Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

71.886exploits catalogados
32.153CVEs com exploração pública
1.932testados em laboratório
3.462 exploits
Metasploit300
Cisco IOS HTTP GET /%% Request Denial of Service
CVE-2000-038026 abr 2000
The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a deni
50RISCO
abrir
Metasploit300
OpenSSL DTLS ChangeCipherSpec Remote DoS
CVE-2009-138626 abr 2000
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and
60RISCO
abrir
Metasploit400
UoW IMAP Server LSUB Buffer Overflow
CVE-2000-028416 abr 2000
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISCO
abrir
Metasploit600
RedHat Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution
CVE-2000-024804 abr 2000
The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password tha
60RISCO
abrir
Metasploit600
RedHat Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution
CVE-2000-032204 abr 2000
The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary command
50RISCO
abrir
Metasploit300
ARP Spoof
CVE-1999-066722 dez 1999
The ARP protocol allows any host to spoof ARP replies and poison the ARP cache to conduct IP address spoofing or a denia
23RISCO
abrir
Metasploit600
Matt Wright guestbook.pl Arbitrary Command Execution
CVE-1999-105305 nov 1999
guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remo
60RISCO
abrir
Metasploit600
PsExec via Current User Token
CVE-1999-050401 jan 1999
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir
Metasploit0
SSH User Code Execution
CVE-1999-050201 jan 1999
A Unix account has a default, null, blank, or missing password.
50RISCO
abrir
Metasploit0
Microsoft Windows Authenticated User Code Execution
CVE-1999-050401 jan 1999
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir
Metasploit600
Powershell Remoting Remote Command Execution
CVE-1999-050401 jan 1999
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir
Metasploit600
Windows Management Instrumentation (WMI) Remote Command Execution
CVE-1999-050401 jan 1999
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir
Metasploit600
MS99-025 Microsoft IIS MDAC msadcs.dll RDS Arbitrary Remote Command Execution
CVE-1999-101117 jul 1998
The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x expose
60RISCO
abrir
Metasploit200
War-FTPD 1.65 Password Overflow
CVE-1999-025619 mar 1998
Buffer overflow in War FTP allows remote execution of commands.
60RISCO
abrir
Metasploit200
War-FTPD 1.65 Username Overflow
CVE-1999-025619 mar 1998
Buffer overflow in War FTP allows remote execution of commands.
60RISCO
abrir
Metasploit300
X11 Keylogger
CVE-1999-052601 jul 1997
An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.
23RISCO
abrir
Metasploit300
Chargen Probe Utility
CVE-1999-010308 fev 1996
Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a. UDP bomb or U
23RISCO
abrir
Metasploit600
Solaris ypupdated Command Execution
CVE-1999-020912 dez 1994
The SunView (SunTools) selection_svc facility allows remote users to read files.
50RISCO
abrir
Metasploit300
Haserl Arbitrary File Reader
Lack of verification in haserl, a component of Alpine Linux Configuration Framework, before 0.9.36 allows local users to
18RISCO
abrir
Metasploit300
Linux DoS Xen 4.2.0 2012-5525
The get_page_from_gfn hypercall function in Xen 4.2 allows local PV guest OS administrators to cause a denial of service
18RISCO
abrir
Metasploit300
Check For and Prep the Pyrotechnic Devices (Airbags, Battery Clamps, etc.)
The airbag detonation algorithm allows injury to passenger-car occupants via predictable Security Access (SA) data to th
18RISCO
abrir
Metasploit300
Moxa UDP Device Discovery
An issue was discovered in Moxa NPort 5110 versions prior to 2.6, NPort 5130/5150 Series versions prior to 3.6, NPort 52
48RISCO
abrir
Metasploit300
Indusoft WebStudio NTWebServer Remote File Access
Directory traversal vulnerability in NTWebServer in InduSoft Web Studio 6.1 and 7.x before 7.0+Patch 1 allows remote att
30RISCO
abrir
Metasploit300
SAP /sap/bc/soap/rfc SOAP Service RFC_SYSTEM_INFO Function Sensitive Information Gathering
SAP allows remote attackers to obtain potentially sensitive information such as operating system and SAP version via an
23RISCO
abrir
Metasploit300
SAP URL Scanner
CVE-2010-0738MEDIUMsob ataqueransomware
The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2
100RISCO
abrir
Metasploit300
SAP Host Agent Information Disclosure
The GetComputerSystem method in the HostControl service in SAP Netweaver 7.03 allows remote attackers to obtain sensitiv
23RISCO
abrir
Metasploit300
rsh Authentication Scanner
A Unix account has a default, null, blank, or missing password.
50RISCO
abrir
Metasploit300
rsh Authentication Scanner
The rsh/rlogin service is running.
23RISCO
abrir
Metasploit300
rlogin Authentication Scanner
A Unix account has a default, null, blank, or missing password.
50RISCO
abrir
Metasploit300
rlogin Authentication Scanner
The rsh/rlogin service is running.
23RISCO
abrir
anteriorpágina 107 / 116próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.