Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
78.958exploits catalogados
36.206CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.460Referência 22.832GitHub PoC 14.991VulnCheck XDB 8829Nuclei 4357Metasploit 3489✓ solo verificadosrecientespopularesriesgo
24.458 exploits
Exploit-DB✓ VexDay Proof
Microsoft Windows 2000/XP - SMB Authentication Remote Overflow
Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Xoops 1.3.x/2.0 MyTextSanitizer - HTML Injection
Cross-site scripting (XSS) vulnerability in the MytextSanitizer function in XOOPS 1.3.5 through 1.3.9 and XOOPS 2.0 thro
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.x - 'enq' Local Buffer Overflow
Buffer overflow in enq command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a lo
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Libopt.a 3.1x - Error Logging Buffer Overflow (2)
Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, m
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Libopt.a 3.1x - Error Logging Buffer Overflow (1)
Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, m
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Battleaxe Software BTTLXE Forum - 'login.asp' SQL Injection
SQL injection vulnerability in bttlxeForum 2.0 beta 3 and earlier allows remote attackers to bypass authentication via t
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5 - Remote 'URLMON.dll' Remote Buffer Overflow
Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute arbitr
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Snort 1.9.1 - 'p7snort191.sh' Remote Command Execution
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to exec
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SAP Database 7.3/7.4 - SDBINST Race Condition
Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initia
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Xinetd 2.1.x/2.3.x - Rejected Connection Memory Leakage Denial of Service
Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large numbe
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PoPToP PPTP 1.1.4-b3 - Remote Command Execution
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX 10.2.4 - DirectoryService 'PATH' Local Privilege Escalation
DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.3.x/5.1 - 'ERRPT' Local Buffer Overflow
Buffer overflow in errpt in AIX 4.3.3 allows local users to execute arbitrary code as root.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache Mod_Access_Referer 1.0.2 - Null Pointer Dereference Denial of Service
mod_access_referer 1.0.2 allows remote attackers to cause a denial of service (crash) via a malformed Referer header tha
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (1)
FUNC.pm in IkonBoard 3.1.2a and earlier, including 3.1.1, does not properly cleanse the "lang" cookie when it contains i
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel < 2.4.20 - Module Loader Privilege Escalation
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root p
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.x - 'call_trans2open' Remote Buffer Overflow (1)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache 2.0.44 (Linux) - Remote Denial of Service
A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via
45RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba < 2.2.8 (Linux/BSD) - Remote Code Execution
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.2.x/2.4.x - Privileged Process Hijacking Privilege Escalation (2)
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root p
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PoPToP PPTP 1.0/1.1.x - Negative 'read()' Argument Remote Buffer Overflow
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PoPToP < 1.1.3-b3/1.1.3-20030409 - Negative Read Overflow (Metasploit)
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache 2.x - Memory Leak
A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via
45RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SETI@home Clients - Remote Buffer Overflow
Buffer overflow in the SETI@home client 3.03 and other versions allows remote attackers to cause a denial of service (cl
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.0 < 2.2.8 (OSX) - trans2open Overflow (Metasploit)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.x - 'call_trans2open' Remote Buffer Overflow (2)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.x - 'call_trans2open' Remote Buffer Overflow (4)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.x - Remote Buffer Overflow
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Vignette StoryServer 4.1 - Sensitive Stack Memory Information Disclosure
Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to r
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.x - 'nttrans' Remote Overflow (Metasploit)
Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-
45RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.