Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
77.533exploits catalogados
35.607CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.455Referência 22.407GitHub PoC 14.247VulnCheck XDB 8663Nuclei 4287Metasploit 3474✓ solo verificadosrecientespopularesriesgo
77.449 exploits
GitHub PoC
CVE-2023-23397 Remediation Script (Powershell)
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 7
Generates meeting requests taking advantage of CVE-2023-23397. This requires the outlook thick client to send.
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 6
Exploit POC for CVE-2023-23397
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 4
Python script to create a message with the vulenrability properties set
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 346
api0cradle/CVE-2023-23397-POC-Powershell
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 39
Simple PoC in PowerShell for CVE-2023-23397
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC
Automate JWT Exploit (CVE-2018-0114)
A vulnerability in the Cisco node-jose open source library before 0.11.0 could allow an unauthenticated, remote attacker
35RIESGO
abrir ↗GitHub PoC★ 7
FortiOS buffer overflow vulnerability
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 through 7.2.2, 7.0.0 through 7.0.8, 6.4.0
100RIESGO
abrir ↗GitHub PoC★ 1
j0eyv/CVE-2023-23397
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 3
CVE-2023-23397 - Microsoft Outlook Vulnerability
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗VulnCheck XDB
remote-with-credentials
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗VulnCheck XDB
initial-access
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 through 7.2.2, 7.0.0 through 7.0.8, 6.4.0
100RIESGO
abrir ↗VulnCheck XDB
initial-access
Windows Network File System Remote Code Execution Vulnerability
70RIESGO
abrir ↗GitHub PoC★ 2
Proof of concept exploit code for CVE-2020-7388, an unauthenticated RCE as SYSTEM on Sage X3's AdxDSrv Service
Sage X3 AdxAdmin Unauthenticated Command Execution Bypass by Spoofing
75RIESGO
abrir ↗GitHub PoC★ 159
Exploit for the CVE-2023-23397
Microsoft Outlook Elevation of Privilege Vulnerability
100RIESGO
abrir ↗GitHub PoC★ 15
Windows Network File System Remote exploit for CVE-2022-30136
Windows Network File System Remote Code Execution Vulnerability
70RIESGO
abrir ↗VulnCheck XDB
initial-access
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RIESGO
abrir ↗GitHub PoC★ 1
Implementation of FOLLINA-CVE-2022-30190
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RIESGO
abrir ↗VulnCheck XDB
local
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RIESGO
abrir ↗GitHub PoC
Batch scanning site.
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Path Traversal Vulnerability
85RIESGO
abrir ↗GitHub PoC★ 3
An educational Proof of Concept for the Log4j Vulnerability (CVE-2021-44228) in Minecraft
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RIESGO
abrir ↗VulnCheck XDB
initial-access
Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults
60RIESGO
abrir ↗Metasploit600
Adobe ColdFusion Unauthenticated Remote Code Execution
Adobe ColdFusion Improper Access Control Arbitrary code execution
100RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.