Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.453exploits catalogados
37.908CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
NetWin DNews 5.3 Server - Remote Buffer Overflow
CVE-2000-0423—remotewindows01 mar 2000
Buffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
The ht://Dig Group ht://Dig 3.1.1/3.1.2/3.1.3/3.1.4/3.2 .0b1 - Arbitrary File Inclusion
CVE-2000-0208—remoteunix29 feb 2000
The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name wit
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
HP OpenView OmniBack II 2.55/3.0/3.1 - Denial of Service
CVE-2000-0179—doswindows28 feb 2000
HP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Alex Heiphetz Group eZshopper 3.0 - Remote Command Execution
CVE-2000-0187—remotemultiple27 feb 2000
EZShopper 3.0 loadpage.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execu
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Trend Micro OfficeScan Corporate Edition 3.0/3.5/3.11/3.13 - Denial of Service
CVE-2000-0204—dosmultiple26 feb 2000
The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 1
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
RedHat 4.x/5.x/6.x / RedHat man 1.5 / Turbolinux man 1.5 / Turbolinux 3.5/4.x - 'man' Buffer Overrun (2)
CVE-2000-0170—locallinux26 feb 2000
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variabl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
RedHat 4.x/5.x/6.x / RedHat man 1.5 / Turbolinux man 1.5 / Turbolinux 3.5/4.x - 'man' Buffer Overrun (1)
CVE-2000-0170—locallinux26 feb 2000
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variabl
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FTPx FTP Explorer 1.0.00.10 - Weak Password Encryption
CVE-2000-0214—locallinux25 feb 2000
FTP Explorer uses weak encryption for storing the username, password, and profile of FTP sites.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Nortel Networks Nautica Marlin - Denial of Service
CVE-2000-0221—doshardware25 feb 2000
The Nautica Marlin bridge allows remote attackers to cause a denial of service via a zero length UDP packet to the SNMP
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Sambar Server 4.2 Beta 7 - Batch CGI
CVE-2000-0213—remotewindows24 feb 2000
The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to exec
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Pragma Systems InterAccess TelnetD Server 4.0 - Terminal Configuration
CVE-2000-0212—doswindows24 feb 2000
InterAccess TelnetD Server 4.0 allows remote attackers to conduct a denial of service via malformed terminal client conf
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Corel Linux OS 1.0 - buildxconfig
CVE-2000-0194—locallinux24 feb 2000
buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Corel Linux OS 1.0 - 'setxconf' Local Privilege Escalation
CVE-2000-0195—locallinux24 feb 2000
setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverr
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
RedHat Linux 6.0 - Single User Mode Authentication
CVE-2000-0219—locallinux23 feb 2000
Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Pragma Systems InterAccess TelnetD Server 4.0 Build 4 - Buffer Overflow
CVE-2000-0166—doswindows21 feb 2000
Buffer overflow in the InterAccess telnet server TelnetD allows remote attackers to execute commands via a long login na
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Sun Workshop 5.0 - Licensing Manager Symlink
CVE-2000-0210—localsolaris21 feb 2000
The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary file
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FreeBSD 3.0/3.1/3.2/3.3/3.4 - 'Asmon'/'Ascpu' Local Privilege Escalation
CVE-2000-0163—localfreebsd19 feb 2000
asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows 95/98/NT 4.0 - 'autorun.inf' Code Execution
CVE-2000-0155—localwindows18 feb 2000
Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alte
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
MySQL 3.22.27/3.22.29/3.23.8 - GRANT Global Password Changing
CVE-2000-0045—localmultiple15 feb 2000
MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SCO Unixware 7.1/7.1.1 - ARCserver /tmp Symlink
CVE-2000-0154—localsco15 feb 2000
The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft IIS 4.0 - Pickup Directory Denial of Service
CVE-2000-0167—doswindows15 feb 2000
IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SCO Unixware 7.1/7.1.1 - ARCserver /tmp Symlink
CVE-2000-0224—localsco15 feb 2000
ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netopia Timbuktu Pro Remote Control 2.0/5.2.1 - Denial of Service
CVE-2000-0142—dosmultiple11 feb 2000
The authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
True North Software Internet Anywhere Mail Server 3.1.3 - RETR Denial of Service
CVE-2000-0139—doswindows10 feb 2000
Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Zeus Web Server 3.x - Null Terminated Strings
CVE-2000-0149—remotecgi08 feb 2000
Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end o
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Novell Groupwise Enhancement Pack 5.5 Enhancement Pack - Denial of Service
CVE-2000-0146—dosnovell07 feb 2000
The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Daniel Beckham The Finger Server 0.82 Beta - Pipe
CVE-2000-0128—remotecgi04 feb 2000
The Finger Server 0.82 allows remote attackers to execute commands via shell metacharacters.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Cat Soft Serv-U FTP Server 2.5/a/b (Windows 95/98/2000/NT 4.0) - Shortcut
CVE-2000-0129—remotewindows04 feb 2000
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of servi
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Novell BorderManager 3.0/3.5 Audit Trail Proxy - Denial of Service
CVE-2000-0152—dosnovell04 feb 2000
Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connect
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Wired Community Software WWWThreads 5.0 - SQL Command Input
CVE-2000-0125—remotecgi03 feb 2000
wwwthreads does not properly cleanse numeric data or table names that are passed to SQL queries, which allows remote att
23RIESGO
abrir ↗
← anteriorpágina 616 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.