Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.980exploits catalogados
36.899CVEs com exploração pública
24.695testados em laboratório
3.502 exploits
Metasploit200
TFTPD32 Long Filename Buffer Overflow
CVE-2002-222619 nov 2002
Buffer overflow in tftpd of TFTP32 2.21 and earlier allows remote attackers to execute arbitrary code via a long filenam
50RISCO
abrir
Metasploit300
MS02-065 Microsoft IIS MDAC msadcs.dll RDS DataStub Content-Type Overflow
CVE-2002-114202 nov 2002
Heap-based buffer overflow in the Remote Data Services (RDS) component of Microsoft Data Access Components (MDAC) 2.1 th
60RISCO
abrir
Metasploit300
MS02-063 PPTP Malformed Control Data Kernel Denial of Service
CVE-2002-121426 set 2002
Buffer overflow in Microsoft PPTP Service on Windows XP and Windows 2000 allows remote attackers to cause a denial of se
30RISCO
abrir
Metasploit500
Savant 3.1 Web Server Overflow
CVE-2002-112010 set 2002
Buffer overflow in Savant Web Server 3.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP G
50RISCO
abrir
Metasploit600
HP-UX LPD Command Execution
CVE-2002-147328 ago 2002
Multiple buffer overflows in lp subsystem for HP-UX 10.20 through 11.11 (11i) allow local users to cause a denial of ser
38RISCO
abrir
Metasploit400
MS02-056 Microsoft SQL Server Hello Overflow
CVE-2002-112305 ago 2002
Buffer overflow in the authentication function for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 al
60RISCO
abrir
Metasploit400
MS02-039 Microsoft SQL Server Resolution Overflow
CVE-2002-064924 jul 2002
Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSD
60RISCO
abrir
Metasploit200
SecureCRT SSH1 Buffer Overflow
CVE-2002-105923 jul 2002
Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execut
50RISCO
abrir
Metasploit500
Solaris dtspcd Heap Overflow
CVE-2001-080310 jul 2002
Buffer overflow in the client connection routine of libDtSvc.so.1 in CDE Subprocess Control Service (dtspcd) allows remo
60RISCO
abrir
Metasploit400
Apache Win32 Chunked Encoding
CVE-2002-039219 jun 2002
Apache 1.3 through 1.3.24, and Apache 2.0 through 2.0.36, allows remote attackers to cause a denial of service and possi
60RISCO
abrir
Metasploit400
Oracle 8i TNS Listener SERVICE_NAME Buffer Overflow
CVE-2002-096527 mai 2002
Buffer overflow in TNS Listener for Oracle 9i Database Server on Windows systems, and Oracle 8 on VM, allows local users
50RISCO
abrir
Metasploit400
MS02-018 Microsoft IIS 4.0 .HTR Path Overflow
CVE-1999-087410 abr 2002
Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .
60RISCO
abrir
Metasploit600
DistCC Daemon Command Execution
CVE-2004-268701 fev 2002
distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote at
60RISCO
abrir
Metasploit600
Solaris in.telnetd TTYPROMPT Buffer Overflow
CVE-2001-079718 jan 2002
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary comman
60RISCO
abrir
Metasploit400
System V Derived /bin/login Extraneous Arguments Buffer Overflow
CVE-2001-079712 dez 2001
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary comman
60RISCO
abrir
Metasploit600
Irix LPD tagprinter Command Execution
CVE-2001-080001 set 2001
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
50RISCO
abrir
Metasploit600
Solaris LPD Command Execution
CVE-2001-158331 ago 2001
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request wit
60RISCO
abrir
Metasploit400
Network Associates PGP KeyServer 7 LDAP Buffer Overflow
CVE-2001-132016 jul 2001
Network Associates PGP Keyserver 7.0 allows remote attackers to cause a denial of service (crash) and possibly execute a
50RISCO
abrir
Metasploit400
Oracle 8i TNS Listener (ARGUMENTS) Buffer Overflow
CVE-2001-049928 jun 2001
Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers t
60RISCO
abrir
Metasploit300
Cisco IOS HTTP Unauthorized Administrative Access
CVE-2001-053727 jun 2001
HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when lo
50RISCO
abrir
Metasploit400
MS01-033 Microsoft IIS 5.0 IDQ Path Overflow
CVE-2001-050018 jun 2001
Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier a
60RISCO
abrir
Metasploit600
MS01-026 Microsoft IIS/PWS CGI Filename Double Decode Command Execution
CVE-2001-033315 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
Metasploit400
MS01-023 Microsoft IIS 5.0 Printer Host Header Overflow
CVE-2001-024101 mai 2001
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RISCO
abrir
Metasploit400
NTP Daemon readvar Buffer Overflow
CVE-2001-041404 abr 2001
Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial o
60RISCO
abrir
Metasploit600
MS08-068 Microsoft Windows SMB Relay Code Execution
CVE-2008-403731 mar 2001
Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20
50RISCO
abrir
Metasploit300
Windows Gather DynaZIP Saved Password Extraction
CVE-2001-015227 mar 2001
The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password
18RISCO
abrir
Metasploit600
HP OpenView OmniBack II Command Execution
CVE-2001-031128 fev 2001
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack c
43RISCO
abrir
Metasploit200
WinVNC Web Server GET Overflow
CVE-2001-016829 jan 2001
Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute
60RISCO
abrir
Metasploit300
RealVNC 3.3.7 Client Buffer Overflow
CVE-2001-016729 jan 2001
Buffer overflow in AT&T WinVNC (Virtual Network Computing) client 3.3.3r7 and earlier allows remote attackers to execute
50RISCO
abrir
Metasploit400
MS00-094 Microsoft IIS Phone Book Service Overflow
CVE-2000-108904 dez 2000
Buffer overflow in Microsoft Phone Book Service allows local users to execute arbitrary commands, aka the "Phone Book Se
60RISCO
abrir
anteriorpágina 107 / 117próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.