Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
81.524exploits catalogados
37.962CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.482Referência 24.284GitHub PoC 15.675VulnCheck XDB 9136Nuclei 4441Metasploit 3506✓ solo verificadosrecientespopularesriesgo
24.695 exploits
Exploit-DB✓ VexDay Proof
Solaris 2.5.1 - License Manager
Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP-UX 10.x/11.x - Aserver PATH
The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate P
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Xi Graphics Maximum CDE 1.2.3/TriTeal TED CDE 4.3/Sun Solaris 2.5.1 - ToolTalk RPC Service Overflow (1)
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Xi Graphics Maximum CDE 1.2.3/TriTeal TED CDE 4.3/Sun Solaris 2.5.1 - ToolTalk RPC Service Overflow (2)
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 5.1 / Caldera OpenLinux Standard 1.2 - Mountd
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Netscape Enterprise Server 3.x/4.x - PageServices Information Disclosure
Netscape Enterprise servers may list files through the PageServices query.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM Scalable POWERparallel (SP) 2.0 - 'sdrd' File Read
sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Hylafax 4.0 pl2 Faxsurvey - Remote Command Execution
Hylafax faxsurvey CGI script on Linux allows remote attackers to execute arbitrary commands via shell metacharacters in
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache 1.2.5/1.3.1 / UnityMail 2.0 - MIME Header Denial of Service
Apache allows remote attackers to conduct a denial of service via a large number of MIME headers.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache 1.2.5/1.3.1 / UnityMail 2.0 - MIME Header Denial of Service
UnityMail allows remote attackers to conduct a denial of service via a large number of MIME headers.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.4 - 'ioconfig' Local Privilege Escalation
ioconfig on SGI IRIX 6.4 S2MP for Origin/Onyx2 allows local users to gain root access using relative pathnames.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Netscape Messaging Server 3.55 & University of Washington imapd 10.234 - Remote Buffer Overflow
Arbitrary command execution via IMAP buffer overflow in authenticate command.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun Solaris 2.6 - power management
Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspe
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP JetAdmin 1.0.9 Rev. D - symlink
HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on t
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Slackware Linux 3.5 - '/etc/group' Local Privilege Escalation
login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Ray Chan WWW Authorization Gateway 0.1 - Command Execution
Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote attackers to execute arbitrary commands via shell metac
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Ralf S. Engelschall ePerl 2.2.12 - Handling of ISINDEX Query
ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.0/2.1 - Send a SIGIO Signal To Any Process
Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Metainfo Sendmail 2.0/2.5 / MetaIP 3.1 - Upload / Execute Read Scripts
MetaInfo MetaWeb web server allows users to upload, execute, and read scripts.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
NetBSD 1.3.2 / SGI IRIX 6.5.1 - 'at(1)' Read File
The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submit
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Qualcomm qpopper 2.4 - POP Server Buffer Overflow (2)
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long
53RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Qualcomm qpopper 2.4 - POP Server Buffer Overflow (1)
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long
53RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 4.2 / SGI IRIX 6.3 / Solaris 2.6 - 'mailx' (2)
Buffer overflow in SGI IRIX mailx program.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
textcounter.pl 1.2 - Arbitrary Command Execution
The textcounter.pl by Matt Wright allows remote attackers to execute arbitrary commands via shell metacharacters.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 4.2 / SGI IRIX 6.3 / Solaris 2.6 - 'mailx' (1)
Buffer overflow in SGI IRIX mailx program.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cheyenne Inoculan for Windows NT 4.0 - Share
Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FUL
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
AMD K6 Processor - Denial of Service
Bug in AMD K6 processor on Linux 2.0.x and 2.1.x kernels allows local users to cause a denial of service (crash) via a p
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Allaire ColdFusion Server 4.0.1 - 'CFCRYPT.EXE' Decrypt Pages
The ColdFusion CFCRYPT program for encrypting CFML templates has weak encryption, allowing attackers to decrypt the temp
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Fred N. van Kempen dip 3.3.7 - Local Buffer Overflow (2)
The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Fred N. van Kempen dip 3.3.7 - Local Buffer Overflow (1)
The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.