Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

77.058exploits catalogados
35.300CVEs con explotación pública
24.695probados en laboratorio
77.058 exploits
GitHub PoC
Finding Palo Alto devices vulnerable to CVE-2024-3400.
CVE-2024-3400CRITICALbajo ataqueransomware19 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
VulnCheck XDB
local
CVE-2022-0847HIGHbajo ataque19 abr 2024
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
ASG-CASTLE/CVE-2021-4034
CVE-2021-4034HIGHbajo ataque19 abr 2024
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RIESGO
abrir
GitHub PoC2
Proof of concept for CVE-2022-0847
CVE-2022-0847HIGHbajo ataque19 abr 2024
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
ASG-CASTLE/CVE-2023-27350
CVE-2023-27350CRITICALbajo ataqueransomware19 abr 2024
This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Bui
100RIESGO
abrir
GitHub PoC
Whiteh4tWolf/CVE-2024-1651-PoC
CVE-2024-1651CRITICAL19 abr 2024
Torrentpier 2.4.1 - RCE
60RIESGO
abrir
GitHub PoC
sxyrxyy/CVE-2024-3400-Check
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC
Simple POC for CVE-2024-3400
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC2
Python script to check Palo Alto firewalls for CVE-2024-3400 exploit attempts
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC
CVE-2024-3400 POC written in Rust and Python
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC5
XZ Utils CVE-2024-3094 POC for Kubernetes
CVE-2024-3094CRITICAL18 abr 2024
Xz: malicious code in distributed source
70RIESGO
abrir
GitHub PoC
Simple Python code to check for arbitrary uploading for PaloAlto CVE-2024-3400
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC
Script that exploits the vulnerability of the ProFTPd 1.3.5 service with CVE-2015-3306
CVE-2015-330618 abr 2024
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and
60RIESGO
abrir
GitHub PoC
EDL for IPs attacking customers with CVE-2024-3400
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC6
schooldropout1337/CVE-2024-3400
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC
Script that exploits the vulnerability that allows establishing a backdoor in the UnrealIRCd service with CVE-2010-2075
CVE-2010-207518 abr 2024
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally
60RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-0305MEDIUM18 abr 2024
Guangzhou Yingke Electronic Technology Ncast Guest Login IPSetup.php information disclosure
60RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-3400CRITICALbajo ataqueransomware18 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
GitHub PoC
Script that exploits the vulnerability that allows remote code execution in Ruby 2.3.8 ​​with CVE-2016-2098
CVE-2016-209818 abr 2024
Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to e
60RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-25194HIGH17 abr 2024
Apache Kafka Connect API: Possible RCE/Denial of service attack via SASL JAAS JndiLoginModule configuration using Kafka Connect
78RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2023-46604CRITICALbajo ataqueransomware17 abr 2024
Apache ActiveMQ, Apache ActiveMQ Legacy OpenWire Module: Unbounded deserialization causes ActiveMQ to be vulnerable to a remote code execution (RCE) attack
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-3400CRITICALbajo ataqueransomware17 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-3400CRITICALbajo ataqueransomware17 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-3400CRITICALbajo ataqueransomware17 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2024-3400CRITICALbajo ataqueransomware17 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
VulnCheck XDB
local
CVE-2024-21338HIGHbajo ataqueransomware17 abr 2024
Windows Kernel Elevation of Privilege Vulnerability
83RIESGO
abrir
GitHub PoC2
Fork of https://github.com/hakaioffsec/CVE-2024-21338
CVE-2024-21338HIGHbajo ataqueransomware17 abr 2024
Windows Kernel Elevation of Privilege Vulnerability
83RIESGO
abrir
GitHub PoC
command injection
CVE-2024-1874CRITICAL17 abr 2024
Command injection via array-ish $command parameter of proc_open()
60RIESGO
abrir
GitHub PoC2
Have we not learnt from HoneyPoC?
CVE-2024-3400CRITICALbajo ataqueransomware17 abr 2024
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
100RIESGO
abrir
anteriorpágina 406 / 2569siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.