Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
79.305exploits catalogados
36.465CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.466Referência 23.051GitHub PoC 15.051VulnCheck XDB 8883Nuclei 4361Metasploit 3493✓ solo verificadosrecientespopularesriesgo
24.460 exploits
Exploit-DB✓ VexDay Proof
Microsoft IIS 4.0 - Remote Buffer Overflow (3)
Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Caldera kdenetwork 1.1.1-1 / Caldera OpenLinux 1.3/2.2 / KDE KDE 1.1/1.1. / RedHat Linux 6.0 - K-Mail File Creation
KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 5.2 i386/6.0 - No Logging
The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
TYPSoft FTP Server 0.7.x - FTP Server Remote Denial of Service
Buffer overflows in TYPSoft FTP Server 0.78 and earlier allows remote attackers to cause a denial of service and possibl
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Netscape FastTrack Server 3.0.1 - Fasttrack Root Directory Listing
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun Solaris 2.5.1 - rpc.statd rpc Call Relaying
rpc.statd allows remote attackers to forward RPC calls to the local operating system via the SM_MON and SM_NOTIFY comman
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Omnicron OmniHTTPd 1.1/2.0 Alpha 1 - 'visiadmin.exe' Denial of Service
The OmniHTTPD visadmin.exe program allows a remote attacker to conduct a denial of service via a malformed URL which cau
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/4.0 SP1/4.0 SP2/4.0 SP3 - Denial of Service Duplicate Hostname
The WINS server in Microsoft Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service (process ter
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Mac OSX Server 10.0 - Overload
A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denia
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
G. Wilford man 2.3.10 - Symlink
The zsoelim program in the Debian man-db package allows local users to overwrite files via a symlink attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
CdomainFree 2.4 - Remote Command Execution
CDomain whois_raw.cgi whois CGI script allows remote attackers to execute arbitrary commands via shell metacharacters in
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.2/2.3 (Debian Linux 2.1 / RedHat Linux 6.0 / SuSE Linux 6.1) - IP Options
Denial of service in Linux 2.2.x kernels via malformed ICMP packets containing unusual types, codes, and IP header lengt
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Ethereal 0.8.4/0.8.5/0.8.6 / tcpdump 3.4/3.5 alpha - DNS Decode (1)
tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS pack
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.5.2 - 'nsd' Information Gathering
nsd in IRIX 6.5 through 6.5.2 exports a virtual filesystem on a UDP port, which allows remote attackers to view files an
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Ethereal 0.8.4/0.8.5/0.8.6 / tcpdump 3.4/3.5 alpha - DNS Decode (2)
tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS pack
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 5.1 - xosview
xosview 1.5.1 in Red Hat 5.1 allows local users to gain root access via a long HOME environmental variable.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
University of Washington pop2d 4.4 - Remote Buffer Overflow
Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD com
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Compaq Client Management Agents 3.70/4.0 / Insight Management Agents 4.21 A/4.22 A/4.30 A / Intelligent Cluster Administrator 1.0 / Management Agents for Workstations 4.20 A / Server Management Agents 4.23 / Survey Utility 2.0 - Web File Access
The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary f
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SmartDesk WebSuite 2.1 - Remote Buffer Overflow
Buffer overflow in SmartDesk WebSuite allows remote attackers to cause a denial of service via a long URL.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Gordano NTMail 4.2 - Web File Access
NTMail allows remote attackers to read arbitrary files via a .. (dot dot) attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
FloosieTek FTGate 2.1 - Web File Access
FTGate web interface server allows remote attackers to read files via a .. (dot dot) attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX eNetwork Firewall 3.2/3.3 - Insecure Temporary File Creation
The fwluser script in AIX eNetwork Firewall allows local users to write to arbitrary files via a symlink attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.6/7.0/8 - 'netpr' Local Buffer Overflow (1)
Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (4)
Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (1)
Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (2)
Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (3)
Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (5)
Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0/4.0 SP1/4.0 SP2/4.0 SP3/4.0 SP4/4.0 SP5 - RAS Phonebook Buffer Overflow
Buffer overflow in Remote Access Service (RAS) client allows an attacker to execute commands or cause a denial of servic
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Behold! Software Web Page Counter 2.7 - Denial of Service
counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via an HTTP request that ends in %0A (newl
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.