Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.366exploits catalogados
37.872CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.482Referência 24.213GitHub PoC 15.592VulnCheck XDB 9133Nuclei 4441Metasploit 3505✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 SP1/SP2 - isapi .printer Extension Overflow (1)
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ElectroSoft ElectroComm 1.0/2.0 - Denial of Service
ElectroSystems Engineering Inc. ElectroComm 2.0 and earlier allows a remote attacker to create a denial of service via l
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Novell BorderManager Enterprise Edition 3.5 - Denial of Service
Remote attackers can cause a denial of service in Novell BorderManager 3.6 and earlier by sending TCP SYN flood to port
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
cgiCentral WebStore 400 - Administrator Authentication Bypass
WSSecurity.pl in WebStore allows remote attackers to bypass authentication by providing the program with a filename that
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
cgiCentral WebStore 400 - Arbitrary Command Execution
ws_mail.cgi in WebStore 400/400CS 4.14 allows remote authenticated WebStore administrators to execute arbitrary code via
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
WU-FTPD 2.4.2/2.5 .0/2.6.0 - Remote Format String Stack Overwrite (3)
The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remo
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco HSRP - Denial of Service
Cisco Hot Standby Routing Protocol (HSRP) allows local attackers to cause a denial of service by spoofing HSRP packets.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco Catalyst 2900 12.0 - '5.2'XU SNMP Empty UDP Packet Denial of Service
Cisco Catalyst 2900XL switch allows a remote attacker to create a denial of service via an empty UDP packet sent to port
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - '.printer' ISAPI Extension Buffer Overflow (4)
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - '.printer' ISAPI Extension Buffer Overflow (2)
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - '.printer' ISAPI Extension Buffer Overflow (1)
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
NullSoft Winamp 2.x - AIP Buffer Overflow
Buffer overflow in WINAMP 2.6x and 2.7x allows attackers to execute arbitrary code via a long string in an AIP file.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BRS Webweaver 0.x - FTP Root Full Path Disclosure
BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *"
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
datawizard webxq 2.1.204 - Directory Traversal
Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PerlCal 2.x - Directory Traversal
Directory traversal vulnerability in cal_make.pl in PerlCal allows remote attackers to read arbitrary files via a .. (do
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IRIX 5.3/6.x - 'netprint' Arbitrary Shared Library Usage
Unknown vulnerability in netprint in IRIX 6.2, and possibly other versions, allows local users with lp privileges attack
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RaidenFTPd 2.1 - Directory Traversal
Directory traversal vulnerability in RaidenFTPD Server 2.1 before build 952 allows attackers to access files outside the
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Tektronix Phaser 740/750/850/930 - Network Printer Administration Interface
Tektronix PhaserLink 850 does not require authentication for access to configuration pages such as _ncl_subjects.shtml a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sendfile 1.x/2.1 - Local Privileged Arbitrary Command Execution
sendfiled, as included with Simple Asynchronous File Transfer (SAFT), on various Linux systems does not properly drop pr
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Perl Web Server 0.x - Directory Traversal
Directory traversal vulnerability in Perl web server 0.3 and earlier allows remote attackers to read arbitrary files via
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sendfile 1.x/2.1 - Forced Privilege Lowering Failure
sendfiled, as included with Simple Asynchronous File Transfer (SAFT), on various Linux systems does not properly drop pr
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RobTex Viking Server 1.0.7 - Relative Path Webroot Escaping
Directory traversal vulnerability in RobTex Viking Web server before 1.07-381 allows remote attackers to read arbitrary
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
WFTPD 3.0 - 'RETR' / 'CWD' Remote Buffer Overflow
Buffer overflow in WFTPD Pro 3.00 allows remote attackers to execute arbitrary commands via a long CWD command.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Mercury/NLM 1.4 - Buffer Overflow
Buffer overflow in Mercury MTA POP3 server for NetWare 1.48 and earlier allows remote attackers to cause a denial of ser
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5.0/5.5 / OE 5.5 - XML Stylesheets Active Scripting
Internet Explorer 5.0 and 5.5, and Outlook Express 5.0 and 5.5, allow remote attackers to execute scripts when Active Sc
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Rit Research Labs 'The Bat!' 1.x - Missing Linefeeds Denial of Service
Rit Research Labs The Bat! 1.51 for Windows allows a remote attacker to cause a denial of service by sending an email to
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ISC INN 2.x - Command-Line Buffer Overflow (2)
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privil
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ISC INN 2.x - Command-Line Buffer Overflow (1)
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privil
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SuSE 7.0 - KFM Insecure '.TMP' File Creation
kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm ca
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.0.x - Insecure TMP File Symbolic Link
Samba before 2.2.0 allows local attackers to overwrite arbitrary files via a symlink attack using (1) a printer queue qu
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.