Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
79.980exploits catalogados
36.899CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.476Referência 23.400GitHub PoC 15.250VulnCheck XDB 8.959Nuclei 4.393Metasploit 3.502✓ só verificadosrecentespopularesrisco
3.502 exploits
Metasploit300
Cisco Device HTTP Device Manager Access
The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands with
60RISCO
abrir ↗Metasploit300
LPRng use_syslog Remote Format String Vulnerability
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary comman
60RISCO
abrir ↗Metasploit200
GAMSoft TelSrv 1.5 Username Buffer Overflow
GAMSoft TelSrv telnet server 1.5 and earlier allows remote attackers to cause a denial of service via a long username.
50RISCO
abrir ↗Metasploit300
UoW pop2d Remote File Retrieval Vulnerability
Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD com
50RISCO
abrir ↗Metasploit500
WU-FTPD SITE EXEC/INDEX Format String Vulnerability
The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remo
60RISCO
abrir ↗Metasploit600
Microsoft SQL Server Payload Execution via SQL Injection
The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3)
60RISCO
abrir ↗Metasploit600
Microsoft SQL Server Payload Execution via SQL Injection
The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in pla
60RISCO
abrir ↗Metasploit600
Microsoft SQL Server Payload Execution
The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3)
60RISCO
abrir ↗Metasploit600
Microsoft SQL Server Payload Execution
The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in pla
60RISCO
abrir ↗Metasploit300
OpenSSL DTLS ChangeCipherSpec Remote DoS
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and
60RISCO
abrir ↗Metasploit300
Cisco IOS HTTP GET /%% Request Denial of Service
The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a deni
50RISCO
abrir ↗Metasploit400
UoW IMAP Server LSUB Buffer Overflow
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISCO
abrir ↗Metasploit600
RedHat Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution
The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary command
50RISCO
abrir ↗Metasploit600
RedHat Piranha Virtual Server Package passwd.php3 Arbitrary Command Execution
The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password tha
60RISCO
abrir ↗Metasploit300
ARP Spoof
The ARP protocol allows any host to spoof ARP replies and poison the ARP cache to conduct IP address spoofing or a denia
23RISCO
abrir ↗Metasploit600
Matt Wright guestbook.pl Arbitrary Command Execution
guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remo
60RISCO
abrir ↗Metasploit0
SSH User Code Execution
A Unix account has a default, null, blank, or missing password.
50RISCO
abrir ↗Metasploit600
Windows Management Instrumentation (WMI) Remote Command Execution
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir ↗Metasploit600
Powershell Remoting Remote Command Execution
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir ↗Metasploit600
PsExec via Current User Token
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir ↗Metasploit0
Microsoft Windows Authenticated User Code Execution
A Windows NT local user or administrator account has a default, null, blank, or missing password.
50RISCO
abrir ↗Metasploit600
MS99-025 Microsoft IIS MDAC msadcs.dll RDS Arbitrary Remote Command Execution
The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x expose
60RISCO
abrir ↗Metasploit200
War-FTPD 1.65 Username Overflow
Buffer overflow in War FTP allows remote execution of commands.
60RISCO
abrir ↗Metasploit200
War-FTPD 1.65 Password Overflow
Buffer overflow in War FTP allows remote execution of commands.
60RISCO
abrir ↗Metasploit300
X11 Keylogger
An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.
23RISCO
abrir ↗Metasploit300
Chargen Probe Utility
Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a. UDP bomb or U
23RISCO
abrir ↗Metasploit600
Solaris ypupdated Command Execution
The SunView (SunTools) selection_svc facility allows remote users to read files.
50RISCO
abrir ↗Metasploit300
D-Link DIR-615H HTTP Login Utility
A Unix account has a default, null, blank, or missing password.
50RISCO
abrir ↗Metasploit300
D-Link DIR-300A / DIR-320 / DIR-615D HTTP Login Utility
A Unix account has a default, null, blank, or missing password.
50RISCO
abrir ↗Metasploit300
MS09-020 IIS6 WebDAV Unicode Auth Bypass Directory Scanner
The WebDAV extension in Microsoft Internet Information Services (IIS) 5.1 and 6.0 allows remote attackers to bypass URI-
60RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.