Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.270exploits catalogados
37.818CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
BSD - 'TelnetD' Remote Command Execution (1)
CVE-2001-0093—remotebsd09 jun 2001
Vulnerability in telnetd in FreeBSD 1.5 allows local users to gain root privileges by modifying critical environmental v
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Tivoli NetView 5/6 - OVActionD SNMPNotify Command Execution
CVE-2001-0552—remotemultiple08 jun 2001
ovactiond in HP OpenView Network Node Manager (NNM) 6.1 and Tivoli Netview 5.x and 6.x allows remote attackers to execut
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Thibault Godouet FCron 1 - Symbolic Link
CVE-2001-0685—localunix07 jun 2001
Thibault Godouet FCron prior to 1.1.1 allows a local user to corrupt another user's crontab file via a symlink attack on
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
LPRng 3.6.x - Failure To Drop Supplementary Groups
CVE-2001-0787—localunix07 jun 2001
LPRng in Red Hat Linux 7.0 and 7.1 does not properly drop memberships in supplemental groups when lowering privileges, w
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - Telnet 'Username' Denial of Service
CVE-2001-0348—doswindows07 jun 2001
Microsoft Windows 2000 telnet service allows attackers to cause a denial of service (crash) via a long logon command tha
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
kosch suid wrapper 1.1.1 - Local Buffer Overflow
CVE-2001-0762—localunix07 jun 2001
Buffer overflow in su-wrapper 1.1.1 allows local users to execute arbitrary code via a long first argument.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Pragma Systems InterAccess TelnetD Server 4.0 - Denial of Service
CVE-2001-1263—doswindows06 jun 2001
telnet95.exe in Pragma InterAccess 4.0 build 5 allows remote attackers to cause a denial of service (crash) via a large
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Exim 3.x - Format String
CVE-2001-0690—locallinux06 jun 2001
Format string vulnerability in exim (3.22-10 in Red Hat, 3.12 in Debian and 3.16 in Conectiva) in batched SMTP mode allo
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Outlook 97/98/2000/4/5 - Address Book Spoofing
CVE-2001-1088—remotewindows05 jun 2001
Microsoft Outlook 8.5 and earlier, and Outlook Express 5 and earlier, with the "Automatically put people I reply to in m
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WebTrends Enterprise Reporting Server 3.1 c/3.5 - Source Code Disclosure
CVE-2001-0693—remotecgi03 jun 2001
WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an enc
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
OReilly Software WebBoard 4.10.30 - Pager Hostile JavaScript
CVE-2001-0743—remotewindows02 jun 2001
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 8 mailtool - Local Buffer Overflow
CVE-2001-0526—localsolaris01 jun 2001
Buffer overflow in the Xview library as used by mailtool in Solaris 8 and earlier allows a local attacker to gain privil
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.6/2.6/7.0/8 whodo - Local Buffer Overflow
CVE-2001-1076—localsolaris01 jun 2001
Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1)
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Acme.Serve 1.7 - Arbitrary File Access
CVE-2001-0748—remotemultiple31 may 2001
Acme.Serve 1.7, as used in Cisco Secure ACS Unix and possibly other products, allows remote attackers to read arbitrary
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Aladdin Knowledge Systems eSafe Gateway 3.0 - Unicode Script-filtering Bypass
CVE-2001-0521—remotemultiple29 may 2001
Aladdin eSafe Gateway versions 3.0 and earlier allows a remote attacker to circumvent HTML SCRIPT filtering via the UNIC
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
GNU Privacy Guard 1.0.x - Format String
CVE-2001-0522—remotemultiple29 may 2001
Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privi
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Aladdin Knowledge Systems eSafe Gateway 3.0 - HTML tag Script-filtering Bypass
CVE-2001-0519—remotemultiple29 may 2001
Aladdin eSafe Gateway versions 2.x allows a remote attacker to circumvent HTML SCRIPT filtering via a special arrangemen
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Qualcomm Eudora 5.1 - Hidden Attachment Execution
CVE-2001-1326—remotewindows29 may 2001
Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cosmicperl Directory Pro 2.0 - Arbitrary File Disclosure
CVE-2001-0780—remotecgi28 may 2001
Directory traversal vulnerability in cosmicpro.cgi in Cosmicperl Directory Pro 2.0 allows remote attackers to gain sensi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ACLogic CesarFTP 0.98b - Directory Traversal
CVE-2001-1335—remotewindows27 may 2001
Directory traversal vulnerability in CesarFTP 0.98b and earlier allows remote authenticated users (such as anonymous) to
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Omnicron OmniHTTPd 2.0.4-8 - File Source Disclosure
CVE-2001-0778—remotewindows26 may 2001
OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol f
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Faust Informatics FreeStyle Chat 4.1 SR2 MS-DOS Device Name - Denial of Service
CVE-2001-0616—doswindows25 may 2001
Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to create a denial of service via a UR
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
faust Informatics FreeStyle chat 4.1 sr2 - Directory Traversal
CVE-2001-0615—remotemultiple25 may 2001
Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker t
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Beck IPC GmbH IPC@CHIP - TelnetD Login Account Brute Force
CVE-2001-1339—remotemultiple24 may 2001
Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall for Windows NT 3.4/3.5/3.51 - Remote Reconfiguration
CVE-2001-0791—remotewindows24 may 2001
Trend Micro InterScan VirusWall for Windows NT allows remote attackers to make configuration changes by directly calling
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - Debug Registers
CVE-2001-1347—localwindows24 may 2001
Windows 2000 allows local users to cause a denial of service and possibly gain privileges by setting a hardware breakpoi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
mimanet source viewer 2.0 - Directory Traversal
CVE-2001-0630—remotecgi23 may 2001
Directory traversal vulnerability in MIMAnet viewsrc.cgi 2.0 allows a remote attacker to read arbitrary files via a '..'
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
eSafe Gateway 2.1 - Script-filtering Bypass
CVE-2001-0520—remotemultiple20 may 2001
Aladdin eSafe Gateway versions 3.0 and earlier allows a remote attacker to circumvent filtering of SCRIPT tags by embedd
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ARCservIT 6.61/6.63 Client - inetd.tmp Arbitrary File Overwrite
CVE-2001-1346—locallinux18 may 2001
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ARCservIT 6.61/6.63 Client - asagent.tmp Arbitrary File Overwrite
CVE-2001-1346—locallinux18 may 2001
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via
23RIESGO
abrir ↗
← anteriorpágina 590 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.