Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
79.980exploits catalogados
36.899CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.476Referência 23.400GitHub PoC 15.250VulnCheck XDB 8.959Nuclei 4.393Metasploit 3.502✓ só verificadosrecentespopularesrisco
3.502 exploits
Metasploit400
NIPrint LPD Request Overflow
Buffer overflow in NIPrint 4.10 allows remote attackers to execute arbitrary code via a long string to TCP port 515.
50RISCO
abrir ↗Metasploit200
IA WebMail 3.x Buffer Overflow
Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET
50RISCO
abrir ↗Metasploit400
MS03-046 Exchange 2000 XEXCH50 Heap Overflow
The Internet Mail Service in Exchange Server 5.5 and Exchange 2000 allows remote attackers to cause a denial of service
60RISCO
abrir ↗Metasploit300
mIRC IRC URL Buffer Overflow
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.
50RISCO
abrir ↗Metasploit300
Sendmail SMTP Address prescan Memory Corruption
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, a
30RISCO
abrir ↗Metasploit600
Solaris sadmind Command Execution
The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attack
60RISCO
abrir ↗Metasploit500
Oracle 9i XDB HTTP PASS Overflow (win32)
Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to
50RISCO
abrir ↗Metasploit500
Oracle 9i XDB FTP PASS Overflow (win32)
Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to
50RISCO
abrir ↗Metasploit500
Oracle 9i XDB FTP UNLOCK Overflow (win32)
Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to
50RISCO
abrir ↗Metasploit500
MS03-026 Microsoft RPC DCOM Interface Overflow
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote
60RISCO
abrir ↗Metasploit400
MS03-022 Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability
60RISCO
abrir ↗Metasploit200
Alt-N WebAdmin USER Buffer Overflow
Buffer overflow in WebAdmin.exe for WebAdmin allows remote attackers to execute arbitrary code via an HTTP request to We
50RISCO
abrir ↗Metasploit300
Sambar 6 Search Results Buffer Overflow
Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote attackers t
60RISCO
abrir ↗Metasploit300
LeapWare LeapFTP v2.7.3.600 PASV Reply Client Overflow
Buffer overflow in LeapFTP 2.7.3.600 allows remote FTP servers to execute arbitrary code via a long IP address response
50RISCO
abrir ↗Metasploit300
MS03-020 Microsoft Internet Explorer Object Type
Buffer overflow in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code via
60RISCO
abrir ↗Metasploit500
MS03-007 Microsoft IIS 5.0 WebDAV ntdll.dll Path Overflow
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISCO
abrir ↗Metasploit500
Seattle Lab Mail 5.5 POP3 Buffer Overflow
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO arg
60RISCO
abrir ↗Metasploit200
Kerio Firewall 2.1.4 Authentication Packet Overflow
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows r
50RISCO
abrir ↗Metasploit500
BadBlue 2.5 EXT.dll Buffer Overflow
Buffer overflow in ext.dll in BadBlue 2.55 allows remote attackers to execute arbitrary code via a long mfcisapicommand
50RISCO
abrir ↗Metasploit500
Poptop Negative Read Overflow
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (Mac OS X PPC)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (Linux x86)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit200
Samba 2.2.2 - 2.2.6 nttrans Buffer Overflow
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute a
30RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (*BSD x86)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (Solaris SPARC)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit600
QuickTime Streaming Server parse_xml.cgi Remote Execution
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote a
50RISCO
abrir ↗Metasploit300
Solaris KCMS + TTDB Arbitrary File Read
Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allow
23RISCO
abrir ↗Metasploit500
RealServer Describe Buffer Overflow
Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbit
60RISCO
abrir ↗Metasploit300
PuTTY Buffer Overflow
Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers
60RISCO
abrir ↗Metasploit200
Webster HTTP Server GET Buffer Overflow
Buffer overflow in Webster HTTP Server allows remote attackers to execute arbitrary code via a long URL.
50RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.