Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
78.794exploits catalogados
36.057CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.459Referência 22.721GitHub PoC 14.946VulnCheck XDB 8829Nuclei 4350Metasploit 3489✓ solo verificadosrecientespopularesriesgo
24.458 exploits
Exploit-DB✓ VexDay Proof
OpenSSL ASN.1 < 0.9.6j/0.9.7b - Brute Forcer for Parsing Bugs
Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote attackers to cause a denial of service (crash) via an SSL clie
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC2' Universal / Denial of Service (RPC3) (MS03-039)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OpenSSL - ASN.1 Parsing
The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial o
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP-UX 11 CDE DTPrintInfo - Display Environment Variable Buffer Overflow
Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root pri
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SuSE Linux Professional 8.2 - SuSEWM Configuration File Insecure Temporary File
SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symli
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
JBoss 3.0.8/3.2.1 - HSQLDB Remote Command Injection
Unknown vulnerability in the HSQLDB component in JBoss 3.2.1 and 3.0.8 on Java 1.4.x platforms, when running in the defa
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SLocate 2.6 - User-Supplied Database Heap Overflow
Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileg
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ProFTPd 1.2.9 rc2 - '.ASCII' File Remote Code Execution (1)
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, whi
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
EternalMart Mailing List Manager 1.32 - Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in EternalMart Mailing List Manager (EMLM) 1.32 allow remote attacker
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco LEAP - Password Disclosure
The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary att
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
WebFS 1.x - 'Pathname' Buffer Overrun
Stack-based buffer overflow in webfs before 1.20 allows attackers to execute arbitrary code by creating directories that
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GNU CFEngine 2.-2.0.3 - Remote Stack Overflow
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 - Universal Database 7.2 'db2licm' Local Overflow
Buffer overflow in db2licm in IBM DB2 Universal Data Base 7.2 before Fixpak 10a allows local users to gain root privileg
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
marbles 1.0.1 - Local Home Environment Variable Buffer Overflow
Buffer overflow in marbles 1.0.2 and earlier allows local users to gain privileges via a long HOME environment variable.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
MPlayer 0.9/1.0 - Streaming ASX Header Parsing Buffer Overrun
Multiple buffer overflows in asf_http_request of MPlayer before 0.92 allows remote attackers to execute arbitrary code v
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GNU CFEngine 2.0.x - CFServD Transaction Packet Buffer Overrun (1)
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain pac
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
MPG123 0.59 - Remote File Play Heap Corruption
Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbi
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ProFTPd 1.2.7/1.2.8 - '.ASCII' File Transfer Buffer Overrun
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, whi
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Plug And Play Web Server 1.0 002c - FTP Service Command Handler Buffer Overflow
Multiple buffer overflows in the FTP service in Plug and Play Web Server 1.0002c allow remote attackers to cause a denia
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
hztty 2.0 (RedHat 9.0) - Local Privilege Escalation
Multiple buffer overflows in hztty 2.0 allow local users to gain root privileges.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM2' Remote (MS03-039)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Knox Arkeia Pro 5.1.12 - Backup Remote Code Execution
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LSH 1.x - Remote Buffer Overflow (1)
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) cli
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris Sadmind - Default Configuration Remote Code Execution
The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attack
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LSH 1.x - Remote Buffer Overflow (2)
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) cli
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM DB2 db2dart - Buffer Overflow
Buffer overflow in db2dart in IBM DB2 Universal Data Base 7.2 before Fixpak 10 allows local users to gain root privilege
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sendmail 8.12.9 - 'Prescan()' Variant Remote Buffer Overrun
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Long Filename Overflow (MS03-026)
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Pine 4.56 - Remote Buffer Overflow
Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-b
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Nokia Electronic Documentation 5.0 - Path Disclosure
Nokia Electronic Documentation (NED) 5.0 allows remote attackers to obtain a directory listing of the WebLogic web root,
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.