Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.198exploits catalogados
37.770CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
MyHelpDesk 20020509 - HTML Injection
CVE-2002-0931—webappsphp10 jun 2002
Cross-site scripting vulnerabilities in MyHelpDesk 20020509, and possibly other versions, allows remote attackers to exe
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MyHelpDesk 20020509 - Cross-Site Scripting
CVE-2002-0931—webappsphp10 jun 2002
Cross-site scripting vulnerabilities in MyHelpDesk 20020509, and possibly other versions, allows remote attackers to exe
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Seanox DevWex Windows Binary 1.2002.520 - File Disclosure
CVE-2002-0946—remotewindows08 jun 2002
Directory traversal vulnerability in SeaNox Devwex before 1.2002.0601 allows remote attackers to read arbitrary files vi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 - FTP Web View Cross-Site Scripting
CVE-2002-2062—remotewindows06 jun 2002
Cross-site scripting (XSS) vulnerability in ftp.htt in Internet Explorer 5.5 and 6.0, when running on Windows 2000 with
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WebScripts WebBBS 4.x/5.0 - Remote Command Execution
CVE-2002-1993—webappscgi06 jun 2002
webbbs_post.pl in WebBBS 4 and 5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Voxel Dot Net CBms 0.x - Multiple Code Injection Vulnerabilities
CVE-2002-0961—webappsphp06 jun 2002
Vulnerabilities in Voxel Dot Net CBMS 0.7 and earlier allow remote attackers to conduct unauthorized operations as other
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Splatt Forum 3.0 - Image Tag HTML Injection
CVE-2002-0959—webappsphp06 jun 2002
Cross-site scripting vulnerability in Splatt Forum 3.0 allows remote attackers to execute arbitrary script as other user
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Telindus 1100 Series Router - Administration Password Leak
CVE-2002-0949—remotehardware05 jun 2002
Telindus 1100 series ADSL router allows remote attackers to gain privileges to the device via a certain packet to UDP po
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Slurp 1.10 - SysLog Remote Format String
CVE-2002-0913—dosfreebsd04 jun 2002
Format string vulnerability in log_doit function of Slurp NNTP client 1.1.0 allows a malicious news server to execute ar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Nullsoft SHOUTcast 1.8.9 - Remote Buffer Overflow
CVE-2002-0907—remotemultiple04 jun 2002
Buffer overflow in SHOUTcast 1.8.9 and other versions before 1.8.12 allows a remote authenticated DJ to execute arbitrar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25/6.1 - su Password Hash Disclosure
CVE-2002-2039—locallinux03 jun 2002
/bin/su in QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows local users to obtain sensitive information from c
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25/6.1 - 'phgrafx' Local Privilege Escalation
CVE-2002-2040—locallinux03 jun 2002
The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly d
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX 6.x - 'ptrace()' Arbitrary Process Modification
CVE-2002-2042—locallinux03 jun 2002
ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, whi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 6.1 - 'PKG-Installer' Local Buffer Overflow
CVE-2002-2041—locallinux03 jun 2002
Multiple buffer overflows in realtime operating system (RTOS) 6.1.0 allows local users to execute arbitrary code via (1)
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Teekai Tracking Online 1.0 - Cross-Site Scripting
CVE-2002-2055—webappsphp03 jun 2002
Cross-site scripting (XSS) vulnerability in userlog.php in TeeKai Tracking Online 1.0 allows remote attackers to inject
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 6.1 - '/usr/photon/bin/phlocale' Environment Variable Buffer Overflow
CVE-2002-2041—locallinux03 jun 2002
Multiple buffer overflows in realtime operating system (RTOS) 6.1.0 allows local users to execute arbitrary code via (1)
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25/6.1 - 'phgrafx-startup' Local Privilege Escalation
CVE-2002-2040—locallinux03 jun 2002
The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly d
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25 - 'CRTTrap' File Disclosure
CVE-2002-0793—locallinux31 may 2002
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25 - dumper Arbitrary File Modification
CVE-2002-0793—locallinux31 may 2002
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Evolvable Shambala Server 4.5 - Web Server Denial of Service
CVE-2002-0876—doswindows31 may 2002
Web server for Shambala 4.5 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QNX RTOS 4.25 - monitor Arbitrary File Modification
CVE-2002-0793—locallinux31 may 2002
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CGIScript.net - 'csPassword.cgi' 1.0 Information Disclosure
CVE-2002-0919—webappscgi30 may 2002
CGIScript.net csPassword.cgi allows remote authenticated users to modify the .htaccess file and gain privileges via newl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Informix SE 7.25 sqlexec - Local Buffer Overflow (1)
CVE-2002-0905—locallinux30 may 2002
Buffer overflow in sqlexec for Informix SE-7.25 allows local users to gain root privileges via a long INFORMIXDIR enviro
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CGIScript.net - 'csPassword.cgi' 1.0 Information Disclosure
CVE-2002-0918—webappscgi30 may 2002
CGIScript.net csPassword.cgi leaks sensitive information such as the pathname of the server in debug messages that are p
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CGIScript.net - 'csPassword.cgi' 1.0 HTAccess File Modification
CVE-2002-0919—webappscgi30 may 2002
CGIScript.net csPassword.cgi allows remote authenticated users to modify the .htaccess file and gain privileges via newl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Informix SE 7.25 sqlexec - Local Buffer Overflow (2)
CVE-2002-0905—locallinux30 may 2002
Buffer overflow in sqlexec for Informix SE-7.25 allows local users to gain root privileges via a long INFORMIXDIR enviro
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Tomcat 3.2.3/3.2.4 - Example Files Web Root Full Path Disclosure
CVE-2002-2007—remotemultiple29 may 2002
The default installations of Apache Tomcat 3.2.3 and 3.2.4 allows remote attackers to obtain sensitive system informatio
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netscape Enterprise Web Server for Netware 4/5 5.0 - Information Disclosure
CVE-2002-1634—remotenovell29 may 2002
Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndso
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Tomcat 3.2.3/3.2.4 - 'Source.jsp' Information Disclosure
CVE-2002-2007—remotemultiple29 may 2002
The default installations of Apache Tomcat 3.2.3 and 3.2.4 allows remote attackers to obtain sensitive system informatio
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Apache Tomcat 3.2.3/3.2.4 - 'RealPath.jsp' Information Disclosuree
CVE-2002-2007—remotemultiple29 may 2002
The default installations of Apache Tomcat 3.2.3 and 3.2.4 allows remote attackers to obtain sensitive system informatio
35RIESGO
abrir ↗
← anteriorpágina 574 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.