Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

80.095exploits catalogados
36.945CVEs con explotación pública
24.695probados en laboratorio
80.095 exploits
Metasploit600
pfSense authenticated group member RCE
CVE-2016-1070906 nov 2017
pfSense before 2.3 allows remote authenticated users to execute arbitrary OS commands via a '|' character in the status_
30RIESGO
abrir
GitHub PoC4
Unrestricted file upload vulnerability - Web Viewer 1.0.0.193 on Samsung SRN-1670D
CVE-2017-1652405 nov 2017
Web Viewer 1.0.0.193 on Samsung SRN-1670D devices suffers from an Unrestricted file upload vulnerability: 'network_ssl_u
50RIESGO
abrir
Exploit-DB
Avaya IP Office (IPO) < 10.1 - 'SoftConsole' Remote Buffer Overflow (SEH)
CVE-2017-11309remotewindows05 nov 2017
Buffer overflow in the SoftConsole client in Avaya IP Office before 10.1.1 allows remote servers to execute arbitrary co
23RIESGO
abrir
Exploit-DB
Avaya IP Office (IPO) < 10.1 - ActiveX Buffer Overflow
CVE-2017-12969doswindows05 nov 2017
Buffer overflow in the ViewerCtrlLib.ViewerCtrl ActiveX control in Avaya IP Office Contact Center before 10.1.1 allows r
28RIESGO
abrir
Exploit-DB
WordPress Plugin Userpro < 4.9.17.1 - Authentication Bypass
CVE-2017-16562webappsphp04 nov 2017
The UserPro plugin before 4.9.17.1 for WordPress, when used on a site with the "admin" username, allows remote attackers
28RIESGO
abrir
Exploit-DB
GraphicsMagick - Memory Disclosure / Heap Overflow
CVE-2017-16352dosmultiple03 nov 2017
GraphicsMagick 1.3.26 is vulnerable to a heap-based buffer overflow vulnerability found in the "Display visual image dir
28RIESGO
abrir
Exploit-DBVexDay Proof
tnftp - 'savefile' Arbitrary Command Execution (Metasploit)
CVE-2014-8517remoteunix03 nov 2017
The fetch_url function in usr.bin/ftp/fetch.c in tnftp, as used in NetBSD 5.1 through 5.1.4, 5.2 through 5.2.2, 6.0 thro
50RIESGO
abrir
Exploit-DBVexDay Proof
Ipswitch WS_FTP Professional < 12.6.0.3 - Local Buffer Overflow (SEH)
CVE-2017-16513doswindows03 nov 2017
Ipswitch WS_FTP Professional before 12.6.0.3 has buffer overflows in the local search field and the backup locations fie
23RIESGO
abrir
GitHub PoC5
Exploit for the linux kernel vulnerability CVE-2017-5123
CVE-2017-512303 nov 2017
Insufficient data validation in waitid allowed an user to escape sandboxes on Linux.
23RIESGO
abrir
GitHub PoC2
RTF de-obfuscator for CVE-2017-0199 documents to find URLs statically.
CVE-2017-0199HIGHbajo ataqueransomware03 nov 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RIESGO
abrir
Exploit-DB
GraphicsMagick - Memory Disclosure / Heap Overflow
CVE-2017-16353dosmultiple03 nov 2017
GraphicsMagick 1.3.26 is vulnerable to a memory information disclosure vulnerability found in the DescribeImage function
28RIESGO
abrir
Exploit-DB
Logitech Media Server 7.9.0 - 'Radio URL' Cross-Site Scripting
CVE-2017-16568webappsmultiple03 nov 2017
Persistent Cross-Site Scripting (XSS) vulnerability in Logitech Media Server 7.9.0, affecting the "Radio" functionality.
23RIESGO
abrir
Exploit-DB
Logitech Media Server 7.9.0 - 'favorites' Cross-Site Scripting
CVE-2017-16567webappsmultiple03 nov 2017
Persistent Cross-Site Scripting (XSS) vulnerability in Logitech Media Server 7.9.0, affecting the "Favorites" feature. T
23RIESGO
abrir
Metasploit300
Brother Debut http Denial Of Service
CVE-2017-1624902 nov 2017
The Debut embedded http server contains a remotely exploitable denial of service where a single malformed HTTP POST requ
50RIESGO
abrir
Metasploit400
Advantech WebAccess Webvrpcs Service Opcode 80061 Stack Buffer Overflow
CVE-2017-1401602 nov 2017
A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. The applicati
43RIESGO
abrir
Exploit-DB
Debut Embedded HTTPd 1.20 - Denial of Service
CVE-2017-16249doshardware02 nov 2017
The Debut embedded http server contains a remotely exploitable denial of service where a single malformed HTTP POST requ
50RIESGO
abrir
Exploit-DB
Cisco UCS Platform Emulator 3.1(2ePE1) - Remote Code Execution
CVE-2017-12243remotelinux01 nov 2017
A vulnerability in the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewal
45RIESGO
abrir
Exploit-DB
OctoberCMS 1.0.426 (Build 426) - Cross-Site Request Forgery
CVE-2017-16244webappsphp01 nov 2017
Cross-Site Request Forgery exists in OctoberCMS 1.0.426 (aka Build 426) due to improper validation of CSRF tokens for po
23RIESGO
abrir
GitHub PoC3
tomcat-put-cve-2017-12615
CVE-2017-12615HIGHbajo ataqueransomware01 nov 2017
When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting the readonly initialisati
100RIESGO
abrir
Exploit-DB
Vir.IT eXplorer Anti-Virus 8.5.39 - 'VIAGLT64.SYS' Local Privilege Escalation
CVE-2017-16237localwindows01 nov 2017
In Vir.IT eXplorer Anti-Virus before 8.5.42, the driver file (VIAGLT64.SYS) contains an Arbitrary Write vulnerability be
23RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2017-12615HIGHbajo ataqueransomware01 nov 2017
When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting the readonly initialisati
100RIESGO
abrir
Exploit-DB
ZyXEL PK5001Z Modem - Backdoor Account
CVE-2016-10401remotehardware31 oct 2017
ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access
28RIESGO
abrir
GitHub PoC1
linux kernel exploit
CVE-2017-512331 oct 2017
Insufficient data validation in waitid allowed an user to escape sandboxes on Linux.
23RIESGO
abrir
Exploit-DB
Php Inventory - Arbitrary File Upload
CVE-2017-15990webappsphp30 oct 2017
Php Inventory & Invoice Management System allows Arbitrary File Upload via dashboard/edit_myaccountdetail/.
23RIESGO
abrir
Exploit-DB
MyBuilder Clone 1.0 - 'subcategory' SQL Injection
CVE-2017-15968webappsphp30 oct 2017
MyBuilder Clone 1.0 allows SQL Injection via the phpsqlsearch_genxml.php subcategory parameter.
23RIESGO
abrir
GitHub PoC
skyformat99/dnsmasq-2.4.1-fix-CVE-2017-14491
CVE-2017-1449130 oct 2017
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execut
45RIESGO
abrir
Exploit-DB
Zomato Clone Script - 'resid' SQL Injection
CVE-2017-15993webappsphp30 oct 2017
Zomato Clone Script allows SQL Injection via the restaurant-menu.php resid parameter.
23RIESGO
abrir
Exploit-DB
Online Exam Test Application - 'sort' SQL Injection
CVE-2017-15989webappsphp30 oct 2017
Online Exam Test Application allows SQL Injection via the resources.php sort parameter in a category action.
23RIESGO
abrir
Exploit-DB
AROX School ERP PHP Script - 'id' SQL Injection
CVE-2017-15978webappsphp30 oct 2017
AROX School ERP PHP Script 1.0 allows SQL Injection via the office_admin/ id parameter.
23RIESGO
abrir
Exploit-DB
ZeeBuddy 2x - 'groupid' SQL Injection
CVE-2017-15976webappsphp30 oct 2017
ZeeBuddy 2x allows SQL Injection via the admin/editadgroup.php groupid parameter, a different vulnerability than CVE-200
23RIESGO
abrir
anteriorpágina 944 / 2670siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.