Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

77.772exploits catalogados
35.760CVEs con explotación pública
24.695probados en laboratorio
24.455 exploits
Exploit-DBVexDay Proof
Lussumo Vanilla 1.0 - RootDirectory Remote File Inclusion
CVE-2006-3850webappsphp24 jul 2006
PHP remote file inclusion vulnerability in upgrader.php in Vanilla CMS 1.0.1 and earlier, when /conf/old_settings.php ex
23RIESGO
abrir
Exploit-DBVexDay Proof
MusicBox 2.3.4 - 'page' SQL Injection
CVE-2006-3886webappsphp24 jul 2006
SQL injection vulnerability in Shalwan MusicBox 2.3.4 and earlier allows remote attackers to execute arbitrary SQL comma
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - Native Function Iterator Denial of Service
CVE-2006-3915doswindows24 jul 2006
Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by iteratin
28RIESGO
abrir
Exploit-DBVexDay Proof
Mambo Component multibanners 1.0.1 - Remote File Inclusion
CVE-2006-3846webappsphp23 jul 2006
PHP remote file inclusion vulnerability in extadminmenus.class.php in the MultiBanners 1.0.1 for Mambo allows remote att
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - Multiple Object ListWidth Property Denial of Service Vulnerabilities
CVE-2006-3944doswindows23 jul 2006
Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) via a (1) F
28RIESGO
abrir
Exploit-DBVexDay Proof
Cheese Tracker 0.9.9 - Local Buffer Overflow
CVE-2006-3814localwindows23 jul 2006
Buffer overflow in the Loader_XM::load_instrument_internal function in loader_xm.cpp for Cheese Tracker 0.9.9 and earlie
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - Internet.HHCtrl Click Denial of Service
CVE-2006-3898doswindows22 jul 2006
Microsoft Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to cause a denial of service (application cras
28RIESGO
abrir
Exploit-DBVexDay Proof
GnuPG 1.4/1.9 - Parse_Comment Remote Buffer Overflow
CVE-2006-3746doslinux22 jul 2006
Integer overflow in parse_comment in GnuPG (gpg) 1.4.4 allows remote attackers to cause a denial of service (segmentatio
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - Mailslot Ring0 Memory Corruption (MS06-035)
CVE-2006-3942doswindows21 jul 2006
The server driver (srv.sys) in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause a de
60RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft IIS - ASP Stack Overflow (MS06-034)
CVE-2006-0026localwindows21 jul 2006
Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote atta
45RIESGO
abrir
Exploit-DBVexDay Proof
Apache Tomcat 5 - Information Disclosure
CVE-2006-3835remotemultiple21 jul 2006
Apache Tomcat 5 before 5.5.17 allows remote attackers to list directories via a semicolon (;) preceding a filename with
35RIESGO
abrir
Exploit-DBVexDay Proof
Sendmail 8.13.5 - Remote Signal Handling (PoC)
CVE-2006-0058doslinux21 jul 2006
Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by trig
28RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - Mailslot Ring0 Memory Corruption (MS06-035)
CVE-2006-1314doswindows21 jul 2006
Heap-based buffer overflow in the Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server
35RIESGO
abrir
Exploit-DBVexDay Proof
Chameleon LE 1.203 - 'index.php' Directory Traversal
CVE-2006-3836webappsphp21 jul 2006
Directory traversal vulnerability in index.php in UNIDOmedia Chameleon LE 1.203 and earlier, and possibly Chameleon PRO,
23RIESGO
abrir
Exploit-DBVexDay Proof
LoudBlog 0.5 - SQL Injection / Admin Credentials Disclosure
CVE-2006-3832webappsphp21 jul 2006
SQL injection vulnerability in index.php in Gerrit van Aaken Loudblog 0.5 and earlier allows remote attackers to execute
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - Mailslot Ring0 Memory Corruption (MS06-035)
CVE-2006-1315doswindows21 jul 2006
The Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other prod
35RIESGO
abrir
Exploit-DBVexDay Proof
Advanced Poll 2.0.2 - 'common.inc.php' Remote File Inclusion
CVE-2003-1179webappsphp21 jul 2006
Multiple PHP remote file inclusion vulnerabilities in Advanced Poll 2.0.2 allow remote attackers to execute arbitrary PH
23RIESGO
abrir
Exploit-DBVexDay Proof
Geodesic Solutions (Multiple Products) - 'index.php?b' SQL Injection
CVE-2006-3823webappsphp20 jul 2006
SQL injection vulnerability in index.php in GeodesicSolutions (1) GeoAuctions Premier 2.0.3 and (2) GeoClassifieds Basic
23RIESGO
abrir
Exploit-DBVexDay Proof
IDevSpot PHPLinkExchange 1.0 - 'index.php' Remote File Inclusion
CVE-2006-3777webappsphp20 jul 2006
PHP remote file inclusion vulnerability in index.php in IDevSpot PhpLinkExchange 1.0 allows remote attackers to execute
23RIESGO
abrir
Exploit-DBVexDay Proof
GeoAuctions 1.0.6 Enterprise - 'index.php?d' SQL Injection
CVE-2006-3822webappsphp20 jul 2006
SQL injection vulnerability in index.php in GeodesicSolutions GeoAuctions Enterprise 1.0.6 allows remote attackers to ex
23RIESGO
abrir
Exploit-DBVexDay Proof
Cisco/Protego CS-MARS < 4.2.1 - 'JBoss' Remote Code Execution
CVE-2006-3734remotehardware20 jul 2006
Multiple unspecified vulnerabilities in the Command Line Interface (CLI) for Cisco Security Monitoring, Analysis and Res
23RIESGO
abrir
Exploit-DBVexDay Proof
SiteDepth CMS 3.0.1 - 'SD_DIR' Remote File Inclusion
CVE-2006-3793webappsphp20 jul 2006
PHP remote file inclusion vulnerability in constants.php in SiteDepth CMS 3.01 and earlier allows remote attackers to ex
23RIESGO
abrir
Exploit-DBVexDay Proof
MiniBB 1.5 - 'news.php' Remote File Inclusion
CVE-2006-3955webappsphp20 jul 2006
Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a allow remote attackers to execute arbitrary PHP
23RIESGO
abrir
Exploit-DBVexDay Proof
IDevSpot PHPHostBot 1.0 - 'index.php' Remote File Inclusion
CVE-2006-3776webappsphp20 jul 2006
PHP remote file inclusion vulnerability in order/index.php in IDevSpot (1) PhpHostBot 1.0 and (2) AutoHost 3.0 allows re
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - String To Binary Function Denial of Service
CVE-2006-3899doswindows20 jul 2006
Microsoft Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to cause a denial of service (application cras
28RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - DataSourceControl Denial of Service
CVE-2006-3729doswindows19 jul 2006
DataSourceControl in Internet Explorer 6 on Windows XP SP2 with Office installed allows remote attackers to cause a deni
28RIESGO
abrir
Exploit-DBVexDay Proof
Dumb 0.9.3 - 'it_read_envelope' Remote Heap Overflow (PoC)
CVE-2006-3668doswindows19 jul 2006
Heap-based buffer overflow in the it_read_envelope function in Dynamic Universal Music Bibliotheque (DUMB) 0.9.3 and ear
28RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - OVCtl Denial of Service
CVE-2006-3910doswindows19 jul 2006
Internet Explorer 6 on Windows XP SP2, when Outlook is installed, allows remote attackers to cause a denial of service (
28RIESGO
abrir
Exploit-DBVexDay Proof
Cisco Security Monitoring Analysis and Response System JBoss - Command Execution
CVE-2006-3733remotehardware19 jul 2006
jmx-console/HtmlAdaptor in the jmx-console in the JBoss web application server, as shipped with Cisco Security Monitorin
28RIESGO
abrir
Exploit-DBVexDay Proof
Invision Power Board 2.1 < 2.1.6 - SQL Injection (2)
CVE-2006-7071webappsphp18 jul 2006
SQL injection vulnerability in classes/class_session.php in Invision Power Board (IPB) 2.1 up to 2.1.6 allows remote att
23RIESGO
abrir
anteriorpágina 588 / 816siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.