Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.192exploits catalogados
37.765CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
gBook 1.4 - Administrative Access
CVE-2002-1560—webappsphp22 oct 2002
index.php in gBook 1.4 allows remote attackers to bypass authentication and gain administrative privileges by setting th
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP Arena PAFileDB 1.1.3/2.1.1/3.0 - 'Email To Friend' Cross-Site Scripting
CVE-2002-1929—webappsphp21 oct 2002
Cross-site scripting (XSS) vulnerability in pafiledb.php in PHP Arena paFileDB 1.1.3 through 3.0 allows remote attackers
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
AN HTTPD 1.38/1.39/1.40/1.41 - 'SOCKS4' Buffer Overflow
CVE-2002-1930—remotewindows21 oct 2002
Buffer overflow in AN HTTPd 1.38 through 1.4.1c allows remote attackers to execute arbitrary code via a SOCKS4 request w
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
KMMail 1.0 - E-Mail HTML Injection
CVE-2002-1958—webappsphp21 oct 2002
Cross-site scripting (XSS) vulnerability in kmMail 1.0, 1.0a, and 1.0b allows remote attackers to inject arbitrary web s
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
YaBB 1.40/1.41 - Login Cross-Site Scripting
CVE-2002-1845—webappsphp18 oct 2002
Cross-site scripting (XSS) vulnerability in index.php in Yet Another Bulletin Board (YaBB) 1.40 and 1.41 allows remote a
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (3)
CVE-2002-1561—doswindows18 oct 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (4)
CVE-2002-1561—doswindows18 oct 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
vBulletin 2.0/2.2.x - Cross-Site Scripting
CVE-2002-1922—webappsjava18 oct 2002
Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Websphere Caching Proxy 3.6/4.0 - Denial of Service
CVE-2002-1169—dosunix18 oct 2002
IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 allows remote attackers to cause a denial of se
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Zone Labs ZoneAlarm 3.0/3.1 - Syn Flood Denial of Service
CVE-2002-1911—doswindows16 oct 2002
ZoneAlarm Pro 3.0 and 3.1, when configured to block all traffic, allows remote attackers to cause a denial of service (C
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cisco CatOS 5.x/6.1/7.3/7.4 - CiscoView HTTP Server Buffer Overflow
CVE-2002-1222—remotehardware16 oct 2002
Buffer overflow in the embedded HTTP server for Cisco Catalyst switches running CatOS 5.4 through 7.3 allows remote atta
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Polycom ViaVideo 2.2/3.0 - Denial of Service
CVE-2002-1906—doshardware15 oct 2002
The web server for Polycom ViaVideo 2.2 and 3.0 allows remote attackers to cause a denial of service (CPU consumption) b
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 - Unauthorized Document Object Model Access
CVE-2002-1217—remotewindows15 oct 2002
Cross-Frame scripting vulnerability in the WebBrowser control as used in Internet Explorer 5.5 and 6.0 allows remote att
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Polycom 2.2/3.0 - ViaVideo Buffer Overflow
CVE-2002-1905—doswindows15 oct 2002
Buffer overflow in the web server of Polycom ViaVideo 2.2 and 3.0 allows remote attackers to cause a denial of service (
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Ingenium Learning Management System 5.1/6.1 - Reversible Password Hash
CVE-2002-1910—remotemultiple15 oct 2002
Click2Learn Ingenium Learning Management System 5.1 and 6.1 uses weak encryption for passwords (reversible algorithm), w
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
TelCondex SimpleWebserver 2.0.6 - Denial of Service
CVE-2002-1907—doswindows15 oct 2002
TelCondex SimpleWebServer 2.06.20817 allows remote attackers to cause a denial of service (crash) via a long HTTP GET re
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP 4 - 'PHPInfo()' Cross-Site Scripting
CVE-2002-1954—webappsphp12 oct 2002
Cross-site scripting (XSS) vulnerability in the phpinfo function in PHP 4.2.3 allows remote attackers to inject arbitrar
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
My Web Server 1.0.1/1.0.2 - GET Denial of Service
CVE-2002-1897—doswindows12 oct 2002
MyWebServer LLC MyWebServer 1.0.2 allows remote attackers to cause a denial of service (crash) via a long HTTP request,
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
KDE 3.0.x - KPF Icon Option File Disclosure
CVE-2002-1224—remotelinux11 oct 2002
Directory traversal vulnerability in kpf for KDE 3.0.1 through KDE 3.0.3a allows remote attackers to read arbitrary file
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHPRank 1.8 - 'add.php' Cross-Site Scripting
CVE-2002-1799—webappsphp10 oct 2002
Cross-site scripting (XSS) vulnerability in phpRank 1.8 allows remote attackers to inject arbitrary web script or HTML v
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHPBBMod 1.3.3 - PHPInfo Information Disclosure
CVE-2002-2349—webappsphp10 oct 2002
phpinfo.php in phpBBmod 1.3.3 executes the phpinfo function, which allows remote attackers to obtain sensitive environme
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Outlook Express 5.5/6.0 - S/MIME Buffer Overflow
CVE-2002-1179—remotewindows10 oct 2002
Buffer overflow in the S/MIME Parsing capability in Microsoft Outlook Express 5.5 and 6.0 allows remote attackers to exe
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - NetDDE Privilege Escalation (1)
CVE-2002-1230—localwindows09 oct 2002
NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Content Management Server 2001 - Cross-Site Scripting
CVE-2003-0002—webappsasp09 oct 2002
Cross-site scripting vulnerability (XSS) in ManualLogin.asp script for Microsoft Content Management Server (MCMS) 2001 a
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - NetDDE Privilege Escalation (2)
CVE-2002-1230—localwindows09 oct 2002
NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Authoria HR Suite - 'AthCGI.exe' Cross-Site Scripting
CVE-2002-2348—webappscgi09 oct 2002
Cross-site scripting (XSS) vulnerability in athcgi.exe in Authoria HR allows remote attackers to inject arbitrary web sc
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Symantec Norton Personal Firewall 2002/Kaspersky Labs Anti-Hacker 1.0/BlackIce Server Protection 3.5/BlackICE Defender 2.9 - Auto Block Denial of Service
CVE-2002-2336—doswindows08 oct 2002
Norton Personal Firewall 2002 4.0, when configured to automatically block attacks, allows remote attackers to block IP a
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Sendmail 8.12.6 - Compromised Source Backdoor
CVE-1999-0661—remoteunix08 oct 2002
A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SurfControl SuperScout Email Filter 3.5 - 'MsgError.asp' Cross-Site Scripting
CVE-2002-1529—webappsasp08 oct 2002
Cross-site scripting (XSS) vulnerability in msgError.asp for the administrative web interface (STEMWADM) for SurfControl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SurfControl SuperScout Email Filter 3.5 - User Credential Disclosure
CVE-2002-1530—webappsasp08 oct 2002
The administrative web interface (STEMWADM) for SurfControl SuperScout Email Filter allows users to obtain usernames and
23RIESGO
abrir ↗
← anteriorpágina 563 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.