Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

80.930exploits catalogados
37.572CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DBVexDay Proof
Prozilla 1.3.7.3 - Remote Format String
CVE-2005-0523remotelinux09 feb 2005
Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format
23RIESGO
abrir
Exploit-DBVexDay Proof
DelphiTurk FTP 1.0 - Passwords to Local Users
CVE-2005-0421localwindows09 feb 2005
DelphiTurk FTP 1.0 stores usernames and passwords in the profile.dat file, which allows local users to gain privileges.
23RIESGO
abrir
Exploit-DBVexDay Proof
ELOG 2.5.6 - Remote Shell
CVE-2005-0439remotemultiple09 feb 2005
Buffer overflow in the decode_post function in ELOG before 2.5.7 allows remote attackers to execute arbitrary code via a
28RIESGO
abrir
Exploit-DBVexDay Proof
DelphiTurk CodeBank 3.1 - Local Username and Password Disclosure
CVE-2005-0422localwindows08 feb 2005
DelphiTurk CodeBank (aka KodBank) 3.1 and earlier stores usernames and passwords in the Codebank registry key, which all
23RIESGO
abrir
Exploit-DBVexDay Proof
PHP-Fusion 4.0 - 'Viewthread.php' Information Disclosure
CVE-2005-0345webappsphp08 feb 2005
viewthread.php in php-fusion 4.x does not check the (1) forum_id or (2) forum_cat parameters, which allows remote attack
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX - AppleFileServer Remote Denial of Service
CVE-2005-0340dososx08 feb 2005
Integer signedness error in Apple File Service (AFP Server) allows remote attackers to cause a denial of service (applic
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft MSN Messenger 6.2.0137 - '.png' Remote Buffer Overflow
CVE-2004-0597remotewindows08 feb 2005
Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute a
45RIESGO
abrir
Exploit-DBVexDay Proof
Software602 602 Lan Suite 2004 2004.0.04.1221 - Arbitrary File Upload
CVE-2005-0344remotewindows08 feb 2005
Directory traversal vulnerability in 602LAN SUITE 2004.0.04.1221 allows remote authenticated users to upload and execute
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Outlook 2003 - Web Access Login Form Remote URI redirection
CVE-2005-0420webappsasp07 feb 2005
Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs
28RIESGO
abrir
Exploit-DBVexDay Proof
Setuid perl - 'PerlIO_Debug()' Local Overflow
CVE-2005-0156locallinux07 feb 2005
Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local use
23RIESGO
abrir
Exploit-DBVexDay Proof
Setuid perl - 'PerlIO_Debug()' Root Owned File Creation Privilege Escalation
CVE-2005-0155locallinux07 feb 2005
The PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to create arbitr
23RIESGO
abrir
Exploit-DBVexDay Proof
3CServer 1.1 (FTP Server) - Remote Overflow
CVE-2005-0419remotewindows07 feb 2005
Multiple heap-based buffer overflows in 3Com 3CServer allow remote authenticated users to execute arbitrary code via lon
23RIESGO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX - '.DS_Store' Arbitrary File Overwrite
CVE-2005-0342localosx07 feb 2005
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a har
23RIESGO
abrir
Exploit-DBVexDay Proof
Foxmail 2.0 - 'MAIL FROM:' Denial of Service
CVE-2005-0636doswindows07 feb 2005
Format string vulnerability in Foxmail Server 2.0 allows remote attackers to cause a denial of service (crash) and possi
23RIESGO
abrir
Exploit-DBVexDay Proof
Foxmail 2.0 - 'MAIL FROM:' Denial of Service
CVE-2005-0339doswindows07 feb 2005
Buffer overflow in Foxmail 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code
23RIESGO
abrir
Exploit-DBVexDay Proof
Operator Shell (osh) 1.7-12 - Local Privilege Escalation
CVE-2005-3533locallinux05 feb 2005
Buffer overflow in OSH before 1.7-15 allows local users to execute arbitrary code via a long current working directory a
23RIESGO
abrir
Exploit-DBVexDay Proof
PerlDesk 1.x - SQL Injection
CVE-2005-0343webappscgi05 feb 2005
SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parame
23RIESGO
abrir
Exploit-DBVexDay Proof
Savant Web Server 3.1 (Windows 2003) - Remote Buffer Overflow
CVE-2005-0338remotewindows04 feb 2005
Buffer overflow in Savant Web Server 3.1 allows remote attackers to execute arbitrary code via a long HTTP request.
23RIESGO
abrir
Exploit-DBVexDay Proof
Newspost 2.1 - 'socket_getline()' Remote Buffer Overflow (2)
CVE-2005-0101remotelinux03 feb 2005
Buffer overflow in the socket_getline function in Newspost 2.1.1 and earlier allows remote malicious NNTP servers to exe
28RIESGO
abrir
Exploit-DBVexDay Proof
ngIRCd 0.8.2 - Remote Format String
CVE-2005-0226remotelinux03 feb 2005
Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 5.0 - '.printer' ISAPI Extension Buffer Overflow (3)
CVE-2001-0241remotewindows02 feb 2005
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RIESGO
abrir
Exploit-DBVexDay Proof
Painkiller 1.35 - in-game cd-key alpha-numeric Buffer Overflow (PoC)
CVE-2005-0330doswindows02 feb 2005
Buffer overflow in Painkiller 1.35 and earlier, and possibly other versions before 1.61, allows remote authenticated use
23RIESGO
abrir
Exploit-DBVexDay Proof
PostgreSQL 7.x - Multiple Vulnerabilities
CVE-2005-0245doslinux01 feb 2005
Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute arbitrary code via a large num
28RIESGO
abrir
Exploit-DBVexDay Proof
Newspost 2.0/2.1 - Remote Buffer Overflow
CVE-2005-0101doslinux01 feb 2005
Buffer overflow in the socket_getline function in Newspost 2.1.1 and earlier allows remote malicious NNTP servers to exe
28RIESGO
abrir
Exploit-DBVexDay Proof
Savant Web Server 3.1 - Remote Buffer Overflow (1)
CVE-2005-0338remotewindows01 feb 2005
Buffer overflow in Savant Web Server 3.1 allows remote attackers to execute arbitrary code via a long HTTP request.
23RIESGO
abrir
Exploit-DBVexDay Proof
Xpand Rally 1.0.0.0 (Server/Clients) - Crash
CVE-2005-0325doswindows31 ene 2005
Xpand Rally 1.0.0.0 allows remote attackers or remote malicious game servers to cause a denial of service (application c
23RIESGO
abrir
Exploit-DBVexDay Proof
CitrusDB 0.1/0.2/0.3 Credit Card Data - Remote Information Disclosure
CVE-2005-0229remotemultiple31 ene 2005
CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers
23RIESGO
abrir
Exploit-DBVexDay Proof
ncpfs < 2.2.6 (Gentoo / Linux) - Local Privilege Escalation
CVE-2010-0788locallinux30 ene 2005
ncpfs 2.2.6 allows local users to cause a denial of service, obtain sensitive information, or possibly gain privileges v
23RIESGO
abrir
Exploit-DBVexDay Proof
Vim - 'mch_expand_wildcards()' Heap Buffer Overflow
CVE-2008-3432remotelinux29 ene 2005
Heap-based buffer overflow in the mch_expand_wildcards function in os_unix.c in Vim 6.2 and 6.3 allows user-assisted att
23RIESGO
abrir
Exploit-DBVexDay Proof
IceWarp Web Mail 5.3 - login.html 'Username' Cross-Site Scripting
CVE-2005-0320webappsphp28 ene 2005
Multiple cross-site scripting vulnerabilities in MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 allow remote attack
23RIESGO
abrir
anteriorpágina 503 / 824siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.