Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.417exploits catalogados
37.908CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
tcpdump 3.4/3.5 - AFS ACL Packet Buffer Overflow
CVE-2000-1026—remoteunix02 ene 2001
Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
GTK+ 1.2.8 - Arbitrary Loadable Module Execution
CVE-2001-0084—localunix02 ene 2001
GTK+ library allows local users to specify arbitrary modules via the GTK_MODULES environmental variable, which could all
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Sendmail 8.11.x (Linux/i386) - Local Privilege Escalation
CVE-2002-1337—locallinux01 ene 2001
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted addre
45RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows Media Player 7.0 - JavaScript URL
CVE-2001-0148—remotewindows01 ene 2001
The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via j
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Technote 2000/2001 - 'Filename' Command Execution / File Disclosure
CVE-2001-0075—remotecgi27 dic 2000
Directory traversal vulnerability in main.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
LICQ 0.85/1.0.1/1.0.2 - Remote Buffer Overflow
CVE-2001-0440—remoteunix26 dic 2000
Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and poss
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Technote 2000/2001 - 'board' File Disclosure
CVE-2001-0074—remotecgi23 dic 2000
Directory traversal vulnerability in print.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Infinite Interchange 3.61 - Denial of Service
CVE-2001-0097—doswindows21 dic 2000
The Web interface for Infinite Interchange 3.6.1 allows remote attackers to cause a denial of service (application crash
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
HP OpenView OmniBack II - Generic Remote Command Execution
CVE-2001-0311—remotemultiple21 dic 2000
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack c
43RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Brian Stanback bsguest.cgi 1.0 - Remote Command Execution
CVE-2001-0099—remotecgi20 dic 2000
bsguest.cgi guestbook script allows remote attackers to execute arbitrary commands via shell metacharacters in the email
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ProFTPd 1.2 - 'SIZE' Remote Denial of Service
CVE-2001-0136—doslinux20 dic 2000
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Brian Stanback bslist.cgi 1.0 - Remote Command Execution
CVE-2001-0100—remotecgi20 dic 2000
bslist.cgi mailing list script allows remote attackers to execute arbitrary commands via shell metacharacters in the ema
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SunOS 5.7 Catman - Local Insecure tmp Symlink Clobber
CVE-2001-0095—dossolaris20 dic 2000
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID tempo
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
OpenBSD ftpd 2.6/2.7 - Remote Overflow
CVE-2001-0053—remotebsd20 dic 2000
One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Itetris 1.6.1/1.6.2 - Privileged Arbitrary Command Execution
CVE-2001-0087—locallinux19 dic 2000
itetris/xitetris 1.6.2 and earlier trusts the PATH environmental variable to find and execute the gunzip program, which
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BEA Systems WebLogic Server 4.0 x/4.5 x/5.1 x - Double Dot Buffer Overflow
CVE-2001-0098—remotemultiple19 dic 2000
Buffer overflow in Bea WebLogic Server before 5.1.0 allows remote attackers to execute arbitrary commands via a long URL
45RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.7/2.8 Catman - Local Insecure tmp Symlink
CVE-2001-0095—doswindows19 dic 2000
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID tempo
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.5.1/2.6/7.0/8 - patchadd Race Condition
CVE-2001-0059—localsolaris18 dic 2000
patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BSD ftpd 0.3.2 - Single Byte Buffer Overflow
CVE-2001-0053—remoteunix18 dic 2000
One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Oops! 1.4.6 - one russi4n proxy-server Heap Buffer Overflow
CVE-2001-0029—remotebsd15 dic 2000
Buffer overflow in oops WWW proxy server 1.4.6 (and possibly other versions) allows remote attackers to execute arbitrar
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
LPRng 3.6.24-1 - Remote Command Execution
CVE-2000-0917—remotelinux15 dic 2000
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary comman
60RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
xsoldier 0.96 (RedHat 6.2) - Local Buffer Overflow
CVE-1999-1008—locallinux15 dic 2000
xsoldier program allows local users to gain root access via a long argument.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Leif M. Wright simplestguest.cgi 2.0 - Remote Command Execution
CVE-2001-0022—remotecgi14 dic 2000
simplestguest.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharact
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Check Point Software Firewall-1 4.1 SP2 - Fast Mode TCP Fragment
CVE-2001-0082—remotemultiple14 dic 2000
Check Point VPN-1/FireWall-1 4.1 SP2 with Fastmode enabled allows remote attackers to bypass access restrictions via mal
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
alex heiphetz Group eZshopper 2.0/3.0 - Directory Traversal
CVE-2000-1092—remotemultiple13 dic 2000
loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data d
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cisco Catalyst 4000/5000/6000 6.1 - SSH Protocol Mismatch Denial of Service
CVE-2001-0080—doshardware13 dic 2000
Cisco Catalyst 6000, 5000, or 4000 switches allow remote attackers to cause a denial of service by connecting to the SSH
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
AOL Instant Messenger 3.5.1856/4.0/4.1.2010/4.2.1193 - 'aim://' Remote Buffer Overflow
CVE-2000-1093—remotewindows12 dic 2000
Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a lon
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
AOL Instant Messenger 4.0/4.1.2010/4.2.1193 - BuddyIcon Buffer Overflow
CVE-2000-1094—remotewindows12 dic 2000
Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
RedHat Linux 7.0 - Roaring Penguin PPPoE Denial of Service
CVE-2001-0026—doslinux11 dic 2000
rp-pppoe PPPoE client allows remote attackers to cause a denial of service via the Clamp MSS option and a TCP packet wit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
LPRng (RedHat 7.0) - 'lpd' Format String
CVE-2000-0917—remotelinux11 dic 2000
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary comman
60RIESGO
abrir ↗
← anteriorpágina 599 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.