Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.417exploits catalogados
37.908CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.482Referência 24.237GitHub PoC 15.617VulnCheck XDB 9134Nuclei 4441Metasploit 3506✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
tcpdump 3.4/3.5 - AFS ACL Packet Buffer Overflow
Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GTK+ 1.2.8 - Arbitrary Loadable Module Execution
GTK+ library allows local users to specify arbitrary modules via the GTK_MODULES environmental variable, which could all
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sendmail 8.11.x (Linux/i386) - Local Privilege Escalation
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted addre
45RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Media Player 7.0 - JavaScript URL
The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via j
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Technote 2000/2001 - 'Filename' Command Execution / File Disclosure
Directory traversal vulnerability in main.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LICQ 0.85/1.0.1/1.0.2 - Remote Buffer Overflow
Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and poss
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Technote 2000/2001 - 'board' File Disclosure
Directory traversal vulnerability in print.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Infinite Interchange 3.61 - Denial of Service
The Web interface for Infinite Interchange 3.6.1 allows remote attackers to cause a denial of service (application crash
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP OpenView OmniBack II - Generic Remote Command Execution
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack c
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Brian Stanback bsguest.cgi 1.0 - Remote Command Execution
bsguest.cgi guestbook script allows remote attackers to execute arbitrary commands via shell metacharacters in the email
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ProFTPd 1.2 - 'SIZE' Remote Denial of Service
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Brian Stanback bslist.cgi 1.0 - Remote Command Execution
bslist.cgi mailing list script allows remote attackers to execute arbitrary commands via shell metacharacters in the ema
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SunOS 5.7 Catman - Local Insecure tmp Symlink Clobber
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID tempo
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBSD ftpd 2.6/2.7 - Remote Overflow
One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Itetris 1.6.1/1.6.2 - Privileged Arbitrary Command Execution
itetris/xitetris 1.6.2 and earlier trusts the PATH environmental variable to find and execute the gunzip program, which
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BEA Systems WebLogic Server 4.0 x/4.5 x/5.1 x - Double Dot Buffer Overflow
Buffer overflow in Bea WebLogic Server before 5.1.0 allows remote attackers to execute arbitrary commands via a long URL
45RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.7/2.8 Catman - Local Insecure tmp Symlink
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID tempo
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.5.1/2.6/7.0/8 - patchadd Race Condition
patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BSD ftpd 0.3.2 - Single Byte Buffer Overflow
One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Oops! 1.4.6 - one russi4n proxy-server Heap Buffer Overflow
Buffer overflow in oops WWW proxy server 1.4.6 (and possibly other versions) allows remote attackers to execute arbitrar
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LPRng 3.6.24-1 - Remote Command Execution
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary comman
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
xsoldier 0.96 (RedHat 6.2) - Local Buffer Overflow
xsoldier program allows local users to gain root access via a long argument.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Leif M. Wright simplestguest.cgi 2.0 - Remote Command Execution
simplestguest.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharact
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Check Point Software Firewall-1 4.1 SP2 - Fast Mode TCP Fragment
Check Point VPN-1/FireWall-1 4.1 SP2 with Fastmode enabled allows remote attackers to bypass access restrictions via mal
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
alex heiphetz Group eZshopper 2.0/3.0 - Directory Traversal
loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data d
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco Catalyst 4000/5000/6000 6.1 - SSH Protocol Mismatch Denial of Service
Cisco Catalyst 6000, 5000, or 4000 switches allow remote attackers to cause a denial of service by connecting to the SSH
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AOL Instant Messenger 3.5.1856/4.0/4.1.2010/4.2.1193 - 'aim://' Remote Buffer Overflow
Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a lon
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AOL Instant Messenger 4.0/4.1.2010/4.2.1193 - BuddyIcon Buffer Overflow
Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 7.0 - Roaring Penguin PPPoE Denial of Service
rp-pppoe PPPoE client allows remote attackers to cause a denial of service via the Clamp MSS option and a TCP packet wit
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LPRng (RedHat 7.0) - 'lpd' Format String
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary comman
60RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.