1
phpMyAdmin <4.9.0 - Cross-Site Request Forgery
CVE-2019-1261602 jun 2024
An issue was discovered in phpMyAdmin before 4.9.0. A vulnerability was found that allows an attacker to trigger a CSRF
28RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware02 jun 2024
Information disclosure
100RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware02 jun 2024
Information disclosure
100RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware02 jun 2024
Information disclosure
100RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2024-24919HIGHbajo ataqueransomware02 jun 2024
Information disclosure
100RIESGO
abrir
anteriorpágina 390 / 2568siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.