Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.366exploits catalogados
37.872CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
GoAhead Web Server 2.1 (Windows) - Denial of Service
CVE-2001-0385—doswindows17 abr 2001
GoAhead webserver 2.1 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CrossWind CyberScheduler 2.1 - websyncd Remote Buffer Overflow
CVE-2001-0464—remotecgi17 abr 2001
Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (t
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
NSI Rwhoisd 1.5 - Remote Format String
CVE-2001-0838—remoteunix17 abr 2001
Format string vulnerability in Network Solutions Rwhoisd 1.5.x allows remote attackers to execute arbitrary code via for
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Samba 2.0.x - Insecure TMP File Symbolic Link
CVE-2001-0406—locallinux17 abr 2001
Samba before 2.2.0 allows local attackers to overwrite arbitrary files via a symlink attack using (1) a printer queue qu
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.6 - FTP Core Dump Shadow Password Recovery
CVE-2001-0421—remotesolaris17 abr 2001
FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possib
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5.5 - CLSID File Execution
CVE-2001-0643—remotewindows17 abr 2001
Internet Explorer 5.5 does not display the Class ID (CLSID) when it is at the end of the file name, which could allow at
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
cfingerd 1.4 - Format String (2)
CVE-2001-0609—remotelinux16 abr 2001
Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privilege
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FreeBSD 4.2-stable - FTPd 'glob()' Remote Buffer Overflow
CVE-2001-0247—remotefreebsd16 abr 2001
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern strin
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft ISA Server 2000 Web Proxy - Denial of Service
CVE-2001-0239—doswindows16 abr 2001
Microsoft Internet Security and Acceleration (ISA) Server 2000 Web Proxy allows remote attackers to cause a denial of se
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
OpenBSD 2.x < 2.8 FTPd - 'glob()' Remote Buffer Overflow
CVE-2001-0247—remoteopenbsd16 abr 2001
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern strin
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.4 - IPTables FTP Stateful Inspection Arbitrary Filter Rule Insertion
CVE-2001-0405—remotelinux16 abr 2001
ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PHPSlash 0.5.3 2/0.6.1 - URL Block Arbitrary File Disclosure
CVE-2001-1334—webappsphp15 abr 2001
Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.5/2.6/7.0/8 - 'mailx -F' Local Buffer Overflow (2)
CVE-2001-0565—localsolaris15 abr 2001
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F'
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FreeBSD 2.2-4.2 / NetBSD 1.2-4.5 / OpenBSD 2.x - FTPd 'glob()' Remote Buffer Overflow
CVE-2001-0247—remotebsd14 abr 2001
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern strin
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Siemens Reliant UNIX 5.4 - ppd -T Race Condition
CVE-2001-0384—localunix14 abr 2001
ppd in Reliant Sinix allows local users to corrupt arbitrary files via a symlink attack in the /tmp/ppd.trace file.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netscape SmartDownload 1.3 - Remote Buffer Overflow
CVE-2001-0262—remotewindows13 abr 2001
Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary command
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Trend Micro Interscan VirusWall (Linux) 3.0.1 - Multiple Program Buffer Overflows
CVE-2001-0432—doslinux13 abr 2001
Buffer overflows in various CGI programs in the remote administration service for Trend Micro Interscan VirusWall 3.01 a
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/2000 - TCP Stack Denial of Service (2)
CVE-2002-1712—doswindows13 abr 2001
Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of e
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
NCM Content Management System - content.pl Input Validation
CVE-2001-0418—remotecgi13 abr 2001
content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content dat
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Websphere/Net.Commerce 3 - CGI-BIN Macro Denial of Service
CVE-2001-0390—doscgi13 abr 2001
IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to cause a denial of service by directly calling the macro.d2w
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/2000 - TCP Stack Denial of Service (1)
CVE-2002-1712—doswindows13 abr 2001
Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of e
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7.0/8 - IPCS Timezone Buffer Overflow
CVE-2001-0423—localsolaris12 abr 2001
Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environme
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SGI IRIX 6.5 / Solaris 7.0/8 CDE - '/usr/dt/bin/dtsession' Local Buffer Overflow
CVE-2001-0426—localunix11 abr 2001
Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Oracle Application Server 4.0.8.2 - ndwfn4.so Buffer Overflow
CVE-2001-0419—doslinux11 abr 2001
Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle app
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
cfingerd 1.4 - Format String (1)
CVE-2001-0609—remotelinux11 abr 2001
Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privilege
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
nph-maillist 3.0/3.5 - Arbitrary Code Execution
CVE-2001-0400—remotecgi10 abr 2001
nph-maillist.pl allows remote attackers to execute arbitrary commands via shell metacharacters ("`") in the email addres
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.x/7.0/8 - Xsun HOME Buffer Overflow
CVE-2001-0422—localsolaris10 abr 2001
Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME enviro
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Strip Password Generator 0.3/0.4/0.5 - Limited Password-Space
CVE-2001-0597—localpalm_os10 abr 2001
Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7/8 - 'kcms_configure' Command-Line Buffer Overflow (2)
CVE-2001-0594—localsolaris09 abr 2001
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overf
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IPFilter 3.x - Fragment Rule Bypass
CVE-2001-0402—remoteunix09 abr 2001
IPFilter 3.4.16 and earlier does not include sufficient session information in its cache, which allows remote attackers
23RIESGO
abrir ↗
← anteriorpágina 593 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.