Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.064exploits catalogados
37.667CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.482Referência 24.044GitHub PoC 15.521VulnCheck XDB 9080Nuclei 4432Metasploit 3505✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
Essentia Web Server 2.1 - 'URL' Remote Buffer Overflow
Stack-based buffer overflow in Essentia Web Server 2.15 for Windows allows remote attackers to execute arbitrary code vi
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Essentia Web Server 2.1 - 'URL' Remote Buffer Overflow
Buffer overflow in Essentia Web Server 2.1 allows remote attackers to cause a denial of service, and possibly execute ar
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
eXtremail 1.5.x (Linux) - Remote Format Strings
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privile
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Adobe Unix Acrobat Reader 4.0/5.0 - WWWLaunchNetscape Buffer Overflow
Buffer overflow in the WWWLaunchNetscape function of Adobe Acrobat Reader (acroread) 5.0.7 and earlier allows remote att
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ezbounce 1.0/1.5 - Format String
Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sess
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Media Services - Remote (MS03-022)
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
InterSystems Cache 4.1.15/5.0.x - Insecure Default Permissions
Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privil
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Kerio MailServer 5.6.3 - Remote Buffer Overflow
Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and po
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
FoxWeb 2.5 - PATH_INFO Remote Buffer Overrun
Buffer overflow in (1) foxweb.dll and (2) foxweb.exe of Foxweb 2.5 allows remote attackers to execute arbitrary code via
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
methane IRCd 0.1.1 - Remote Format String
Format string vulnerability in (1) Bahamut IRCd 1.4.35 and earlier, and other IRC daemons based on Bahamut including (2)
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4 - SUID 'execve()' System Call Race Condition Executable File Read
A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/2000 - Media Services 'nsiislog.dll' Remote Buffer Overflow
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Alt-N WebAdmin 2.0.x - 'USER' Remote Buffer Overflow (1)
Buffer overflow in WebAdmin.exe for WebAdmin allows remote attackers to execute arbitrary code via an HTTP request to We
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Gkrellmd 2.1 - Remote Buffer Overflow (2)
Buffer overflow in gkrellmd for gkrellm 2.1.x before 2.1.14 may allow remote attackers to execute arbitrary code.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Gkrellmd 2.1 - Remote Buffer Overflow (1)
Buffer overflow in gkrellmd for gkrellm 2.1.x before 2.1.14 may allow remote attackers to execute arbitrary code.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Alt-N WebAdmin 2.0.x - 'USER' Remote Buffer Overflow (2)
Buffer overflow in WebAdmin.exe for WebAdmin allows remote attackers to execute arbitrary code via an HTTP request to We
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - HTML Converter HR Align Buffer Overflow
Buffer overflow in the HTML Converter (HTML32.cnv) on various Windows operating systems allows remote attackers to cause
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XMB Forum 1.8 - 'buddy.php?action' Cross-Site Scripting
Cross-site scripting (XSS) vulnerabilities in XMB Forum 1.8 Partagium allow remote attackers to insert arbitrary script
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XMB Forum 1.8 - 'member.php?member' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in member.php of XMBforum XMB 1.8.x (aka Partagium) allows remote attackers to
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Symantec Security Check RuFSI - ActiveX Control Buffer Overflow
Buffer overflow in the "RuFSI Utility Class" ActiveX control (aka "RuFSI Registry Information Class"), as used for the S
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Yahoo Messenger 5.5 - 'DSR-ducky.c' Remote Overflow
Buffer overflows in Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary code via a ymsg
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XMB Forum 1.8 - 'member.php' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in member.php of XMBforum XMB 1.8.x (aka Partagium) allows remote attackers to
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
phpBB 2.0.5 - SQL Injection Password Disclosure
SQL injection vulnerability in viewtopic.php for phpBB 2.0.5 and earlier allows remote attackers to steal password hashe
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Tutos 1.1 - File_New Arbitrary File Upload
TUTOS 1.1 allows remote attackers to execute arbitrary code by uploading the code using file_new.php, then directly acce
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Tutos 1.1 - 'File_Select.php' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in TUTOS 1.1 allow remote attackers to insert arbitrary web script,
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.2.x/2.4.x - '/proc' Filesystem Information Disclosure
The /proc filesystem in Linux allows local users to obtain sensitive information by opening various entries in /proc/sel
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ProFTPd 1.2.9 RC1 - 'mod_sql' SQL Injection
SQL injection vulnerability in the PostgreSQL authentication module (mod_sql_postgres) for ProFTPD before 1.2.9rc1 allow
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Kerio MailServer 5.6.3 list Module - Overflow
Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and po
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Kerio MailServer 5.6.3 - Web Mail DO_MAP Module Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Kerio MailServer 5.6.3 allow remote attackers to insert arbitrary
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Kerio MailServer 5.6.3 subscribe Module - Overflow
Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and po
28RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.