Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.415exploits catalogados
37.908CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
Icecast 1.3.7/1.3.8 - 'print_client()' Format String
CVE-2001-0197—remotewindows21 ene 2001
Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitra
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
RedHat 6.1 - 'man' Local Overflow / Local Privilege Escalation
CVE-2000-0170—locallinux19 ene 2001
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variabl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IMAP4rev1 10.190 - Authentication Stack Overflow
CVE-2000-0284—remotelinux19 ene 2001
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Mysql 3.22.x/3.23.x - Local Buffer Overflow
CVE-2001-1274—locallinux18 ene 2001
Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
NullSoft Winamp 2.64 - '.m3u' Playlist Buffer Overflow
CVE-2000-0624—doswindows17 ene 2001
Buffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: ext
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
tinyproxy tinyproxy 1.3.2/1.3.3 - Remote Heap Overflow
CVE-2001-0129—remotewindows17 ene 2001
Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possi
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
mICQ 0.4.6 - Remote Buffer Overflow
CVE-2001-0233—remotelinux17 ene 2001
Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly exec
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SSH 1.2.x - Secure-RPC Weak Encrypted Authentication
CVE-2001-0259—localunix16 ene 2001
ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generate
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Debian 2.2 - splitvt Format String
CVE-2001-0111—locallinux16 ene 2001
Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile com
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Lotus Domino Server 5.0.x - Directory Traversal (1)
CVE-2001-0009—remotemultiple15 ene 2001
Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7/8-beta - ARP Local Overflow
CVE-2001-0115—localsolaris15 ene 2001
Buffer overflow in arp command in Solaris 7 and earlier allows local users to execute arbitrary commands via a long -f p
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
APC UPS 3.7.2 - 'apcupsd' Local Denial of Service
CVE-2001-0040—doslinux15 ene 2001
APC UPS daemon, apcupsd, saves its process ID in a world-writable file, which allows local users to kill an arbitrary pr
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Seyon 2.1 rev. 4b i586-Linux (RedHat 4.0/5.1) - Local Overflow
CVE-1999-0821—locallinux15 ene 2001
FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows Media Player 7.0 - '.wmz' Arbitrary Java Applet
CVE-2001-0137—remotewindows15 ene 2001
Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosi
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 4 / Outlook 2000/5.5 - 'MSHTML.dll' Crash
CVE-2001-0322—doswindows15 ene 2001
MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of servic
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SuSE 6.x/7.0 - MkDir Error Handling rctab Race Condition (1)
CVE-2001-0109—locallinux13 ene 2001
rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctm
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
HP-UX 11.0 - '/bin/cu' Local Privilege Escalation
CVE-2000-1028—localhp-ux13 ene 2001
Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SuSE 6.x/7.0 - MkDir Error Handling rctab Race Condition (2)
CVE-2001-0109—locallinux13 ene 2001
rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctm
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ProFTPd 1.2.0 pre10 - Remote Denial of Service
CVE-2001-0136—doslinux12 ene 2001
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BSD chpass - 'pw_error(3)' Local Privilege Escalation
CVE-2000-0993—localbsd12 ene 2001
Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Basilix Webmail 0.9.7 - Incorrect File Permissions
CVE-2001-1044—webappsphp11 ene 2001
Basilix Webmail 0.9.7beta, and possibly other versions, stores *.class and *.inc files under the document root and does
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WebMaster ConferenceRoom 1.8 Developer Edition - Denial of Service
CVE-2001-0177—dosmultiple10 ene 2001
WebMaster ConferenceRoom 1.8.1 allows remote attackers to cause a denial of service via a buddy relationship between the
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Borland/Inprise Interbase 4.0/5.0/6.0 - Backdoor Password
CVE-2001-0008—remotemultiple10 ene 2001
Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedur
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ReiserFS 3.5.28 (Linux Kernel) - Code Execution / Denial of Service
CVE-2001-0172—doslinux09 ene 2001
Buffer overflow in ReiserFS 3.5.28 in SuSE Linux allows local users to cause a denial of service and possibly execute ar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ScreenOS 1.73/2.x - Firewall Denial of Service
CVE-2001-0007—dossco08 ene 2001
Buffer overflow in NetScreen Firewall WebUI allows remote attackers to cause a denial of service via a long URL request
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IBM HTTP Server 1.3 - AfpaCache/WebSphereNet.Data Denial of Service
CVE-2001-0122—dosmultiple08 ene 2001
Kernel leak in AfpaCache module of the Fast Response Cache Accelerator (FRCA) component of IBM HTTP Server 1.3.x and Web
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
eXtropia bbs_forum.cgi 1.0 - Arbitrary Command Execution
CVE-2001-0123—remotecgi07 ene 2001
Directory traversal vulnerability in eXtropia bbs_forum.cgi 1.0 allows remote attackers to read arbitrary files via a ..
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Lotus Domino Server 5.0.x - Directory Traversal (2)
CVE-2001-0009—remotemultiple05 ene 2001
Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
WU-FTPD 2.6.0 - Remote Format Strings
CVE-2000-0573—remotesolaris03 ene 2001
The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remo
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ProFTPd 1.2.0 rc2 - Memory Leakage
CVE-2001-0136—doslinux03 ene 2001
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and
35RIESGO
abrir ↗
← anteriorpágina 598 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.