Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

80.095exploits catalogados
36.945CVEs con explotación pública
24.695probados en laboratorio
80.095 exploits
VulnCheck XDB
initial-access
CVE-2012-1823CRITICALbajo ataque01 oct 2017
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not
100RIESGO
abrir
GitHub PoC5
own2pwn/blueborne-CVE-2017-1000251-POC
CVE-2017-100025101 oct 2017
The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and includ
28RIESGO
abrir
GitHub PoC
billa3283/CVE-2017-0213
CVE-2017-0213HIGHbajo ataqueransomware01 oct 2017
Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Ser
93RIESGO
abrir
GitHub PoC2
SPRING DATA REST CVE-2017-8046 DEMO
CVE-2017-804601 oct 2017
Malicious PATCH requests submitted to servers using Spring Data REST versions prior to 2.6.9 (Ingalls SR9), versions pri
60RIESGO
abrir
Exploit-DB
Microsoft Excel - OLE Arbitrary Code Execution
CVE-2017-0199HIGHbajo ataqueransomwaredoswindows30 sep 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RIESGO
abrir
Exploit-DB
Trend Micro OfficeScan 11.0/XG (12.0) - Memory Corruption
CVE-2017-14089doswindows29 sep 2017
An Unauthorized Memory Corruption vulnerability in Trend Micro OfficeScan 11.0 and XG may allow remote unauthenticated u
23RIESGO
abrir
Exploit-DB
ConverTo Video Downloader & Converter 1.4.1 - Arbitrary File Download
CVE-2017-15956webappsphp29 sep 2017
ConverTo Video Downloader & Converter 1.4.1 allows Arbitrary File Download via the token parameter to download.php.
23RIESGO
abrir
Exploit-DB
FileRun < 2017.09.18 - SQL Injection
CVE-2017-14738webappsphp29 sep 2017
FileRun (version 2017.09.18 and below) suffers from a remote SQL injection vulnerability due to a failure to sanitize in
23RIESGO
abrir
GitHub PoC
CVE-2017-12943
CVE-2017-1294329 sep 2017
D-Link DIR-600 Rev Bx devices with v2.x firmware allow remote attackers to read passwords via a model/__show_info.php?RE
35RIESGO
abrir
Metasploit600
phpCollab 2.5.1 Unauthenticated File Upload
CVE-2017-609029 sep 2017
Unrestricted file upload vulnerability in clients/editclient.php in PhpCollab 2.5.1 and earlier allows remote authentica
60RIESGO
abrir
Exploit-DB
WordPress Plugin WPHRM - SQL Injection
CVE-2017-14848webappsphp29 sep 2017
WPHRM Human Resource Management System for WordPress 1.0 allows SQL Injection via the employee_id parameter.
23RIESGO
abrir
GitHub PoC
clone
CVE-2017-100025128 sep 2017
The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and includ
28RIESGO
abrir
Exploit-DBVexDay Proof
Trend Micro OfficeScan 11.0/XG (12.0) - Man In The Middle Remote Code Execution
CVE-2017-14084remotewindows28 sep 2017
A potential Man-in-the-Middle (MitM) attack vulnerability in Trend Micro OfficeScan 11.0 and XG may allow attackers to e
28RIESGO
abrir
Exploit-DBVexDay Proof
Trend Micro OfficeScan 11.0/XG (12.0) - 'Host' Header Injection
CVE-2017-14087webappsphp28 sep 2017
A Host Header Injection vulnerability in Trend Micro OfficeScan XG (12.0) may allow an attacker to spoof a particular Ho
23RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2017-5638CRITICALbajo ataqueransomware28 sep 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
Exploit-DBVexDay Proof
Trend Micro OfficeScan 11.0/XG (12.0) - Code Execution / Memory Corruption
CVE-2017-14086webappswindows28 sep 2017
Pre-authorization Start Remote Process vulnerabilities in Trend Micro OfficeScan 11.0 and XG may allow unauthenticated u
23RIESGO
abrir
Exploit-DBVexDay Proof
Trend Micro OfficeScan 11.0/XG (12.0) - Private Key Disclosure
CVE-2017-14083webappsphp28 sep 2017
A vulnerability in Trend Micro OfficeScan 11.0 and XG allows remote unauthenticated users who can access the system to d
23RIESGO
abrir
Exploit-DBVexDay Proof
Trend Micro OfficeScan 11.0/XG (12.0) - Information Disclosure
CVE-2017-14085webappsphp28 sep 2017
Information disclosure vulnerabilities in Trend Micro OfficeScan 11.0 and XG may allow unauthenticated users who can acc
23RIESGO
abrir
VulnCheck XDB
infoleak
CVE-2017-979827 sep 2017
Apache httpd allows remote attackers to read secret data from process memory if the Limit directive can be set in a user
60RIESGO
abrir
Exploit-DB
Oracle WebLogic Server 10.3.6.0 - Java Deserialization Remote Code Execution
CVE-2015-4852CRITICALbajo ataqueremotejava27 sep 2017
The WLS Security component in Oracle WebLogic Server 10.3.6.0, 12.1.2.0, 12.1.3.0, and 12.2.1.0 allows remote attackers
100RIESGO
abrir
GitHub PoC19
OptionsBleed (CVE-2017-9798) PoC / Scanner
CVE-2017-979827 sep 2017
Apache httpd allows remote attackers to read secret data from process memory if the Limit directive can be set in a user
60RIESGO
abrir
Exploit-DB
SmarterStats 11.3.6347 - Cross-Site Scripting
CVE-2017-14620webappsaspx27 sep 2017
SmarterStats Version 11.3.6347 will Render the Referer Field of HTTP Logfiles from URL /Data/Reports/ReferringURLsWithQu
23RIESGO
abrir
Exploit-DB
LAquis SCADA 4.1.0.2385 - Directory Traversal (Metasploit)
CVE-2017-6020remotemultiple27 sep 2017
Leao Consultoria e Desenvolvimento de Sistemas (LCDS) LTDA ME LAquis SCADA software versions prior to version 4.1.0.3237
23RIESGO
abrir
Exploit-DB
Cisco Prime Collaboration Provisioning < 12.1 - Authentication Bypass / Remote Code Execution
CVE-2017-6622remotehardware27 sep 2017
A vulnerability in the web interface for Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote a
35RIESGO
abrir
Exploit-DB
WordPress Plugin School Management System - SQL Injection
CVE-2017-14843webappsphp26 sep 2017
Mojoomla School Management System for WordPress allows SQL Injection via the id parameter.
23RIESGO
abrir
Exploit-DB
Linux Kernel 3.10.0-514.21.2.el7.x86_64 / 3.10.0-514.26.1.el7.x86_64 (CentOS 7) - SUID Position Independent Executable 'PIE' Local Privilege Escalation
CVE-2017-1000253HIGHbajo ataqueransomwarelocallinux26 sep 2017
Linux distributions that have not patched their long-term kernels with https://git.kernel.org/linus/a87938b2e246b81b4fb7
76RIESGO
abrir
Exploit-DB
WordPress Plugin WPCHURCH - SQL Injection
CVE-2017-14845webappsphp26 sep 2017
Mojoomla WPCHURCH Church Management System for WordPress allows SQL Injection via the id parameter.
23RIESGO
abrir
Exploit-DB
WordPress Plugin Hospital Management System - SQL Injection
CVE-2017-14846webappsphp26 sep 2017
Mojoomla Hospital Management System for WordPress allows SQL Injection via the id parameter.
23RIESGO
abrir
Exploit-DB
Job Links - Arbitrary File Upload
CVE-2017-14838webappsphp26 sep 2017
TeamWork Job Links allows Arbitrary File Upload in profileChange and coverChange.
23RIESGO
abrir
Exploit-DB
WordPress Plugin WPAMS - SQL Injection
CVE-2017-14847webappsphp26 sep 2017
Mojoomla WPAMS Apartment Management System for WordPress allows SQL Injection via the id parameter.
23RIESGO
abrir
anteriorpágina 950 / 2670siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.