Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.192exploits catalogados
37.765CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
Cisco IOS 11.x - TFTP Server Long File Name Buffer Overflow
CVE-2002-0813—doshardware26 jul 2002
Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to ca
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
KaZaA Media Desktop 1.7.1 - Large Message Denial of Service
CVE-2002-2306—doswindows25 jul 2002
Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sen
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - Resolution Service Heap Overflow
CVE-2002-0649—remotewindows25 jul 2002
Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSD
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Fake Identd 0.9/1.x - Client Query Remote Buffer Overflow
CVE-2002-1792—remotelinux25 jul 2002
Buffer overflow in Fake Identd 0.9 through 1.4 allows remote attackers to execute arbitrary code as root via a long requ
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - Database Consistency Checkers Buffer Overflow
CVE-2002-0644—remotewindows25 jul 2002
Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Eng
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IPSwitch IMail 6.x/7.0/7.1 - Web Messaging GET Buffer Overflow
CVE-2002-1076—remotewindows25 jul 2002
Buffer overflow in the Web Messaging daemon for Ipswitch IMail before 7.12 allows remote attackers to execute arbitrary
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - sp_MScopyscript SQL Injection
CVE-2002-0982—remotewindows25 jul 2002
Microsoft SQL Server 2000 SP2, when configured as a distributor, allows attackers to execute arbitrary code via the @scr
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Pegasus Mail 4.0 1 - Message Header Buffer Overflow
CVE-2002-1075—remotewindows24 jul 2002
Buffer overflow in Pegasus mail client 4.01 and earlier allows remote attackers to cause a denial of service (crash) and
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cacheflow CacheOS 3.1.x/4.0.x/4.1 - Unresolved Domain Cross-Site Scripting
CVE-2002-1060—remotemultiple24 jul 2002
Cross-site scripting (XSS) vulnerability in Blue Coat Systems (formerly CacheFlow) CacheOS on Client Accelerator 4.1.06,
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
GNU Mailman 2.0.x - Subscribe Cross-Site Scripting
CVE-2002-0855—remotecgi24 jul 2002
Cross-site scripting vulnerability in Mailman before 2.0.12 allows remote attackers to execute script as other users via
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
VMware GSX Server 2.0 - Authentication Server Buffer Overflow
CVE-2002-0814—remotewindows24 jul 2002
Buffer overflow in VMware Authorization Service for VMware GSX Server 2.0.0 build-2050 allows remote authenticated users
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Pine 4.x - Empty MIME Boundary Denial of Service
CVE-2002-2325—dosunix24 jul 2002
The c-client library in Internet Message Access Protocol (IMAP) dated before 2002 RC2, as used by Pine 4.20 through 4.44
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CodeBlue 5.1 - SMTP Response Buffer Overflow
CVE-2002-0280—remotewindows24 jul 2002
Buffer overflow in CodeBlue 4 and earlier, and possibly other versions, allows remote attackers to execute arbitrary cod
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ZYXEL Prestige 642R Router - Malformed IP Packet Denial of Service
CVE-2002-1072—doshardware24 jul 2002
ZyXEL Prestige 642R 2.50(FA.1) and Prestige 310 V3.25(M.01), allows remote attackers to cause a denial of service via an
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cobalt Qube 3.0 - Authentication Bypass
CVE-2002-1058—webappsphp24 jul 2002
Directory traversal vulnerability in splashAdmin.php for Cobalt Qube 3.0 allows local users and remote attackers, to gai
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Mozilla 0.9.x/1.0 - JavaScript URL Host Spoofing Arbitrary Cookie Access
CVE-2002-2314—remotemultiple24 jul 2002
Mozilla 1.0 allows remote attackers to steal cookies from other domains via a javascript: URL with a leading "//" and en
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
GNU Mailman 2.0.x - Admin Login Variant Cross-Site Scripting
CVE-2002-0855—remotecgi24 jul 2002
Cross-site scripting vulnerability in Mailman before 2.0.12 allows remote attackers to execute script as other users via
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SecureCRT 2.4/3.x/4.0 - SSH1 Identifier String Buffer Overflow (2)
CVE-2002-1059—remotewindows23 jul 2002
Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execut
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SecureCRT 2.4/3.x/4.0 - SSH1 Identifier String Buffer Overflow (1)
CVE-2002-1059—doswindows23 jul 2002
Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execut
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Opera 6.0.1 / Microsoft Internet Explorer 5/6 - JavaScript Modifier Keypress Event Subversion
CVE-2002-2312—remotewindows23 jul 2002
Opera 6.0.1 allows remote attackers to upload arbitrary file contents when users press a key corresponding to the JavaSc
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP Interpreter 3.0.x/4.0.x/4.1/4.2 - Direct Invocation Denial of Service
CVE-2002-2309—dosunix22 jul 2002
php.exe in PHP 3.0 through 4.2.2, when running on Apache, does not terminate properly, which allows remote attackers to
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SmartMax MailMax 4.8 - Popmax Buffer Overflow
CVE-2002-1057—remotewindows20 jul 2002
Buffer overflow in SmartMax MailMax POP3 daemon (popmax) 4.8 allows remote attackers to execute arbitrary code via a lon
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Working Resources 1.7.x BadBlue - Administrative Interface Arbitrary File Access
CVE-2002-2170—remotewindows20 jul 2002
Working Resources Inc. BadBlue Enterprise Edition 1.7 through 1.74 attempts to restrict administrator actions to the IP
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Adobe eBook Reader 2.2 - File Restoration Privilege Escalation
CVE-2002-1016—localwindows19 jul 2002
Adobe eBook Reader allows a user to bypass restrictions for copy, print, lend, and give operations by backing up key dat
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall for Windows NT 3.52 - Space Gap Scan Bypass
CVE-2002-0637—remotewindows18 jul 2002
InterScan VirusWall 3.52 build 1462 allows remote attackers to bypass virus protection via e-mail messages with headers
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Oracle Reports Server 6.0.8/9.0.2 - Information Disclosure
CVE-2002-1089—remotemultiple18 jul 2002
rwcgi60 CGI program in Oracle Reports Server, by design, provides sensitive information such as the full pathname, which
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ZYXEL Prestige 642R Router - Malformed Packet Denial of Service
CVE-2002-1071—doshardware17 jul 2002
ZyXEL Prestige 642R allows remote attackers to cause a denial of service in the Telnet, FTP, and DHCP services (crash) v
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP-Wiki 1.2/1.3 - Cross-Site Scripting
CVE-2002-1070—webappsphp17 jul 2002
Cross-site scripting vulnerability in PHPWiki Postnuke wiki module allows remote attackers to execute script as other PH
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Macromedia Sitespring 1.2 - Default Error Page Cross-Site Scripting
CVE-2002-1027—webappsjsp17 jul 2002
Cross-site scripting vulnerability in the default HTTP 500 error script (500error.jsp) for Macromedia Sitespring 1.2.0 (
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Oddsock Song Requester 2.1 WinAmp Plugin - Denial of Service
CVE-2002-1028—doscgi16 jul 2002
Multiple buffer overflows in the CGI programs for Oddsock Song Requester WinAmp plugin 2.1 allow remote attackers to cau
23RIESGO
abrir ↗
← anteriorpágina 570 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.