Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.064exploits catalogados
37.667CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.482Referência 24.044GitHub PoC 15.521VulnCheck XDB 9080Nuclei 4432Metasploit 3505✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
PHP 4.x - Transparent Session ID Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_tra
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AIX 4.3.3/5.x - Getlvcb Command Line Argument Buffer Overflow (1)
Multiple buffer overflows in LVM for AIX 5.1 and 5.2 allow local users to gain privileges via the (1) putlvcb or (2) get
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AIX 4.3.3/5.1 - Invscoutd Symbolic Link
The Inventory Scout daemon (invscoutd) 1.3.0.0 and 2.0.2 for AIX 4.3.3 and 5.1 allows local users to gain privileges via
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - WebDAV PROPFIND / SEARCH Method Denial of Service
Microsoft Internet Information Services (IIS) 5.0 and 5.1 allows remote attackers to cause a denial of service via a lon
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Bandmin 1.4 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.cgi for Bandmin 1.4 allows remote attackers to insert arbitrary HTML o
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Axis Network Camera 2.x - HTTP Authentication Bypass
The web-based administration capability for various Axis Network Camera products allows remote attackers to bypass acces
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun ONE Application Server 7.0 - Source Disclosure
Sun ONE Application Server 7.0 for Windows 2000/XP allows remote attackers to obtain JSP source code via a request that
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun ONE Application Server 7.0 - Error Message Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in the webapps-simple sample application for (1) Sun ONE Application Server 7.0
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Upclient 5.0 b7 - Command Line Argument Buffer Overflow
Buffer overflow in Uptime Client (UpClient) 5.0b7, and possibly other versions, allows local users to gain privileges vi
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Batalla Naval 1.0 4 - Remote Buffer Overflow (2)
Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Batalla Naval 1.0 4 - Remote Buffer Overflow (1)
Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Vignette 4.x/5.0 - Memory Disclosure
Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to r
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BRS Webweaver 1.0 4 - POST / HEAD Denial of Service
Buffer overflow in BRS WebWeaver 1.04 and earlier allows remote attackers to cause a denial of service (crash) and possi
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Vignette 4/5 - Cross-Site Scripting
Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow rem
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Ultimate PHP Board 1.9 - 'admin_iplog.php' Arbitrary PHP Execution
Ultimate PHP Board (UPB) 1.9 allows remote attackers to execute arbitrary PHP code with UPB administrator privileges via
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BLNews 2.1.3 - Remote File Inclusion
objects.inc.php4 in BLNews 2.1.3 allows remote attackers to execute arbitrary PHP code via a Server[path] parameter that
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AIX 4.3/5.1 - diagrpt Arbitrary Privileged Program Execution
diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allow
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IISProtect 2.1/2.2 - Web Administration Interface SQL Injection
SQL injection vulnerability in the web-based administration interface for iisPROTECT 2.2-r4, and possibly earlier versio
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Maelstrom Server 3.0.x - Argument Buffer Overflow (2)
Buffer overflow in Maelstrom 3.0.6, 3.0.5, and earlier allows local users to execute arbitrary code via a long -server c
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
UML_NET - Integer Mismanagement Code Execution
uml_net in the kernel-utils package for Red Hat Linux 8.0 has incorrect setuid root privileges, which allows local users
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Prishtina FTP Client 1.x - Remote Denial of Service
Buffer overflow in Prishtina FTP client 1.x allows remote FTP servers to cause a denial of service (crash) and possibly
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple QuickTime/Darwin Streaming MP3Broadcaster - ID3 Tag Handling
Integer overflow in MP3Broadcaster for Apple QuickTime/Darwin Streaming Server 4.1.3 allows remote attackers to cause a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IISProtect 2.1/2.2 - Authentication Bypass
iisPROTECT 2.1 and 2.2 allows remote attackers to bypass authentication via an HTTP request containing URL-encoded chara
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
WsMp3d 0.x - Remote Heap Overflow
Multiple heap-based buffer overflows in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allow remote attackers to execute arbit
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Nessus 2.0.x - LibNASL Arbitrary Code Execution
Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 5.2.1/6.0 - File Attachment Spoofing Variant
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP - 'explorer.exe' Local Buffer Overflow
Buffer overflow in EXPLORER.EXE on Windows XP allows attackers to execute arbitrary code as the XP user via a desktop.in
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
WSMP3 0.0.x - Remote Command Execution
Directory traversal vulnerability in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allows remote attackers to read and execut
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
EJ3 TOPo 2.2 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
Cross-site scripting (XSS) vulnerability in index.php for TOPo 2.2 (2.2.178) allows remote attackers to inject arbitrary
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Maelstrom Server 3.0.x - Argument Buffer Overflow (1)
Buffer overflow in Maelstrom 3.0.6, 3.0.5, and earlier allows local users to execute arbitrary code via a long -server c
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.