Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.524exploits catalogados
37.962CVEs con explotación pública
24.695probados en laboratorio
19.066 exploits
Exploit-DB✓ VexDay Proof
MyHelpDesk 20020509 - SQL Injection
CVE-2002-0932—webappsphp10 jun 2002
SQL injection vulnerability in index.php for MyHelpDesk 20020509, and possibly other versions, allows remote attackers t
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Geeklog 1.3.5 - Calendar Event Form Script Injection
CVE-2002-0962—webappsphp10 jun 2002
Cross-site scripting vulnerabilities in GeekLog 1.3.5 and earlier allow remote attackers to execute arbitrary script via
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Seanox DevWex Windows Binary 1.2002.520 - File Disclosure
CVE-2002-0946—remotewindows08 jun 2002
Directory traversal vulnerability in SeaNox Devwex before 1.2002.0601 allows remote attackers to read arbitrary files vi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 - FTP Web View Cross-Site Scripting
CVE-2002-2062—remotewindows06 jun 2002
Cross-site scripting (XSS) vulnerability in ftp.htt in Internet Explorer 5.5 and 6.0, when running on Windows 2000 with
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Voxel Dot Net CBms 0.x - Multiple Code Injection Vulnerabilities
CVE-2002-0961—webappsphp06 jun 2002
Vulnerabilities in Voxel Dot Net CBMS 0.7 and earlier allow remote attackers to conduct unauthorized operations as other
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WebScripts WebBBS 4.x/5.0 - Remote Command Execution
CVE-2002-1993—webappscgi06 jun 2002
webbbs_post.pl in WebBBS 4 and 5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Splatt Forum 3.0 - Image Tag HTML Injection
CVE-2002-0959—webappsphp06 jun 2002
Cross-site scripting vulnerability in Splatt Forum 3.0 allows remote attackers to execute arbitrary script as other user
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Telindus 1100 Series Router - Administration Password Leak
CVE-2002-0949—remotehardware05 jun 2002
Telindus 1100 series ADSL router allows remote attackers to gain privileges to the device via a certain packet to UDP po
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Nullsoft SHOUTcast 1.8.9 - Remote Buffer Overflow
CVE-2002-0907—remotemultiple04 jun 2002
Buffer overflow in SHOUTcast 1.8.9 and other versions before 1.8.12 allows a remote authenticated DJ to execute arbitrar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Slurp 1.10 - SysLog Remote Format String
CVE-2002-0913—dosfreebsd04 jun 2002
Format string vulnerability in log_doit function of Slurp NNTP client 1.1.0 allows a malicious news server to execute ar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25/6.1 - 'phgrafx' Local Privilege Escalation
CVE-2002-2040—locallinux03 jun 2002
The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly d
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Teekai Tracking Online 1.0 - Cross-Site Scripting
CVE-2002-2055—webappsphp03 jun 2002
Cross-site scripting (XSS) vulnerability in userlog.php in TeeKai Tracking Online 1.0 allows remote attackers to inject
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25/6.1 - su Password Hash Disclosure
CVE-2002-2039—locallinux03 jun 2002
/bin/su in QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows local users to obtain sensitive information from c
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX 6.x - 'ptrace()' Arbitrary Process Modification
CVE-2002-2042—locallinux03 jun 2002
ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, whi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 6.1 - 'PKG-Installer' Local Buffer Overflow
CVE-2002-2041—locallinux03 jun 2002
Multiple buffer overflows in realtime operating system (RTOS) 6.1.0 allows local users to execute arbitrary code via (1)
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 6.1 - '/usr/photon/bin/phlocale' Environment Variable Buffer Overflow
CVE-2002-2041—locallinux03 jun 2002
Multiple buffer overflows in realtime operating system (RTOS) 6.1.0 allows local users to execute arbitrary code via (1)
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25/6.1 - 'phgrafx-startup' Local Privilege Escalation
CVE-2002-2040—locallinux03 jun 2002
The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly d
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Evolvable Shambala Server 4.5 - Web Server Denial of Service
CVE-2002-0876—doswindows31 may 2002
Web server for Shambala 4.5 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25 - dumper Arbitrary File Modification
CVE-2002-0793—locallinux31 may 2002
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25 - monitor Arbitrary File Modification
CVE-2002-0793—locallinux31 may 2002
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25 - 'CRTTrap' File Disclosure
CVE-2002-0793—locallinux31 may 2002
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CGIScript.net - 'csPassword.cgi' 1.0 Information Disclosure
CVE-2002-0919—webappscgi30 may 2002
CGIScript.net csPassword.cgi allows remote authenticated users to modify the .htaccess file and gain privileges via newl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Informix SE 7.25 sqlexec - Local Buffer Overflow (2)
CVE-2002-0905—locallinux30 may 2002
Buffer overflow in sqlexec for Informix SE-7.25 allows local users to gain root privileges via a long INFORMIXDIR enviro
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Informix SE 7.25 sqlexec - Local Buffer Overflow (1)
CVE-2002-0905—locallinux30 may 2002
Buffer overflow in sqlexec for Informix SE-7.25 allows local users to gain root privileges via a long INFORMIXDIR enviro
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CGIScript.net - 'csPassword.cgi' 1.0 Information Disclosure
CVE-2002-0918—webappscgi30 may 2002
CGIScript.net csPassword.cgi leaks sensitive information such as the pathname of the server in debug messages that are p
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CGIScript.net - 'csPassword.cgi' 1.0 HTAccess File Modification
CVE-2002-0919—webappscgi30 may 2002
CGIScript.net csPassword.cgi allows remote authenticated users to modify the .htaccess file and gain privileges via newl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Caldera OpenServer 5.0.5/5.0.6 - SCOAdmin Symbolic Link
CVE-2002-0887—localsco29 may 2002
scoadmin for Caldera/SCO OpenServer 5.0.5 and 5.0.6 allows local users to overwrite arbitrary files via a symlink attack
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Gafware CFXImage 1.6.4/1.6.6 - ShowTemp File Disclosure
CVE-2002-0879—webappscfm29 may 2002
showtemp.cfm for Gafware CFXImage 1.6.6 allows remote attackers to read arbitrary files via (1) a .. or (2) a C: style p
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Tomcat 3.2.3/3.2.4 - Example Files Web Root Full Path Disclosure
CVE-2002-2007—remotemultiple29 may 2002
The default installations of Apache Tomcat 3.2.3 and 3.2.4 allows remote attackers to obtain sensitive system informatio
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Tomcat 3.2.3/3.2.4 - 'Source.jsp' Information Disclosure
CVE-2002-2007—remotemultiple29 may 2002
The default installations of Apache Tomcat 3.2.3 and 3.2.4 allows remote attackers to obtain sensitive system informatio
35RIESGO
abrir ↗
← anteriorpágina 574 / 636siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.