Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.003exploits catalogados
37.620CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.482Referência 24.011GitHub PoC 15.501VulnCheck XDB 9077Nuclei 4427Metasploit 3505✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (2)
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (1)
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Outlook Express 6.0 - MHTML Forced File Execution (2)
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Outlook Express 6.0 - '.MHTML' Forced File Execution (1)
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Monit 1.4/2.x/3/4 - 'HTTP Request' Buffer Overrun
Stack-based buffer overflow in Monit 1.4 to 4.1 allows remote attackers to execute arbitrary code via a long HTTP reques
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
FreeRadius 0.x/1.1.x - Tag Field Heap Corruption
rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADI
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache mod_gzip (with debug_mode) 1.2.26.1a - Remote Overflow
Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions,
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IA WebMail Server 3.x - 'iaregdll.dll 1.0.0.5' Remote Overflow
Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBSD 2.x < 3.3 - 'exec_ibcs2_coff_prep_zmagic()' kernel stack overflow
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - ListBox/ComboBox Control Local (MS03-045)
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary co
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Workstation Service WKSSVC Remote (MS03-049)
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers t
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft FrontPage Server Extensions - 'fp30reg.dll' (MS03-051)
Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GNU Zebra 0.9x / Quagga 0.96 - Remote Denial of Service
The vty layer in Quagga before 0.96.4, and Zebra 0.93b and earlier, does not verify that sub-negotiation is taking place
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000 - Workstation Service Overflow (MS03-049)
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers t
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 5.x/6.0 - Spoofed Attachment Line Denial of Service
Buffer overflow in Eudora 5.2.1 allows remote attackers to cause a denial of service (crash and failed restart) and poss
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Wireless Tools 26 (IWConfig) - ARGV Local Command Line Buffer Overflow (2)
Buffer overflow in iwconfig, when installed setuid, allows local users to execute arbitrary code via a long OUT environm
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Epic 1.0.1/1.0.x - CTCP Nickname Server Message Buffer Overrun
EPIC IRC Client (EPIC4) pre2.002, pre2.003, and possibly later versions, allows remote malicious IRC servers to cause a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Hylafax 4.1.x - HFaxD Format String
Format string vulnerability in hfaxd for Hylafax 4.1.7 and earlier allows remote attackers to execute arbitrary code.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBSD - 'ibcs2_exec' Kernel Code Execution
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000 - RPC Remote Non Exec Memory
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 - 'db2stop' Format String Arbitrary Code Execution
Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 - 'db2stop' Command Line Argument Local Overflow
Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long com
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 - 'db2start' Command Line Argument Local Overflow
Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long com
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 - 'db2start' Format String Arbitrary Code Execution
Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 - 'db2govd' Format String Arbitrary Code Execution
Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 - 'db2govd' Command Line Argument Local Overflow
Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long com
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OpenAutoClassifieds 1.0 - 'Listing' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in friendmail.php in OpenAutoClassifieds 1.0 allows remote attackers to inject
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
John Beatty Easy PHP Photo Album 1.0 - 'dir' HTML Injection
Cross-site scripting (XSS) vulnerability in John Beatty Easy PHP Photo Album 1.0 allows remote attackers to inject arbit
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
NIPrint LPD-LPR Print Server 4.10 - Remote Overflow
Help in NIPrint LPD-LPR Print Server 4.10 and earlier executes Windows Explorer with SYSTEM privileges, which allows loc
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GNU CFEngine 2.0.x - CFServD Transaction Packet Buffer Overrun (2)
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.