Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
79.305exploits catalogados
36.465CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.466Referência 23.051GitHub PoC 15.051VulnCheck XDB 8883Nuclei 4361Metasploit 3493✓ solo verificadosrecientespopularesriesgo
24.460 exploits
Exploit-DB✓ VexDay Proof
BSD/OS 2.1/3.0 / Larry Wall Perl 5.0 03 / RedHat 4.0/4.1 / SGI Freeware 1.0/2.0 SUIDPerl - Local Overflow (1)
Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1/3.0 / Larry Wall Perl 5.0 03 / RedHat 4.0/4.1 / SGI Freeware 1.0/2.0 SUIDPerl - Local Overflow (2)
Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Skunkware 2.0 - view-source Directory Traversal
The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PHP PHP/fi 2.0 - Directory Traversal
php.cgi allows attackers to read any file on the system.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows NT - Crash with an Extra Long 'Username' Denial of Service
Denial of service in Windows NT messenger service through a long username.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.4 - '/bin/fdformat' Local Buffer Overflow
Buffer overflow in Solaris fdformat command gives root access to local users.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP HP-UX 10.20 / IBM AIX 4.1.5 - 'connect()' Denial of Service
Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a s
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Slackware Linux 3.1 - '/usr/X11/bin/SuperProbe' Local Buffer Overflow
Buffer overflow in TestChip function in XFree86 SuperProbe in Slackware Linux 3.1 allows local users to gain root privil
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun Solaris 2.5.1 PAM / unix_scheme - 'passwd' Local Privilege Escalation
Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 2.0/3.0 - Appended Dot Script Source Disclosure
IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the U
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
UNICOS 9/MAX 1.3/mk 1.5 / AIX 4.2 / libc 5.2.18 / RedHat 4 / IRIX 6 / Slackware 3 - NLS (2)
Buffer overflow in NLS (Natural Language Service).
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
UNICOS 9/MAX 1.3/mk 1.5 / AIX 4.2 / libc 5.2.18 / RedHat 4 / IRIX 6 / Slackware 3 - NLS (1)
Buffer overflow in NLS (Natural Language Service).
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.5.1 - 'ffbconfig' Local Privilege Escalation
Buffer overflow in ffbconfig in Solaris 2.5.1.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.4 - 'startmidi' Local Privilege Escalation
IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IRIX 6.2/6.3/6.4 - xfs truncate() Privilege Check
The truncate function in IRIX 6.x does not properly check for privileges when the file is in the xfs file system, which
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OReilly WebSite 1.x/2.0 - 'win-c-sample.exe' Buffer Overflow
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.4 - 'netprint' Local Privilege Escalation
netprint in SGI IRIX 6.4 and earlier trusts the PATH environmental variable for finding and executing the disable progra
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Matt Wright FormMail 1.x - Cross-Site Request Forgery
FormMail CGI program can be used by web servers other than the host server that the program resides on.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IRIX 6.5.x - '/usr/sbin/gr_osview' Local Buffer Overflow
Buffer overflow in gr_osview in IRIX 6.2 and 6.3 allows local users to gain privileges via a long -D option.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 7.0 - aspppd Insecure Temporary File Creation
aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apache 1.1 / NCSA HTTPd 1.5.2 / Netscape Server 1.12/1.1/2.0 - a nph-test-cgi
List of arbitrary files on Web host via nph-test-cgi script.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 7.0 - 'chkperm' Local Privilege Escalation
Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 3.2.5 - 'login(1)' Privilege Escalation
Some implementations of rlogin allow root access if given a -froot parameter.
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
BSD/OS 2.1 / DG/UX 4.0 / Debian 0.93 / Digital UNIX 4.0 B / FreeBSD 2.1.5 / HP-UX 10.34 / IBM AIX 4.1.5 / NetBSD 1.0/1.1 / NeXTstep 4.0 / SGI IRIX 6.3 / SunOS 4.1.4 - 'rlogin' Local Privilege Escalation
Buffer overflow of rlogin program using TERM environmental variable.
35RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.2 - 'fsdump' Local Privilege Escalation
fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SGI IRIX 6.4 - 'suid_exec' Local Privilege Escalation
Buffer overflow in Korn Shell (ksh) suid_exec program on IRIX 6.x and earlier, and possibly other operating systems, all
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
SGI IRIX 5.1/5.2 - 'sgihelp' Local Privilege Escalation
Vulnerability in sgihelp in the SGI help system and print manager in IRIX 5.2 and earlier allows local users to gain roo
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
HP-UX 10.20 newgrp - Local Privilege Escalation
Buffer overflow in HP-UX newgrp program.
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 4.2.1 - 'lquerypv' File Read
lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line par
23RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.