Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.192exploits catalogados
37.765CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DBVexDay Proof
QNX 6.1 - 'TimeCreate' Local Denial of Service
CVE-2002-1983dosunix06 nov 2002
The timer implementation in QNX RTOS 6.1.0 allows local users to cause a denial of service (hang) and possibly execute a
23RIESGO
abrir
Exploit-DBVexDay Proof
Northern Solutions Xeneo Web Server 2.1/2.2 - Denial of Service
CVE-2002-1248doswindows04 nov 2002
Northern Solutions Xeneo Web Server 2.1.0.0, 2.0.759.6, and other versions before 2.1.5 allows remote attackers to cause
23RIESGO
abrir
Exploit-DBVexDay Proof
Solaris 2.6/7/8 - 'TTYPROMPT in.telnet' Remote Authentication Bypass
CVE-2001-0797remotesolaris02 nov 2002
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary comman
60RIESGO
abrir
Exploit-DBVexDay Proof
Monkey HTTP Server 0.4/0.5 - Invalid POST Denial of Service
CVE-2002-1663doswindows02 nov 2002
The Post_Method function in method.c for Monkey HTTP Daemon before 0.5.1 allows remote attackers to cause a denial of se
23RIESGO
abrir
Exploit-DBVexDay Proof
Jason Orcutt Prometheus 3.0/4.0/6.0 - Remote File Inclusion
CVE-2002-1211webappsphp01 nov 2002
Prometheus 6.0 and earlier allows remote attackers to execute arbitrary PHP code via a modified PROMETHEUS_LIBRARY_BASE
23RIESGO
abrir
Exploit-DBVexDay Proof
Linksys WAP11 1.3/1.4 / D-Link DI-804 4.68/Dl-704 2.56 b5 - Embedded HTTP Server Denial of Service
CVE-2002-1865doshardware01 nov 2002
Buffer overflow in the Embedded HTTP server, as used in (1) D-Link DI-804 4.68, Dl-704 V2.56b6, and Dl-704 V2.56b5 and (
23RIESGO
abrir
Exploit-DBVexDay Proof
Abuse 2.0 - Local Buffer Overflow
CVE-2002-1250locallinux01 nov 2002
Buffer overflow in Abuse 2.00 and earlier allows local users to gain root privileges via a long -net command line argume
23RIESGO
abrir
Exploit-DBVexDay Proof
PHP-Nuke 5.6 - 'modules.php' SQL Injection
CVE-2002-1242webappsphp01 nov 2002
SQL injection vulnerability in PHP-Nuke before 6.0 allows remote authenticated users to modify the database and gain pri
23RIESGO
abrir
Exploit-DBVexDay Proof
ION Script 1.4 - Remote File Disclosure
CVE-2002-1559webappscgi01 nov 2002
Directory traversal vulnerability in ion-p.exe (aka ion-p) allows remote attackers to read arbitrary files via (1) C: (d
23RIESGO
abrir
Exploit-DBVexDay Proof
Linksys BEFSR41 1.4x - 'Gozila.cgi' Denial of Service
CVE-2002-1236doshardware01 nov 2002
The remote management web server for Linksys BEFSR41 EtherFast Cable/DSL Router before firmware 1.42.7 allows remote att
23RIESGO
abrir
Exploit-DBVexDay Proof
SmartMail Server 2.0 - Closed Connection Denial of Service
CVE-2002-1862doswindows31 oct 2002
SmartMail Server 2.0 allows remote attackers to cause a denial of service (crash) by sending data and closing the connec
23RIESGO
abrir
Exploit-DBVexDay Proof
SmartMail Server 1.0 Beta 10 - Oversized Request Denial of Service
CVE-2002-1945doswindows31 oct 2002
Buffer overflow in SmartMail Server 1.0 Beta 10 allows remote attackers to cause a denial of service (crash) via a long
23RIESGO
abrir
Exploit-DBVexDay Proof
LPRNG html2ps 1.0 - Remote Command Execution
CVE-2002-1275remoteunix31 oct 2002
Unknown vulnerability in html2ps HTML/PostScript converter 1.0, when used within LPRng, allows remote attackers to execu
23RIESGO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'entete.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 oct 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RIESGO
abrir
Exploit-DBVexDay Proof
MailReader.com 2.3.x - 'NPH-MR.cgi' File Disclosure
CVE-2002-1581webappscgi28 oct 2002
Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view
23RIESGO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'index.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 oct 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RIESGO
abrir
Exploit-DBVexDay Proof
Alt-N MDaemon 6.0.x - POP Server Buffer Overflow
CVE-2002-1539doswindows28 oct 2002
Buffer overflow in MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service v
23RIESGO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'enteteacceuil.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 oct 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RIESGO
abrir
Exploit-DBVexDay Proof
Cisco AS5350 - Universal Gateway Portscan Denial of Service
CVE-2002-2379doshardware28 oct 2002
Cisco AS5350 IOS 12.2(11)T with access control lists (ACLs) applied and possibly with ssh running allows remote attacker
23RIESGO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'newtopic.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 oct 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RIESGO
abrir
Exploit-DBVexDay Proof
SolarWinds TFTP Server Standard Edition 5.0.55 - Directory Traversal
CVE-2002-1209remotewindows25 oct 2002
Directory traversal vulnerability in SolarWinds TFTP Server 5.0.55, and possibly earlier, allows remote attackers to rea
28RIESGO
abrir
Exploit-DBVexDay Proof
Mojo Mail 2.7 - Email Form Cross-Site Scripting
CVE-2002-2193webappscgi24 oct 2002
Cross-site scripting (XSS) vulnerability in mojo.cgi for Mojo Mail 2.7 allows remote attackers to inject arbitrary web s
23RIESGO
abrir
Exploit-DBVexDay Proof
SolarWinds TFTP Server Standard Edition 5.0.55 - Large UDP Packet
CVE-2002-1542doswindows24 oct 2002
SolarWinds TFTP server 5.0.55 and earlier allows remote attackers to cause a denial of service (crash) via a large UDP d
28RIESGO
abrir
Exploit-DBVexDay Proof
IBM Websphere Edge Server 3.6/4.0 - Cross-Site Scripting
CVE-2002-1167remoteunix23 oct 2002
Cross-site scripting (XSS) vulnerability in IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 all
23RIESGO
abrir
Exploit-DBVexDay Proof
MyMarket 1.71 - 'Form_Header.php' Cross-Site Scripting
CVE-2002-2362webappsphp23 oct 2002
Cross-site scripting (XSS) vulnerability in form_header.php in MyMarket 1.71 allows remote attackers to inject arbitrary
23RIESGO
abrir
Exploit-DBVexDay Proof
IBM Websphere Edge Server 3.69/4.0 - HTTP Header Injection
CVE-2002-1168remoteunix23 oct 2002
Cross-site scripting (XSS) vulnerability in IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 all
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5/6 - Cached Objects Zone Bypass
CVE-2002-1254remotewindows22 oct 2002
Internet Explorer 5.5 and 6.0 allows remote attackers to bypass the cross-domain security model and access information o
35RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (1)
CVE-2002-1561doswindows22 oct 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (2)
CVE-2002-1561doswindows22 oct 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RIESGO
abrir
Exploit-DBVexDay Proof
AOL Instant Messenger 4.8.2790 - Local File Execution
CVE-2002-1813remotewindows22 oct 2002
Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8.2790 allows remote attackers to execute arbitrary p
23RIESGO
abrir
anteriorpágina 562 / 824siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.