Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
71.886exploits catalogados
32.153CVEs com exploração pública
1.932testados em laboratório
TodosExploit-DB 22.786Referência 19.978GitHub PoC 13.282VulnCheck XDB 8.176Nuclei 4.202Metasploit 3.462✓ só verificadosrecentespopularesrisco
22.786 exploits
Exploit-DB
PHP 7.1.8 - Heap Buffer Overflow
In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian hand
28RISCO
abrir ↗Exploit-DB
ManageEngine Applications Manager 13 - SQL Injection
Zoho ManageEngine Applications Manager 13 before build 13500 allows Post-authentication SQL injection via the name param
23RISCO
abrir ↗Exploit-DB
Ametys CMS 4.0.2 - Password Reset
Ametys before 4.0.3 requires authentication only for URIs containing a /cms/ substring, which allows remote attackers to
23RISCO
abrir ↗Exploit-DB
ManageEngine Applications Manager 13 - SQL Injection
Zoho ManageEngine Applications Manager 13 before build 13500 allows SQL injection via GraphicalView.do, as demonstrated
23RISCO
abrir ↗Exploit-DB
Linux Kernel 4.13 (Ubuntu 17.10) - 'waitid()' SMEP/SMAP/Chrome Sandbox Privilege Escalation
Insufficient data validation in waitid allowed an user to escape sandboxes on Linux.
23RISCO
abrir ↗Exploit-DB
Avaya IP Office (IPO) < 10.1 - ActiveX Buffer Overflow
Buffer overflow in the ViewerCtrlLib.ViewerCtrl ActiveX control in Avaya IP Office Contact Center before 10.1.1 allows r
28RISCO
abrir ↗Exploit-DB
Avaya IP Office (IPO) < 10.1 - 'SoftConsole' Remote Buffer Overflow (SEH)
Buffer overflow in the SoftConsole client in Avaya IP Office before 10.1.1 allows remote servers to execute arbitrary co
23RISCO
abrir ↗Exploit-DB
WordPress Plugin Userpro < 4.9.17.1 - Authentication Bypass
The UserPro plugin before 4.9.17.1 for WordPress, when used on a site with the "admin" username, allows remote attackers
28RISCO
abrir ↗Exploit-DB
GraphicsMagick - Memory Disclosure / Heap Overflow
GraphicsMagick 1.3.26 is vulnerable to a heap-based buffer overflow vulnerability found in the "Display visual image dir
28RISCO
abrir ↗Exploit-DB
Logitech Media Server 7.9.0 - 'favorites' Cross-Site Scripting
Persistent Cross-Site Scripting (XSS) vulnerability in Logitech Media Server 7.9.0, affecting the "Favorites" feature. T
23RISCO
abrir ↗Exploit-DB
Ipswitch WS_FTP Professional < 12.6.0.3 - Local Buffer Overflow (SEH)
Ipswitch WS_FTP Professional before 12.6.0.3 has buffer overflows in the local search field and the backup locations fie
23RISCO
abrir ↗Exploit-DB
Logitech Media Server 7.9.0 - 'Radio URL' Cross-Site Scripting
Persistent Cross-Site Scripting (XSS) vulnerability in Logitech Media Server 7.9.0, affecting the "Radio" functionality.
23RISCO
abrir ↗Exploit-DB
tnftp - 'savefile' Arbitrary Command Execution (Metasploit)
The fetch_url function in usr.bin/ftp/fetch.c in tnftp, as used in NetBSD 5.1 through 5.1.4, 5.2 through 5.2.2, 6.0 thro
50RISCO
abrir ↗Exploit-DB
GraphicsMagick - Memory Disclosure / Heap Overflow
GraphicsMagick 1.3.26 is vulnerable to a memory information disclosure vulnerability found in the DescribeImage function
28RISCO
abrir ↗Exploit-DB
Debut Embedded HTTPd 1.20 - Denial of Service
The Debut embedded http server contains a remotely exploitable denial of service where a single malformed HTTP POST requ
50RISCO
abrir ↗Exploit-DB
Cisco UCS Platform Emulator 3.1(2ePE1) - Remote Code Execution
A vulnerability in the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewal
45RISCO
abrir ↗Exploit-DB
Vir.IT eXplorer Anti-Virus 8.5.39 - 'VIAGLT64.SYS' Local Privilege Escalation
In Vir.IT eXplorer Anti-Virus before 8.5.42, the driver file (VIAGLT64.SYS) contains an Arbitrary Write vulnerability be
23RISCO
abrir ↗Exploit-DB
OctoberCMS 1.0.426 (Build 426) - Cross-Site Request Forgery
Cross-Site Request Forgery exists in OctoberCMS 1.0.426 (aka Build 426) due to improper validation of CSRF tokens for po
23RISCO
abrir ↗Exploit-DB
ZyXEL PK5001Z Modem - Backdoor Account
ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access
28RISCO
abrir ↗Exploit-DB
MyMagazine 1.0 - 'id' SQL Injection
MyMagazine Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing
23RISCO
abrir ↗Exploit-DB
Php Inventory - Arbitrary File Upload
Php Inventory & Invoice Management System allows Arbitrary File Upload via dashboard/edit_myaccountdetail/.
23RISCO
abrir ↗Exploit-DB
tPanel 2009 - Authentication Bypass
tPanel 2009 allows SQL injection for Authentication Bypass via 'or 1=1 or ''=' to login.php.
23RISCO
abrir ↗Exploit-DB
PHP CityPortal 2.0 - SQL Injection
PHP CityPortal 2.0 allows SQL Injection via the nid parameter to index.php in a page=news action, or the cat parameter.
23RISCO
abrir ↗Exploit-DB
Oracle Java SE - Web Start jnlp XML External Entity Processing Information Disclosure
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affecte
23RISCO
abrir ↗Exploit-DB
D-Park Pro 1.0 - SQL Injection
D-Park Pro Domain Parking Script 1.0 allows SQL Injection via the username to admin/loginform.php.
23RISCO
abrir ↗Exploit-DB
Job Board Script - 'nice_theme' SQL Injection
Job Board Script Software allows SQL Injection via the PATH_INFO to a /job-details URI.
23RISCO
abrir ↗Exploit-DB
iProject Management System 1.0 - 'ID' SQL Injection
iProject Management System 1.0 allows SQL Injection via the ID parameter to index.php.
23RISCO
abrir ↗Exploit-DB
Article Directory Script 3.0 - 'id' SQL Injection
Article Directory Script 3.0 allows SQL Injection via the id parameter to author.php or category.php.
23RISCO
abrir ↗Exploit-DB
Joomla! Component Zh YandexMap 6.1.1.0 - 'placemarklistid' SQL Injection
The Zh YandexMap (aka com_zhyandexmap) component 6.1.1.0 for Joomla! allows SQL Injection via the placemarklistid parame
23RISCO
abrir ↗Exploit-DB
Joomla! Component NS Download Shop 2.2.6 - 'id' SQL Injection
The NS Download Shop (aka com_ns_downloadshop) component 2.2.6 for Joomla! allows SQL Injection via the id parameter in
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.