Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.453exploits catalogados
37.908CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5.0/4.0.1 - hhopen OLE Control Buffer Overflow
CVE-1999-1575—remotewindows27 sep 1999
The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumb
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2 - Predictable TCP Initial Sequence Number
CVE-2001-0328—remotelinux27 sep 1999
TCP implementations that use random increments for initial sequence numbers (ISN) can allow remote attackers to perform
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Adobe Acrobat ActiveX Control 1.3.188 - ActiveX Buffer Overflow
CVE-1999-1576—remotewindows27 sep 1999
Buffer overflow in Adobe Acrobat ActiveX control (pdf.ocx, PDF.PdfCtrl.1) 1.3.188 for Acrobat Reader 4.0 allows remote a
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2 - Predictable TCP Initial Sequence Number
CVE-2002-1463—remotelinux27 sep 1999
Symantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor Models 500/700/1000 and 1100/120
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2 - Predictable TCP Initial Sequence Number
CVE-1999-0077—remotelinux27 sep 1999
Predictable TCP sequence numbers allow spoofing.
35RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Linux Kernel 2.2 - Predictable TCP Initial Sequence Number
CVE-2001-1104—remotelinux27 sep 1999
SonicWALL SOHO uses easily predictable TCP sequence numbers, which allows remote attackers to spoof or hijack sessions.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Mandriva Linux Mandrake 6.0 / Gnome Libs 1.0.8 - 'espeaker' Local Buffer Overflow
CVE-1999-1477—locallinux26 sep 1999
Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in program
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Knox Arkeia 4.0 Backup - Local Overflow
CVE-1999-1534—locallinux26 sep 1999
Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root ac
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
NCSA 1.3/1.4.x/1.5 / Apache HTTPd 0.8.11/0.8.14 - ScriptAlias Source Retrieval
CVE-1999-0236—remotemultiple25 sep 1999
ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SuSE Linux 6.2 sscw - HOME Environment Variable Buffer Overflow
CVE-1999-0906—locallinux23 sep 1999
Buffer overflow in sccw allows local users to gain root access via the HOME environmental variable.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7.0 - Recursive mutex_enter Remote Panic (Denial of Service)
CVE-1999-0908—dossolaris23 sep 1999
Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result o
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FreeBSD 3.0/3.1/3.2 - 'vfs_cache' Denial of Service
CVE-1999-0912—dosfreebsd22 sep 1999
FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 2.6 - Profiling File Creation
CVE-1999-0786—localsolaris22 sep 1999
The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable an
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Martin Schulze Cfingerd 1.4.2 - GECOS Buffer Overflow
CVE-1999-0708—localfreebsd21 sep 1999
Buffer overflow in cfingerd allows local users to gain root privileges via a long GECOS field.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
SSH Communications Security SSH 1.2.27 - Authentication Socket File Creation
CVE-1999-0787—locallinux17 sep 1999
The SSH authentication agent follows symlinks via a UNIX domain socket.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ProFTPd 1.2 pre6 - 'snprintf' Remote Root
CVE-2000-0824—remotelinux17 sep 1999
The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/SP1/SP2/SP3/SP4/SP5 - RASMAN Privilege Escalation
CVE-1999-0886—localwindows17 sep 1999
The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Man
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
DIGITAL UNIX 4.0 d/f / AIX 4.3.2 / CDE 2.1 / IRIX 6.5.14 / Solaris 7.0 / SunOS 4.1.4 - Local Buffer Overflow
CVE-1999-0693—locallinux13 sep 1999
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FuseWare FuseMail 2.7 - POP Mail Buffer Overflow
CVE-1999-0759—remotewindows13 sep 1999
Buffer overflow in FuseMAIL POP service via long USER and PASS commands.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netscape Enterprise Server 3.51/3.6 SP2 - Accept Buffer Overflow
CVE-1999-0751—remotemultiple13 sep 1999
Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Computalynx CMail 2.3 SP2/2.4 - SMTP Buffer Overflow
CVE-1999-1521—remotewindows13 sep 1999
Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vulnerable to a buffer overflow attack in the MAIL FROM command
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Common Desktop Environment 2.1 20 / Solaris 7.0 - 'dtspcd' Local Privilege Escalation
CVE-1999-0689—localmultiple13 sep 1999
The CDE dtspcd daemon allows local users to execute arbitrary commands via a symlink attack.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
DIGITAL UNIX 4.0 d/e/f / AIX 4.3.2 / CDE 2.1 / IRIX 6.5.14 / Solaris 7.0 - Local Buffer Overflow
CVE-1999-0691—localmultiple13 sep 1999
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a lo
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5 / Netscape Communicator 4.0/4.5/4.6 - JavaScript STYLE
CVE-1999-0750—remotemultiple13 sep 1999
Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the us
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Solaris 7.0 /usr/bin/mail - '-m' Local Buffer Overflow
CVE-1999-1014—localsolaris12 sep 1999
Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 4.0.1/5 - Import/Export Favorites
CVE-1999-0702—remotewindows10 sep 1999
Internet Explorer 5.0 and 5.01 allows remote attackers to modify or execute files via the Import/Export Favorites featur
28RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
FreeBSD 5.0 / NetBSD 1.4.2 / OpenBSD 2.7 - 'setsockopt()' Denial of Service
CVE-2000-0489—dosbsd05 sep 1999
FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs u
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
ISC INN 2.2 / RedHat Linux 6.0 - inews Buffer Overflow
CVE-1999-0705—localmultiple02 sep 1999
Buffer overflow in INN inews program.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
Netscape Communicator 4.06/4.5/4.6/4.51/4.61 - EMBED Buffer Overflow
CVE-1999-0685—remotewindows02 sep 1999
Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option.
23RIESGO
abrir ↗
Exploit-DB✓ VexDay Proof
BSD/OS 3.1/4.0.1 / FreeBSD 3.0/3.1/3.2 / RedHat Linux 6.0 - 'amd' Remote Buffer Overflow (1)
CVE-1999-0704—remoteunix31 ago 1999
Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
23RIESGO
abrir ↗
← anteriorpágina 623 / 824siguiente →

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.