Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
79.107exploits catalogados
36.322CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.464Referência 22.936GitHub PoC 15.010VulnCheck XDB 8846Nuclei 4361Metasploit 3490✓ solo verificadosrecientespopularesriesgo
24.458 exploits
Exploit-DB✓ VexDay Proof
Active Classifieds 1.0 - Arbitrary Code Execution
admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify th
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 8 libsldap - Local Buffer Overflow (2)
Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco IOS 11.x/12.x - HTTP Configuration Arbitrary Administrative Access (2)
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when lo
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco IOS 11.x/12.x - HTTP Configuration Arbitrary Administrative Access (1)
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when lo
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco IOS 11.x/12.x - HTTP Configuration Arbitrary Administrative Access (4)
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when lo
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Icecast 1.1.x/1.3.x - Directory Traversal
Directory traversal vulnerability in Icecast 1.3.10 and earlier allows remote attackers to read arbitrary files via a mo
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX 10 - nidump Password File Disclosure
nidump on MacOS X before 10.3 allows local users to read the encrypted passwords from the password file by specifying pa
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 8 libsldap - Local Buffer Overflow (1)
Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Icecast 1.1.x/1.3.x - Slash File Name Denial of Service
Icecast 1.3.7, and other versions before 1.3.11 with HTTP server file streaming support enabled allows remote attackers
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
XFree86 X11R6 3.3 XDM - Session Cookie Guessing
XDM in XFree86 3.3 and 3.3.3 generates easily guessable cookies using gettimeofday() when compiled with the HasXdmXauth
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.0.x/2.2 - Arbitrary File Creation
Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remot
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
GNU groff 1.1x - xploitation Via LPD
Format string vulnerability in pic utility in groff 1.16.1 and other versions, and jgroff before 1.15, allows remote att
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
teTeX 1.0.7 - Filters Temporary File Race Condition
teTeX filter before 1.0.7 allows local users to gain privileges via a symlink attack on temporary files that are produce
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
1C: Arcadia Internet Store 1.0 - Path Disclosure
tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to discover the full path to the working directory v
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Visual Studio RAD Support - Remote Buffer Overflow
Buffer overflow in Microsoft Visual Studio RAD Support sub-component of FrontPage Server Extensions allows remote attack
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
KDE KTVision 0.1 - File Overwrite
KDE ktvision 0.1.1-271 and earlier allows local attackers to gain root privileges via a symlink attack on a user configu
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Index Server 2.0 / Indexing Service (Windows 2000) - ISAPI Extension Buffer Overflow (2)
Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier a
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Visual Studio RAD Support - Remote Buffer Overflow (MS03-051) (Metasploit)
Buffer overflow in Microsoft Visual Studio RAD Support sub-component of FrontPage Server Extensions allows remote attack
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
eXtremail 1.x/2.1 - Remote Format String (1)
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privile
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
cfingerd 1.4.1/1.4.2/1.4.3 Utilities - Local Buffer Overflow (1)
Buffer overflow in cfingerd 1.4.3 and earlier with the ALLOW_LINE_PARSING option enabled allows local users to execute a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Cerberus FTP Server 1.x - Buffer Overflow (Denial of Service) (PoC)
Cerberus FTP 1.5 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code,
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun SunVTS 4.x - PTExec Buffer Overflow
Buffer overflow in ptexec in the Sun Validation Test Suite 4.3 and earlier allows a local user to gain privileges via a
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
1C: Arcadia Internet Store 1.0 - Arbitrary File Disclosure
Directory traversal vulnerability in tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to read arbitra
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
1C: Arcadia Internet Store 1.0 - Denial of Service
tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to cause a denial of service via a URL request with
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
eXtremail 1.x/2.1 - Remote Format String (2)
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privile
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
W3M 0.1/0.2 - Malformed MIME Header Buffer Overflow
Buffer overflow in w3m 0.2.1 and earlier allows a remote attacker to execute arbitrary code via a long base64 encoded MI
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microburst uDirectory 2.0 - Remote Command Execution
udirectory.pl in Microburst Technologies uDirectory 2.0 and earlier allows remote attackers to execute arbitrary command
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Index Server 2.0 / Indexing Service (Windows 2000) - ISAPI Extension Buffer Overflow (3)
Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier a
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Index Server 2.0 / Indexing Service (Windows 2000) - ISAPI Extension Buffer Overflow (4)
Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier a
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Tarantella Enterprise 3 3.x - 'TTAWebTop.cgi' Arbitrary File Viewing
Directory traversal vulnerability in ttawebtop.cgi in Tarantella Enterprise 3.00 and 3.01 allows remote attackers to rea
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.