Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
71.828exploits catalogados
32.132CVEs con explotación pública
1932probados en laboratorio
TodosExploit-DB 22.786Referência 19.967GitHub PoC 13.262VulnCheck XDB 8150Nuclei 4201Metasploit 3462✓ solo verificadosrecientespopularesriesgo
4201 exploits
Nucleicritical
Revive Adserver 4.2 - Remote Code Execution
An attacker could send a specifically crafted payload to the XML-RPC invocation script and trigger the unserialize() cal
50RIESGO
abrir ↗Nucleimedium
FortiOS - Insecure LDAP Configuration Detection
A Default Configuration vulnerability in FortiOS may allow an unauthenticated attacker on the same subnet to intercept s
83RIESGO
abrir ↗Nucleimedium
WordPress Sell Media 2.4.1 - Cross-Site Scripting
A Cross-site scripting (XSS) vulnerability in /inc/class-search.php in the Sell Media plugin v2.4.1 for WordPress allows
18RIESGO
abrir ↗Nucleihigh
Drupal - Remote Code Execution
Drupal core - Highly critical - Remote Code Execution
100RIESGO
abrir ↗Nucleicritical
Total Donations Plugin for WordPress < 2.0.6 - Arbitrary Options Update
Incorrect access control in migla_ajax_functions.php in the Calmar Webmedia Total Donations plugin through 2.0.5 for Wor
23RIESGO
abrir ↗Nucleihigh
W3 Total Cache 0.9.2.6-0.9.3 - Unauthenticated File Read / Directory Traversal
pub/sns.php in the W3 Total Cache plugin before 0.9.4 for WordPress allows remote attackers to read arbitrary files via
23RIESGO
abrir ↗Nucleihigh
GitLab Enterprise Edition - Server-Side Request Forgery
An issue was discovered in GitLab Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. The
18RIESGO
abrir ↗Nucleimedium
phpMyAdmin <4.8.5 - Local File Inclusion
An issue was discovered in phpMyAdmin before 4.8.5. When the AllowArbitraryServer configuration setting is set to true,
23RIESGO
abrir ↗Nucleimedium
Pypiserver <1.2.5 - Carriage Return Line Feed Injection
CRLF Injection in pypiserver 1.2.5 and below allows attackers to set arbitrary HTTP headers and possibly conduct XSS att
18RIESGO
abrir ↗Nucleicritical
Magento - SQL Injection
An unauthenticated user can execute SQL statements that allow arbitrary read access to the underlying database, which ca
43RIESGO
abrir ↗Nucleicritical
QNAP QTS and Photo Station 6.0.3 - Remote Command Execution
This improper access control vulnerability allows remote attackers to gain unauthorized access to the system. To fix the
100RIESGO
abrir ↗Nucleicritical
QNAP Photo Station < 6.0.3 - Remote Code Execution
This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fi
100RIESGO
abrir ↗Nucleicritical
QNAP Photo Station - Path Traversal
This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fi
100RIESGO
abrir ↗Nucleimedium
Zarafa WebApp <=2.0.1.47791 - Cross-Site Scripting
Unauthenticated reflected cross-site scripting (XSS) exists in Zarafa Webapp 2.0.1.47791 and earlier. NOTE: this is a di
18RIESGO
abrir ↗Nucleicritical
Sonatype Nexus Repository Manager <3.15.0 - Remote Code Execution
Sonatype Nexus Repository Manager before 3.15.0 has Incorrect Access Control.
100RIESGO
abrir ↗Nucleihigh
eMerge E3 1.00-06 - Local File Inclusion
Linear eMerge E3-Series devices allow File Inclusion.
60RIESGO
abrir ↗Nucleimedium
Linear eMerge E3 - Cross-Site Scripting
Linear eMerge E3-Series devices allow XSS.
50RIESGO
abrir ↗Nucleicritical
eMerge E3 1.00-06 - Remote Code Execution
Linear eMerge E3-Series devices allow Command Injections.
100RIESGO
abrir ↗Nucleimedium
Optergy Proton/Enterprise Building Management System - Open Redirect
Optergy Proton/Enterprise devices allow Open Redirect.
18RIESGO
abrir ↗Nucleicritical
Optergy Proton/Enterprise - Unauthenticated RCE via Backdoor Console
Optergy Proton/Enterprise devices allow Remote Root Code Execution via a Backdoor Console.
60RIESGO
abrir ↗Nucleihigh
Genie Access WIP3BVAF IP Camera - Local File Inclusion
Genie Access WIP3BVAF WISH IP 3MP IR Auto Focus Bullet Camera devices through 3.x are vulnerable to directory traversal
23RIESGO
abrir ↗Nucleihigh
SonicWall SRA 4600 VPN - SQL Injection
Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources. This vu
88RIESGO
abrir ↗Nucleimedium
KindEditor 4.1.11 - Cross-Site Scripting
In KindEditor 4.1.11, the php/demo.php content1 parameter has a reflected Cross-site Scripting (XSS) vulnerability.
18RIESGO
abrir ↗Nucleicritical
Kibana Timelion - Arbitrary Code Execution
Kibana versions before 5.6.15 and 6.6.1 contain an arbitrary code execution flaw in the Timelion visualizer. An attacker
100RIESGO
abrir ↗Nucleihigh
Adobe Experience Manager - XML External Entity Injection
Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability. Successful e
23RIESGO
abrir ↗Nucleimedium
qdPM 9.1 - Cross-site Scripting
qdPM 9.1 suffers from Cross-site Scripting (XSS) in the search[keywords] parameter.
38RIESGO
abrir ↗Nucleihigh
Jira - Local File Inclusion
The CachingResourceDownloadRewriteRule class in Jira before version 7.13.4, and from version 8.0.0 before version 8.0.4,
30RIESGO
abrir ↗Nucleimedium
Jira Improper Authorization
The /rest/issueNav/1/issueTable resource in Jira before version 8.3.2 allows remote attackers to enumerate usernames via
23RIESGO
abrir ↗Nucleimedium
Jira <8.4.0 - Information Disclosure
The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate username
60RIESGO
abrir ↗Nucleimedium
Jira <8.4.0 - Server-Side Request Forgery
The /plugins/servlet/gadgets/makeRequest resource in Jira before version 8.4.0 allows remote attackers to access the con
60RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.