Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.453exploits catalogados
37.908CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
FreeBSD 3.3 - 'xmindpath' Local Buffer Overflow
CVE-1999-0823—localfreebsd01 dic 1999
Buffer overflow in FreeBSD xmindpath allows local users to gain privileges via -f argument.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7.0 - 'kcms_configure' Local Overflow / Local Privilege Escalation
CVE-1999-0818—localsolaris30 nov 1999
Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Qualcomm qpopper 3.0/3.0 b20 - Remote Buffer Overflow (1)
CVE-1999-0822—remoteunix30 nov 1999
Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7.0 - CDE dtmail/mailtool Buffer Overflow
CVE-1999-0841—localsolaris30 nov 1999
Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Qualcomm qpopper 3.0/3.0 b20 - Remote Buffer Overflow (2)
CVE-1999-0822—remoteunix30 nov 1999
Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 4.1/5.0/4.0.1 - Subframe Spoofing
CVE-1999-0869—remotewindows30 nov 1999
Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of another web site, aka
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
symantec mail-gear 1.0 - Directory Traversal
CVE-1999-0842—remotemultiple29 nov 1999
Symantec Mail-Gear 1.0 web interface server allows remote users to read arbitrary files via a .. (dot dot) attack.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Alt-N WorldClient Pro 2.0.0.0/2.0.1.0/Standard 2.0.0.0 - Long URL Denial of Service
CVE-1999-0844—doswindows26 nov 1999
Denial of service in MDaemon WorldClient and WebConfig services via a long URL.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SCO Unixware 7.0/7.0.1/7.1 - Xsco Buffer Overflow
CVE-1999-0830—localsco25 nov 1999
Buffer overflow in SCO UnixWare Xsco command via a long argument.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Alt-N MDaemon 2.8.5 - WebConfig Overflow Denial of Service
CVE-1999-0844—doswindows24 nov 1999
Denial of service in MDaemon WorldClient and WebConfig services via a long URL.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SunOS 4.1.1 - '/usr/release/bin/makeinstall' Local Privilege Escalation
CVE-1999-1123—localsolaris23 nov 1999
The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) ma
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
OpenLinux 2.3/2.4 / RedHat 6.0/6.1 / SCO eServer 2.3 - Denial of Service
CVE-2000-0531—doslinux23 nov 1999
Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft SQL Server 7.0/7.0 SP1 - NULL Data Denial of Service
CVE-1999-0999—doswindows19 nov 1999
Microsoft SQL 7.0 server allows a remote attacker to cause a denial of service via a malformed TDS packet.
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Tektronix Phaser Network Printer 740/750/750DP/840/930 PhaserLink WebServer - Retrieve Administrator Password
CVE-1999-1508—remotehardware17 nov 1999
Web server in Tektronix PhaserLink Printer 840.0 and earlier allows a remote attacker to gain administrator access by di
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Gene6 G6 FTP Server 2.0 - Buffer Overflow (Denial of Service) (PoC)
CVE-1999-1519—doswindows17 nov 1999
Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a denial of service (resource exhaustion) via a long (1) user
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows 95/98/Enterprise Server 4/NT Server 4/Terminal Server 4/Workstation 4 - Riched Buffer Overflow
CVE-2000-0073—localwindows17 nov 1999
Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Matt Wright - 'FormHandler.cgi' 2.0 Reply Attachment
CVE-1999-1050—remoteunix16 nov 1999
Directory traversal vulnerability in Matt Wright FormHandler.cgi script allows remote attackers to read arbitrary files
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Admiral Systems EmailClub 1.0.0.5 - Remote Buffer Overflow
CVE-1999-1190—remotewindows15 nov 1999
Buffer overflow in POP3 server of Admiral Systems EmailClub 1.05 allows remote attackers to execute arbitrary commands v
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5 Media Player - ActiveX Error Message
CVE-1999-1110—remotewindows14 nov 1999
Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ETL Delegate 5.9.x/6.0.x - Remote Buffer Overflow
CVE-2000-0165—remotelinux13 nov 1999
The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SunOS 4.1.1 - '/usr/release/bin/winstall' Local Privilege Escalation
CVE-1999-1123—localaix12 nov 1999
The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) ma
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
QPC Software QVT Term 4.3/QVT/Net 4.3 Suite FTP Server - Denial of Service
CVE-1999-1539—doswindows10 nov 1999
Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attack
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ISC BIND 8.2.2 / IRIX 6.5.17 / Solaris 7.0 - NXT Overflow / Denial of Service
CVE-1999-0848—dosunix10 nov 1999
Denial of service in BIND named via consuming more than "fdmax" file descriptors.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
CGI City CC Whois 1.0 - MetaCharacter
CVE-1999-0985—remotecgi09 nov 1999
CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
IrfanView32 3.0.7 - Image File Buffer Overflow
CVE-1999-1112—localwindows09 nov 1999
Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after t
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows 95/98 - UNC Buffer Overflow (2)
CVE-2000-0330—remotewindows09 nov 1999
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name st
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows 95/98 - UNC Buffer Overflow (1)
CVE-2000-0330—remotewindows09 nov 1999
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name st
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Muhammad M. Saggaf Seyon 2.14b - Relative Path
CVE-1999-0820—localfreebsd08 nov 1999
FreeBSD seyon allows users to gain privileges via a modified PATH variable for finding the xterm and seyon-emu commands.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 4.x/5 / Outlook 2000 0/98 0/Express 4.x - ActiveX '.CAB' File Execution
CVE-2000-0329—remotewindows08 nov 1999
A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedd
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
TransSoft Broker FTP Server 3.0 x/4.0 - User Name Buffer Overflow
CVE-2000-1116—remotewindows08 nov 1999
Buffer overflow in TransSoft Broker FTP Server before 4.3.0.1 allows remote attackers to cause a denial of service and p
23RIESGO
abrir ↗
← anteriorpágina 620 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.