Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.270exploits catalogados
37.818CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
Cooolsoft PowerFTP Server 2.0 3/2.10 - Multiple Denial of Service Vulnerabilities (2)
CVE-2001-0932—doswindows29 nov 2001
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly exec
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cooolsoft PowerFTP Server 2.0 3/2.10 - Multiple Denial of Service Vulnerabilities (1)
CVE-2001-0932—doswindows29 nov 2001
Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly exec
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WU-FTPD 2.6 - File Globbing Heap Corruption
CVE-2001-0550—remoteunix27 nov 2001
wu-ftpd 2.6.1 allows remote attackers to execute arbitrary commands via a "~{" argument to commands such as CWD, which i
45RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5.5/6.0 - Spoofable File Extensions
CVE-2001-0875—remotewindows26 nov 2001
Internet Explorer 5.5 and 6.0 allows remote attackers to cause the File Download dialogue box to misrepresent the name o
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ibm informix Web Datablade 3.x/4.1 - Directory Traversal
CVE-2001-0924—remotemultiple22 nov 2001
Directory traversal vulnerability in ifx CGI program in Informix Web DataBlade allows remote attackers to read arbitrary
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP - HCP URI Buffer Overflow
CVE-2001-0909—doswindows21 nov 2001
Buffer overflow in helpctr.exe program in Microsoft Help Center for Windows XP allows remote attackers to execute arbitr
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SuSE Linux 6.4/7.0/7.1/7.2 Berkeley Parallel Make - Shell Definition Format String
CVE-2001-0915—locallinux21 nov 2001
Format string vulnerability in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privil
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SuSE Linux 6.4/7.0/7.1/7.2 Berkeley Parallel Make - Local Buffer Overflow
CVE-2001-0916—locallinux21 nov 2001
Buffer overflow in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via a l
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
bharat Mediratta Gallery 1.1/1.2 - Directory Traversal
CVE-2001-0900—webappsphp19 nov 2001
Directory traversal vulnerability in modules.php in Gallery before 1.2.3 allows remote attackers to read arbitrary files
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHP-Nuke Network Tool 0.2 Addon - MetaCharacter Filtering Command Execution
CVE-2001-0899—remotephp16 nov 2001
Network Tools 0.2 for PHP-Nuke allows remote attackers to execute commands on the server via shell metacharacters in the
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ActivePerl 5.6.1 - 'perlIIS.dll' Remote Buffer Overflow (3)
CVE-2001-0815—remotemultiple15 nov 2001
Buffer overflow in PerlIS.dll in Activestate ActivePerl 5.6.1.629 and earlier allows remote attackers to execute arbitra
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ActivePerl 5.6.1 - 'perlIIS.dll' Remote Buffer Overflow (1)
CVE-2001-0815—remotelinux15 nov 2001
Buffer overflow in PerlIS.dll in Activestate ActivePerl 5.6.1.629 and earlier allows remote attackers to execute arbitra
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ActivePerl 5.6.1 - 'perlIIS.dll' Remote Buffer Overflow (2)
CVE-2001-0815—remotewindows15 nov 2001
Buffer overflow in PerlIS.dll in Activestate ActivePerl 5.6.1.629 and earlier allows remote attackers to execute arbitra
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Opera 5.0/5.1 - Same Origin Policy Circumvention
CVE-2001-0898—remotewindows15 nov 2001
Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domain
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 - Cookie Disclosure/Modification
CVE-2001-0722—remotewindows09 nov 2001
Internet Explorer 5.5 and 6.0 allows remote attackers to read and modify user cookies via Javascript in an about: URL, a
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Horde IMP 2.2.x - Session Hijacking
CVE-2001-0857—remotelinux09 nov 2001
Cross-site scripting vulnerability in status.php3 in Imp Webmail 2.2.6 and earlier allows remote attackers to gain acces
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Rational ClearCase 3.2/4.x - DB Loader TERM Environment Variable Buffer Overflow
CVE-2001-0855—localunix09 nov 2001
Buffer overflow in db_loader in ClearCase 4.2 and earlier allows local users to gain root privileges via a long TERM env
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
RedHat TUX 2.1.0-2 - HTTP Server Oversized Host Denial of Service
CVE-2001-0852—doslinux05 nov 2001
TUX HTTP server 2.1.0-2 in Red Hat Linux allows remote attackers to cause a denial of service via a long Host: header.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Sudo 1.6.x - Password Prompt Heap Overflow
CVE-2002-0184—locallinux01 nov 2001
Sudo before 1.6.6 contains an off-by-one error that can result in a heap-based buffer overflow that may allow local user
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000 - GDI Denial of Service
CVE-2001-1560—doswindows29 oct 2001
Win32k.sys (aka Graphics Device Interface (GDI)) in Windows 2000 and XP allows local users to cause a denial of service
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
iBill Management Script - Weak Hard-Coded Password
CVE-2001-0839—remotecgi25 oct 2001
ibillpm.pl in iBill password management system generates weak passwords based on a client's MASTER_ACCOUNT, which allows
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
6Tunnel 0.6/0.7/0.8 - Connection Close State Denial of Service
CVE-2001-0830—dosmultiple23 oct 2001
6tunnel 0.08 and earlier does not properly close sockets that were initiated by a client, which allows remote attackers
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 - JavaScript Interface Spoofing
CVE-2001-1410—remotewindows21 oct 2001
Internet Explorer 6 and earlier allows remote attackers to create chromeless windows using the Javascript window.createP
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Mountain Network Systems WebCart 8.4 - Command Execution
CVE-2001-1502—remotecgi19 oct 2001
webcart.cgi in Mountain Network Systems WebCart 8.4 allows remote attackers to execute arbitrary commands via shell meta
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows NT/2000 - Terminal Server Service RDP Denial of Service
CVE-2001-0663—doswindows18 oct 2001
Terminal Server in Windows NT and Windows 2000 allows remote attackers to cause a denial of service via a sequence of in
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2/2.4 - Ptrace/Setuid Exec Privilege Escalation
CVE-2001-1384—locallinux18 oct 2001
ptrace in Linux 2.2.x through 2.2.19, and 2.4.x through 2.4.9, allows local users to gain root privileges by running ptr
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Oracle9iAS Web Cache 2.0 - Remote Buffer Overflow
CVE-2001-0836—remotewindows18 oct 2001
Buffer overflow in Oracle9iAS Web Cache 2.0.0.1 allows remote attackers to execute arbitrary code via a long HTTP GET re
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2/2.4 - Deep Symbolic Link Denial of Service
CVE-2001-0907—doslinux18 oct 2001
Linux kernel 2.2.1 through 2.2.19, and 2.4.1 through 2.4.10, allows local users to cause a denial of service via a serie
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Snes9x 1.3 - Local Buffer Overflow
CVE-2001-1015—localunix16 oct 2001
Buffer overflow in Snes9x 1.37, when installed setuid root, allows local users to gain root privileges via a long comman
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PostNuke 0.6 - User Login
CVE-2001-1460—webappsphp13 oct 2001
SQL injection vulnerability in article.php in PostNuke 0.62 through 0.64 allows remote attackers to bypass authenticatio
23RIESGO
abrir ↗
← anteriorpágina 584 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.