Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

78.958exploits catalogados
36.206CVEs con explotación pública
24.695probados en laboratorio
19.066 exploits
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - 'bpf' Heap Overflow
CVE-2017-2482dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.2 (16C67) - Memory Disclosure Due to Lack of Bounds Checking in AppleIntelCapriController::getDisplayPipeCapability
CVE-2017-2489dosmacos04 abr 2017
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Intel Graph
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - Double-Free Due to Bad Locking in fsevents Device
CVE-2017-2490localmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - Bad Locking in necp_open Use-After-Free
CVE-2017-2478dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'FormSubmission::create' Use-After-Free
CVE-2017-2460dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.2 (16C67) - 'AppleIntelCapriController::GetLinkConfig' Code Execution Due to Lack of Bounds Checking
CVE-2017-2443dosmacos04 abr 2017
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Intel Graph
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.3 (16D32) - Use-After-Free Due to Double-Release in posix_spawn
CVE-2017-2472dosmacos04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'WebCore::toJS' Use-After-Free
CVE-2017-2476dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
Broadcom Wi-Fi SoC - Heap Overflow 'wlc_tdls_cal_mic_chk' Due to Large RSN IE in TDLS Setup Confirm Frame
CVE-2017-0561doshardware04 abr 2017
A remote code execution vulnerability in the Broadcom Wi-Fi firmware could enable a remote attacker to execute arbitrary
28RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - SIOCGIFORDER Socket ioctl Off-by-One Memory Corruption
CVE-2017-2474dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Webkit - 'JSCallbackData' Universal Cross-Site Scripting
CVE-2017-2442webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issu
23RIESGO
abrir
Exploit-DBVexDay Proof
Broadcom Wi-Fi SoC - TDLS Teardown Request Remote Heap Overflow
CVE-2017-0561remotehardware04 abr 2017
A remote code execution vulnerability in the Broadcom Wi-Fi firmware could enable a remote attacker to execute arbitrary
28RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'RenderLayer' Use-After-Free
CVE-2017-2455dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - SIOCSIFORDER Socket ioctl Memory Corruption Due to Bad Bounds Checking
CVE-2017-2473dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit 10.0.2 (12602.3.12.0.1_ r210800) - 'constructJSReadableStreamDefaultReader' Type Confusion
CVE-2017-2457webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issu
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit 10.0.2(12602.3.12.0.1) - 'Frame::setDocument (1)' Universal Cross-Site Scripting
CVE-2017-2364webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. The
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'ComposedTreeIterator::traverseNextInShadowTree' Use-After-Free
CVE-2017-2466dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
Broadcom Wi-Fi SoC - 'dhd_handle_swc_evt' Heap Overflow
CVE-2017-0569remotehardware04 abr 2017
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execu
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.3 (16D32) - 'audit_pipe_open' Off-by-One Memory Corruption
CVE-2017-2483dosmacos04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Webkit - Universal Cross-Site Scripting by Accessing a Named Property from an Unloaded Window
CVE-2017-2367webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit - Negative-Size memmove in HTMLFormElement
CVE-2017-2459dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit 10.0.2 - HTMLInputElement Use-After-Free
CVE-2017-2454dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'table' Use-After-Free
CVE-2017-2471dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. watchOS
23RIESGO
abrir
Exploit-DBVexDay Proof
Bluecoat ASG 6.6/CAS 1.3 - OS Command Injection (Metasploit)
CVE-2016-9091remotelinux03 abr 2017
Blue Coat Advanced Secure Gateway (ASG) 6.6 before 6.6.5.4 and Content Analysis System (CAS) 1.3 before 1.3.7.4 are susc
28RIESGO
abrir
Exploit-DBVexDay Proof
Bluecoat ASG 6.6/CAS 1.3 - Local Privilege Escalation (Metasploit)
CVE-2016-9091locallinux03 abr 2017
Blue Coat Advanced Secure Gateway (ASG) 6.6 before 6.6.5.4 and Content Analysis System (CAS) 1.3 before 1.3.7.4 are susc
28RIESGO
abrir
Exploit-DBVexDay Proof
Splunk Enterprise - Information Disclosure
CVE-2017-5607webappsmultiple31 mar 2017
Splunk Enterprise 5.0.x before 5.0.18, 6.0.x before 6.0.14, 6.1.x before 6.1.13, 6.2.x before 6.2.13.1, 6.3.x before 6.3
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple macOS/IOS 10.12.2 (16C67) - 'mach_msg' Heap Overflow
CVE-2017-2456dosmultiple30 mar 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RIESGO
abrir
Exploit-DBVexDay Proof
Sync Breeze Enterprise 9.5.16 - 'Import Command' Local Buffer Overflow
CVE-2017-7310localwindows29 mar 2017
A buffer overflow vulnerability in Import Command in SyncBreeze before 10.6, DiskSorter before 10.6, DiskBoss before 8.9
50RIESGO
abrir
Exploit-DBVexDay Proof
Apple Safari - Builtin JavaScript Allows Function.caller to be Used in Strict Mode
CVE-2017-2446dosmultiple27 mar 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RIESGO
abrir
Exploit-DBVexDay Proof
QNAP QTS < 4.2.4 - Domain Privilege Escalation
CVE-2017-5227localhardware27 mar 2017
QNAP QTS before 4.2.4 Build 20170313 allows local users to obtain sensitive Domain Administrator password information by
23RIESGO
abrir

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.