Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

80.805exploits catalogados
37.493CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DBVexDay Proof
MyBulletinBoard (MyBB) RC4 - 'action' SQL Injection
CVE-2005-2580webappsphp12 ago 2005
Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 with Security Patch allow remote attackers to
23RIESGO
abrir
Exploit-DBVexDay Proof
Grandstream Budge Tone 101/102 VOIP Phone - Denial of Service
CVE-2005-2581doshardware12 ago 2005
Grandstream BudgeTone 101 and 102 running firmware 1.0.6.7 and possibly earlier versions, allows remote attackers to cau
23RIESGO
abrir
Exploit-DBVexDay Proof
MyBulletinBoard (MyBB) RC4 - 'polloptions' SQL Injection
CVE-2005-2580webappsphp12 ago 2005
Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 with Security Patch allow remote attackers to
23RIESGO
abrir
Exploit-DBVexDay Proof
MDaemon 8.0.3 - IMAPD CRAM-MD5 Authentication Overflow (Metasploit)
CVE-2004-1520remotewindows12 ago 2005
Stack-based buffer overflow in IPSwitch IMail 8.13 allows remote authenticated users to execute arbitrary code via a lon
60RIESGO
abrir
Exploit-DBVexDay Proof
MyBulletinBoard (MyBB) RC4 - 'member.php' Multiple SQL Injections
CVE-2005-2580webappsphp12 ago 2005
Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 with Security Patch allow remote attackers to
23RIESGO
abrir
Exploit-DBVexDay Proof
MyBulletinBoard (MyBB) RC4 - 'Username' SQL Injection
CVE-2005-2580webappsphp12 ago 2005
Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 with Security Patch allow remote attackers to
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - Plug-and-Play Service Remote Overflow (MS05-039)
CVE-2005-1983remotewindows11 ago 2005
Stack-based buffer overflow in the Plug and Play (PnP) service for Microsoft Windows 2000 and Windows XP Service Pack 1
60RIESGO
abrir
Exploit-DBVexDay Proof
Veritas Backup Exec (Windows) - Remote File Access (Metasploit)
CVE-2005-2611remotewindows11 ago 2005
VERITAS Backup Exec for Windows Servers 8.6 through 10.0, Backup Exec for NetWare Servers 9.0 and 9.1, and NetBackup for
60RIESGO
abrir
Exploit-DBVexDay Proof
ezUpload 2.2 - 'customize.php?path' Remote File Inclusion
CVE-2005-2616webappsphp10 ago 2005
Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path
28RIESGO
abrir
Exploit-DBVexDay Proof
PHPTB Topic Board 2.0 - 'index.php?mid' SQL Injection
CVE-2005-2587webappsphp10 ago 2005
SQL injection vulnerability in emailvalidate.php in PHPTB Topic Boards 2.0 allows remote attackers to execute arbitrary
23RIESGO
abrir
Exploit-DBVexDay Proof
Wyse Winterm 1125SE 4.2/4.4 - Remote Denial of Service
CVE-2005-2577dosmultiple10 ago 2005
Wyse Winterm 1125SE running firmware 4.2.09f or 4.4.061f allows remote attackers to cause a denial of service (device cr
23RIESGO
abrir
Exploit-DBVexDay Proof
Gaim AIM/ICQ Protocols - Multiple Vulnerabilities
CVE-2005-2103CRITICALdoswindows10 ago 2005
Buffer overflow in the AIM and ICQ module in Gaim before 1.5.0 allows remote attackers to cause a denial of service (app
53RIESGO
abrir
Exploit-DBVexDay Proof
ezUpload 2.2 - 'form.php?path' Remote File Inclusion
CVE-2005-2616webappsphp10 ago 2005
Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path
28RIESGO
abrir
Exploit-DBVexDay Proof
ezUpload 2.2 - 'index.php?path' Remote File Inclusion
CVE-2005-2616webappsphp10 ago 2005
Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path
28RIESGO
abrir
Exploit-DBVexDay Proof
ezUpload 2.2 - 'initialize.php?path' Remote File Inclusion
CVE-2005-2616webappsphp10 ago 2005
Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path
28RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP SP2 - 'rdpwd.sys' Remote Kernel Denial of Service
CVE-2005-1218doswindows09 ago 2005
The Microsoft Windows kernel in Microsoft Windows 2000 Server, Windows XP, and Windows Server 2003 allows remote attacke
35RIESGO
abrir
Exploit-DBVexDay Proof
Apple Safari 1.3 Web Browser - JavaScript Invalid Address Denial of Service
CVE-2005-2594dososx09 ago 2005
Apple Safari 1.3 (132) on Mac OS X 1.3.9 allows remote attackers to cause a denial of service (crash) via certain Javasc
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer - 'blnmgr.dll' COM Object Remote (MS05-038)
CVE-2005-1988remotewindows09 ago 2005
Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to execute arbitrary code via a web
35RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP SP2 - 'rdpwd.sys' Remote Kernel Denial of Service
CVE-2005-2303doswindows09 ago 2005
20RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer - 'blnmgr.dll' COM Object Remote (MS05-038)
CVE-2005-1990remotewindows09 ago 2005
Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to cause a denial of service (application crash) and possibl
35RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer - 'blnmgr.dll' COM Object Remote (MS05-038)
CVE-2005-1989remotewindows09 ago 2005
Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to obtain information and possibly
35RIESGO
abrir
Exploit-DBVexDay Proof
Flatnuke 2.5.5 - Remote Code Execution
CVE-2005-2540webappsphp08 ago 2005
CRLF injection vulnerability in FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to execute arbitrar
23RIESGO
abrir
Exploit-DBVexDay Proof
Dvbbs 7.1/8.2 - 'dispuser.asp?name' Cross-Site Scripting
CVE-2005-2588webappsasp08 ago 2005
Multiple cross-site scripting (XSS) vulnerabilities in DVBBS 7.1 SP2 and earlier allow remote attackers to inject arbitr
23RIESGO
abrir
Exploit-DBVexDay Proof
Gravity Board X 1.1 - Login SQL Injection
CVE-2005-2562webappsphp08 ago 2005
SQL injection vulnerability in Gravity Board X (GBX) 1.1 allows remote attackers to execute arbitrary SQL commands and b
23RIESGO
abrir
Exploit-DBVexDay Proof
FunkBoard 0.66 - 'profile.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2005-2569webappsphp08 ago 2005
Multiple cross-site scripting (XSS) vulnerabilities in FunkBoard 0.66CF, and possibly earlier versions, allow remote att
23RIESGO
abrir
Exploit-DBVexDay Proof
PHP Lite Calendar Express 2.2 - 'auth.php?cid' SQL Injection
CVE-2007-3627webappsphp08 ago 2005
Multiple SQL injection vulnerabilities in PHP Lite Calendar Express 2.2 allow remote attackers to execute arbitrary SQL
23RIESGO
abrir
Exploit-DBVexDay Proof
FunkBoard 0.66 - 'newtopic.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2005-2569webappsphp08 ago 2005
Multiple cross-site scripting (XSS) vulnerabilities in FunkBoard 0.66CF, and possibly earlier versions, allow remote att
23RIESGO
abrir
Exploit-DBVexDay Proof
Dvbbs 7.1/8.2 - 'boardhelp.asp' Multiple Cross-Site Scripting Vulnerabilities
CVE-2005-2588webappsasp08 ago 2005
Multiple cross-site scripting (XSS) vulnerabilities in DVBBS 7.1 SP2 and earlier allow remote attackers to inject arbitr
23RIESGO
abrir
Exploit-DBVexDay Proof
FunkBoard 0.66 - 'register.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2005-2569webappsphp08 ago 2005
Multiple cross-site scripting (XSS) vulnerabilities in FunkBoard 0.66CF, and possibly earlier versions, allow remote att
23RIESGO
abrir
Exploit-DBVexDay Proof
FunkBoard 0.66 - 'editpost.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2005-2569webappsphp08 ago 2005
Multiple cross-site scripting (XSS) vulnerabilities in FunkBoard 0.66CF, and possibly earlier versions, allow remote att
23RIESGO
abrir
anteriorpágina 477 / 824siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.