Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

79.210exploits catalogados
36.420CVEs con explotación pública
24.695probados en laboratorio
79.107 exploits
Metasploit600
PlaySMS index.php Unauthenticated Template Injection Code Execution
CVE-2020-8644CRITICALbajo ataque05 feb 2020
PlaySMS before 1.4.3 does not sanitize inputs from a malicious string.
100RIESGO
abrir
VulnCheck XDB
client-side
CVE-2018-2628CRITICALbajo ataque05 feb 2020
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). S
100RIESGO
abrir
Exploit-DB
Verodin Director Web Console 3.5.4.0 - Remote Authenticated Password Disclosure (PoC)
CVE-2019-10716webappsjson05 feb 2020
An Information Disclosure issue in Verodin Director 3.5.3.1 and earlier reveals usernames and passwords of integrated se
23RIESGO
abrir
Exploit-DB
xglance-bin 11.00 - Privilege Escalation
CVE-2014-2630locallinux05 feb 2020
Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to gain privileges via u
38RIESGO
abrir
Exploit-DB
Kronos WebTA 4.0 - Authenticated Remote Privilege Escalation
CVE-2020-8495HIGHwebappsjava05 feb 2020
In Kronos Web Time and Attendance (webTA) 3.8.x and later 3.x versions before 4.0, the com.threeis.webta.H491delegate se
41RIESGO
abrir
Exploit-DB
Kronos WebTA 4.0 - Authenticated Remote Privilege Escalation
CVE-2020-8493MEDIUMwebappsjava05 feb 2020
A stored XSS vulnerability in Kronos Web Time and Attendance (webTA) affects 3.8.x and later 3.x versions before 4.0 via
33RIESGO
abrir
VulnCheck XDB
local
CVE-2019-573604 feb 2020
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc b
60RIESGO
abrir
Exploit-DB
Sudo 1.8.25p - 'pwfeedback' Buffer Overflow (PoC)
CVE-2019-18634doslinux04 feb 2020
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the
28RIESGO
abrir
GitHub PoC1
CVE-2019-5736 implemented in a self-written container runtime to understand the exploit.
CVE-2019-573604 feb 2020
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc b
60RIESGO
abrir
GitHub PoC5
CVE-2014-2630 exploit for xglance-bin
CVE-2014-263004 feb 2020
Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to gain privileges via u
38RIESGO
abrir
Exploit-DB
Cacti 1.2.8 - Authenticated Remote Code Execution
CVE-2020-8813webappsmultiple03 feb 2020
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a
60RIESGO
abrir
Exploit-DB
School ERP System 1.0 - Cross Site Request Forgery (Add Admin)
CVE-2020-8505webappsphp03 feb 2020
School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=deleteadmin CSRF to delete a user.
23RIESGO
abrir
Exploit-DB
Schneider Electric U.Motion Builder 1.3.4 - Authenticated Command Injection
CVE-2018-7777webappshardware03 feb 2020
The vulnerability is due to insufficient handling of update_file request parameter on update_module.php in Schneider Ele
35RIESGO
abrir
GitHub PoC1
Resources related to CurveBall (CVE-2020-0601) detection
CVE-2020-0601HIGHbajo ataque03 feb 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RIESGO
abrir
GitHub PoC1
PoC for CVE-2020-0601- Windows CryptoAPI (Crypt32.dll) POC: https://github.com/ollypwn/CurveBall
CVE-2020-0601HIGHbajo ataque03 feb 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RIESGO
abrir
Exploit-DB
IceWarp WebMail 11.4.4.1 - Reflective Cross-Site Scripting
CVE-2020-8512webappsphp03 feb 2020
In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter.
43RIESGO
abrir
Exploit-DB
Jira 8.3.4 - Information Disclosure (Username Enumeration)
CVE-2019-8449webappsjava03 feb 2020
The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate username
60RIESGO
abrir
Exploit-DB
BearFTP 0.1.0 - 'PASV' Denial of Service
CVE-2020-8416doslinux03 feb 2020
IKTeam BearFTP before 0.2.0 allows remote attackers to achieve denial of service via a large volume of connections to th
28RIESGO
abrir
Exploit-DB
School ERP System 1.0 - Cross Site Request Forgery (Add Admin)
CVE-2020-8504webappsphp03 feb 2020
School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=addadmin CSRF to add an administrati
23RIESGO
abrir
VulnCheck XDB
client-side
CVE-2020-0601HIGHbajo ataque03 feb 2020
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) c
93RIESGO
abrir
Exploit-DB
Cacti 1.2.8 - Unauthenticated Remote Code Execution
CVE-2020-8813webappsmultiple03 feb 2020
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a
60RIESGO
abrir
Metasploit500
Arista restricted shell escape (with privesc)
CVE-2020-901502 feb 2020
Arista DCS-7050QX-32S-R 4.20.9M, DCS-7050CX3-32S-R 4.20.11M, and DCS-7280SRAM-48C6-R 4.22.0.1F devices (and possibly oth
23RIESGO
abrir
GitHub PoC68
CVE-2019-8449 Exploit for Jira v2.1 - v8.3.4
CVE-2019-844902 feb 2020
The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate username
60RIESGO
abrir
VulnCheck XDB
local
CVE-2020-15368MEDIUM02 feb 2020
AsrDrv103.sys in the ASRock RGB Driver does not properly restrict access from user space, as demonstrated by triggering
33RIESGO
abrir
GitHub PoC
A python implementation of CVE-2004-2271 targeting MiniShare 1.4.1.
CVE-2004-227102 feb 2020
Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET req
60RIESGO
abrir
GitHub PoC26
Temproot for Bravia TV via CVE-2019-2215.
CVE-2019-2215HIGHbajo ataque30 ene 2020
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
100RIESGO
abrir
Exploit-DBVexDay Proof
rConfig 3.9.3 - Authenticated Remote Code Execution
CVE-2019-19509webappsphp30 ene 2020
An issue was discovered in rConfig 3.9.3. A remote authenticated user can directly execute system commands by sending a
60RIESGO
abrir
VulnCheck XDB
local
CVE-2019-2215HIGHbajo ataque30 ene 2020
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
100RIESGO
abrir
Exploit-DBVexDay Proof
OpenSMTPD 6.6.1 - Remote Code Execution
CVE-2020-7247CRITICALbajo ataqueremotelinux30 ene 2020
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to
100RIESGO
abrir
GitHub PoC25
Python exploit of cve-2020-7247
CVE-2020-7247CRITICALbajo ataque30 ene 2020
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to
100RIESGO
abrir
anteriorpágina 791 / 2637siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.