Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.409exploits catalogados
37.905CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
aolserver 3.2 Win32 - Directory Traversal
CVE-2001-0205—remotewindows06 feb 2001
Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by insert
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
informs picserver 1.0 - Directory Traversal
CVE-2001-0202—remotewindows05 feb 2001
Picserver web server allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTP GET request.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SSH 1.2.30 - Daemon Logging Failure
CVE-2001-0471—remoteunix05 feb 2001
SSH daemon version 1 (aka SSHD-1 or SSH-1) 1.2.30 and earlier does not log repeated login attempts, which could allow re
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM Net.Commerce 2.0/3.x/4.x - orderdspc.d2w order_rn Option SQL Injection
CVE-2001-0319—remotemultiple05 feb 2001
orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them i
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Heat-On HSWeb Web Server 2.0 - Full Path Disclosure
CVE-2001-0200—remotecgi04 feb 2001
HSWeb 2.0 HTTP server allows remote attackers to obtain the physical path of the server via a request to the /cgi/ direc
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Guido Frassetto SEDUM HTTP Server 2.0 - Directory Traversal
CVE-2001-0199—remotewindows04 feb 2001
Directory traversal vulnerability in SEDUM HTTP Server 2.0 allows remote attackers to read arbitrary files via a .. (dot
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
GoAhead Web Server 2.0/2.1 - Directory Traversal
CVE-2001-0228—remotewindows02 feb 2001
Directory traversal vulnerability in GoAhead web server 2.1 and earlier allows remote attackers to read arbitrary files
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PALS Library System WebPALS 1.0 - 'pals-cgi' Arbitrary Command Execution
CVE-2001-0216—remotecgi02 feb 2001
PALS Library System pals-cgi program allows remote attackers to execute arbitrary commands via shell metacharacters in t
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
PALS Library System WebPALS 1.0 - pals-cgi Traversal Arbitrary File Read
CVE-2001-0217—remotecgi02 feb 2001
Directory traversal vulnerability in PALS Library System pals-cgi program allows remote attackers to read arbitrary file
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Xmail 0.5/0.6 CTRLServer - Arbitrary Commands
CVE-2001-0192—remotelinux01 feb 2001
Buffer overflows in CTRLServer in XMail allows attackers to execute arbitrary commands via the cfgfileget or domaindel f
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7/8 - ximp40 Library Buffer Overflow
CVE-2001-0165—localsolaris31 ene 2001
Buffer overflow in ximp40 shared library in Solaris 7 and Solaris 8 allows local users to gain privileges via a long "ar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Debian 2.2 / Su.S.E 6.3/6.4/7.0 - man '-l' Format String
CVE-2001-0193—locallinux31 ene 2001
Format string vulnerability in man in some Linux distributions allows local users to gain privileges via a malformed -l
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
iweb hyperseek 2000 - Directory Traversal
CVE-2001-0253—remotemultiple28 ene 2001
Directory traversal vulnerability in hsx.cgi program in iWeb Hyperseek 2000 allows remote attackers to read arbitrary fi
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netscape Enterprise Server 4.0/sparc/SunOS 5.7 - Remote Command Execution
CVE-1999-0744—remotesolaris27 ene 2001
Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Tru64 5 - 'su' Env Local Stack Overflow
CVE-2002-1616—localtru6426 ene 2001
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain root privileges via
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SCO OpenServer 5.0.5 - Env Local Stack Overflow
CVE-1999-1185—localsco26 ene 2001
Buffer overflow in SCO mscreen allows local users to gain root privileges via a long terminal entry (TERM) in the .mscre
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
splitvt < 1.6.5 - Local Overflow
CVE-2001-0112—locallinux26 ene 2001
Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SCO OpenServer 5.0.5 - Env Local Stack Overflow
CVE-1999-1041—localsco26 ene 2001
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a lo
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Vim 5.x - Swap File Race Condition
CVE-2001-0409—locallinux26 ene 2001
vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swa
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
jaZip 0.32-2 - Local Buffer Overflow
CVE-2001-0110—locallinux25 ene 2001
Buffer overflow in jaZip Zip/Jaz drive manager allows local users to gain root privileges via a long DISPLAY environment
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.6/2.7 - '/usr/bin/write' Local Overflow
CVE-1999-1371—localsolaris25 ene 2001
Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the te
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
glibc-2.2 / openssh-2.3.0p1 / glibc 2.1.9x - File Read
CVE-2001-0170—locallinux25 ene 2001
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variabl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netscape Enterprise Server 3.0/4.0 - 'Index' Disclosure
CVE-2001-0250—remotemultiple24 ene 2001
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary direc
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0 - Networking Mutex Denial of Service
CVE-2001-0006—doswindows24 ene 2001
The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allo
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WU-FTPD 2.4.2/2.5/2.6 - Debug Mode Client Hostname Format String
CVE-2001-0187—remoteunix23 ene 2001
Format string vulnerability in wu-ftp 2.6.1 and earlier, when running with debug mode enabled, allows remote attackers t
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FreeBSD 3.x/4.x - 'ipfw' Filtering Evasion
CVE-2001-0183—remotefreebsd23 ene 2001
ipfw and ip6fw in FreeBSD 4.2 and earlier allows remote attackers to bypass access restrictions by setting the ECE flag
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
LocalWEB2000 1.1 - Directory Traversal
CVE-2001-0189—localwindows22 ene 2001
Directory traversal vulnerability in LocalWEB2000 HTTP server allows remote attackers to read arbitrary commands via a .
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Baltimore Technologies WEBsweeper 4.0 - Denial of Service
CVE-2001-0460—doswindows22 ene 2001
Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of ser
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
fastream ftp++ 2.0 - Directory Traversal
CVE-2001-0255—remotewindows22 ene 2001
FaSTream FTP++ Server 2.0 allows remote attackers to list arbitrary directories by using the "ls" command and including
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
eEye Digital Security IRIS 1.0.1 - GET Denial of Service
CVE-2001-0184—doswindows21 ene 2001
eEye Iris 1.01 beta allows remote attackers to cause a denial of service via a malformed packet, which causes Iris to cr
23RIESGO
abrir ↗
← anteriorpágina 597 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.