Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

79.438exploits catalogados
36.583CVEs con explotación pública
24.695probados en laboratorio
79.386 exploits
GitHub PoC
cve-2018-7600
CVE-2018-7600CRITICALbajo ataqueransomware06 ene 2019
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbi
100RIESGO
abrir
GitHub PoC
cve-2014-6271
CVE-2014-6271CRITICALbajo ataque06 ene 2019
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RIESGO
abrir
GitHub PoC1
CVE-2016-4971 Wget 1.18/1.14-13.el7 Client Exploit
CVE-2016-497105 ene 2019
GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted F
35RIESGO
abrir
GitHub PoC
CVE-2009-1330 - Easy RM to MP3 Converter Local Buffer Overflow. Tested on Windows XP Professional SP3
CVE-2009-133005 ene 2019
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RIESGO
abrir
GitHub PoC
Villaquiranm/5MMISSI-CVE-2017-1000499
CVE-2017-100049905 ene 2019
phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a
23RIESGO
abrir
Exploit-DB
Linux Kernel 4.15.x < 4.19.2 - 'map_write() CAP_SYS_ADMIN' Local Privilege Escalation (dbus Method)
CVE-2018-18955locallinux04 ene 2019
In the Linux kernel 4.15.x through 4.19.x before 4.19.2, map_write() in kernel/user_namespace.c allows privilege escalat
38RIESGO
abrir
Exploit-DB
Linux Kernel 4.15.x < 4.19.2 - 'map_write() CAP_SYS_ADMIN' Local Privilege Escalation (polkit Method)
CVE-2018-18955locallinux04 ene 2019
In the Linux kernel 4.15.x through 4.19.x before 4.19.2, map_write() in kernel/user_namespace.c allows privilege escalat
38RIESGO
abrir
GitHub PoC2
## 在kali中自动化生成cve-2017-8570的恶意ppsx文件和配置msf监听
CVE-2017-8570HIGHbajo ataque03 ene 2019
Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Mic
93RIESGO
abrir
Exploit-DBVexDay Proof
WebKit JSC - 'JSArray::shiftCountWithArrayStorage' Out-of-Bounds Read/Write
CVE-2018-4441dosmultiple02 ene 2019
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1,
28RIESGO
abrir
Exploit-DBVexDay Proof
WebKit JSC - 'AbstractValue::set' Use-After-Free
CVE-2018-4443dosmultiple02 ene 2019
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1,
23RIESGO
abrir
Exploit-DB
Frog CMS 0.9.5 - Cross-Site Scripting
CVE-2018-20448webappsphp02 ene 2019
Frog CMS 0.9.5 has XSS via the Database name field to the /install/index.php URI.
23RIESGO
abrir
Exploit-DB
Ayukov NFTP FTP Client 2.0 - Buffer Overflow
CVE-2017-15222localwindows_x8602 ene 2019
Buffer Overflow vulnerability in Ayukov NFTPD 2.0 and earlier allows remote attackers to execute arbitrary code.
50RIESGO
abrir
GitHub PoC
Bash implementation of CVE-2014-5284
CVE-2014-528402 ene 2019
host-deny.sh in OSSEC before 2.8.1 writes to temporary files with predictable filenames without verifying ownership, whi
23RIESGO
abrir
Metasploit0
Docker Container Escape Via runC Overwrite
CVE-2019-573601 ene 2019
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc b
60RIESGO
abrir
GitHub PoC
some works on CVE-2018-19518
CVE-2018-1951831 dic 2018
University of Washington IMAP Toolkit 2007f on UNIX, as used in imap_open() in PHP and other products, launches an rsh c
60RIESGO
abrir
GitHub PoC1
Debian OpenSSL Predictable PRNG (CVE-2008-0166)
CVE-2008-016631 dic 2018
OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that ge
45RIESGO
abrir
Exploit-DB
VMware Workstation/Player < 12.5.5 - Local Privilege Escalation
CVE-2017-4915localmultiple30 dic 2018
VMware Workstation Pro/Player contains an insecure library loading vulnerability via ALSA sound driver configuration fil
38RIESGO
abrir
GitHub PoC
Simple exploit for Easy RM to MP3 Converter 2.7.3.700 on Windows 7 32b.
CVE-2009-133030 dic 2018
Stack-based buffer overflow in Easy RM to MP3 Converter allows remote attackers to execute arbitrary code via a long fil
28RIESGO
abrir
Exploit-DB
Linux Kernel < 4.4.0/ < 4.8.0 (Ubuntu 14.04/16.04 / Linux Mint 17/18 / Zorin) - Local Privilege Escalation (KASLR / SMEP)
CVE-2017-1000112locallinux29 dic 2018
Linux kernel: Exploitable memory corruption due to UFO to non-UFO path switch. When building a UFO packet with MSG_MORE
43RIESGO
abrir
Exploit-DB
Linux Kernel 4.8.0-34 < 4.8.0-45 (Ubuntu / Linux Mint) - Packet Socket Local Privilege Escalation
CVE-2017-7308locallinux29 dic 2018
The packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate cer
43RIESGO
abrir
Exploit-DB
Linux Kernel 4.4.0-21 < 4.4.0-51 (Ubuntu 14.04/16.04 x64) - 'AF_PACKET' Race Condition Privilege Escalation
CVE-2016-8655localwindows_x86-6429 dic 2018
Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cau
43RIESGO
abrir
VulnCheck XDB
remote-with-credentials
CVE-2018-8581HIGHbajo ataqueransomware28 dic 2018
An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of
76RIESGO
abrir
GitHub PoC5
CVE-2018-8581
CVE-2018-8581HIGHbajo ataqueransomware28 dic 2018
An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of
76RIESGO
abrir
GitHub PoC331
CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2018-8581HIGHbajo ataqueransomware27 dic 2018
An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of
76RIESGO
abrir
Exploit-DB
bludit Pages Editor 3.0.0 - Arbitrary File Upload
CVE-2018-1000811webappsphp27 dic 2018
bludit version 3.0.0 contains a Unrestricted Upload of File with Dangerous Type vulnerability in Content Upload in Pages
35RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2018-8581HIGHbajo ataqueransomware27 dic 2018
An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of
76RIESGO
abrir
Exploit-DB
Craft CMS 3.0.25 - Cross-Site Scripting
CVE-2018-20418webappsphp27 dic 2018
index.php?p=admin/actions/entries/save-entry in Craft CMS 3.0.25 allows XSS by saving a new title from the console tab.
23RIESGO
abrir
Exploit-DB
WSTMart 2.0.8 - Cross-Site Request Forgery (Add Admin)
CVE-2018-19138webappsphp24 dic 2018
WSTMart 2.0.7 has CSRF via the index.php/admin/staffs/add.html URI.
23RIESGO
abrir
Exploit-DB
Adobe Flash ActiveX Plugin 28.0.0.137 - Remote Code Execution (PoC)
CVE-2018-15982HIGHbajo ataqueransomwarelocalwindows24 dic 2018
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability. Successful
93RIESGO
abrir
Exploit-DBVexDay Proof
Netatalk 3.1.12 - Authentication Bypass
CVE-2018-1160CRITICALremotemultiple21 dic 2018
Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking
70RIESGO
abrir
anteriorpágina 859 / 2647siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.