Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

80.095exploits catalogados
36.945CVEs com exploração pública
24.695testados em laboratório
15.312 exploits
GitHub PoC2
Security research and technical analysis of CVE-2025-5548, a buffer overflow vulnerability affecting FreeFloat FTP Server 1.0. This repository documents vulnerability behavior, attack surface, controlled proof of concept testing, and defensive insights within a structured research environment for cybersecurity learning and analysis.
CVE-2025-5548MEDIUM15 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
exploit para a CVE-2021-41773:Path Traversal cgi-bin
CVE-2021-41773HIGHsob ataqueransomware15 mar 2026
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISCO
abrir
GitHub PoC
Heap Buffer Overflow in CVE-2025-5548
CVE-2025-5548MEDIUM14 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
MotionEye v0.43.1b4 OS Command Injection
CVE-2025-60787HIGH14 mar 2026
MotionEye v0.43.1b4 and before is vulnerable to OS Command Injection in configuration parameters such as image_file_name
61RISCO
abrir
GitHub PoC
Explotación de la vulnerabilidad CVE-2025-5548, paso a paso
CVE-2025-5548MEDIUM14 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
Script and node.proto for exploit CVE-2025-68926
CVE-2025-68926CRITICAL14 mar 2026
RustFS has a gRPC Hardcoded Token Authentication Bypass
60RISCO
abrir
GitHub PoC
anasrami12/CVE-2025-5548
CVE-2025-5548MEDIUM14 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
Análisis técnico, preparación de entorno de laboratorio y desarrollo de exploit (RCE) para la vulnerabilidad CVE-2025-5548 en FreeFloat FTP Server.
CVE-2025-5548MEDIUM14 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
LorenzoPorrasDuque/CVE-2025-5548-POC
CVE-2025-5548MEDIUM14 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
CVE-2018-6606
CVE-2018-660614 mar 2026
An issue was discovered in MalwareFox AntiMalware 2.74.0.150. Improper access control in zam32.sys and zam64.sys allows
23RISCO
abrir
GitHub PoC1
CVE-2025-49844
CVE-2025-49844CRITICAL13 mar 2026
Redis Lua Use-After-Free may lead to remote code execution
85RISCO
abrir
GitHub PoC7
Pix for WooCommerce <= 1.5.0 - Unauthenticated Arbitrary File Upload (CVE-2026-3891) PoC
CVE-2026-3891CRITICAL13 mar 2026
Pix for WooCommerce <= 1.5.0 - Unauthenticated Arbitrary File Upload
68RISCO
abrir
GitHub PoC
charlyrr/CVE-2025-5548
CVE-2025-5548MEDIUM13 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
0xTerror/CVE-2025-6934
CVE-2025-6934CRITICAL13 mar 2026
Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation via 'on_regiser_user'
68RISCO
abrir
GitHub PoC1
Proof‑of‑concept Python script demonstrating CVE‑2023‑43208 in Mirth Connect, allowing version checks and command execution on vulnerable instances.
CVE-2023-43208CRITICALsob ataqueransomware13 mar 2026
NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that
100RISCO
abrir
GitHub PoC
Python PoC for CVE-2025-60787, authenticated OS command injection RCE in motionEye <= 0.43.1b4 via unsanitized image_file_name config
CVE-2025-60787HIGH13 mar 2026
MotionEye v0.43.1b4 and before is vulnerable to OS Command Injection in configuration parameters such as image_file_name
61RISCO
abrir
GitHub PoC
Research of CVE-2024-3094 vulnerability.
CVE-2024-3094CRITICAL13 mar 2026
Xz: malicious code in distributed source
70RISCO
abrir
GitHub PoC10
Adaptation of Cassowary CVE-2024-23222 for Linux x86_64
CVE-2024-23222HIGHsob ataque13 mar 2026
A type confusion issue was addressed with improved checks. This issue is fixed in Safari 17.3, iOS 15.8.7 and iPadOS 15.
76RISCO
abrir
GitHub PoC
Entorno y explotación de la vulnerabilidad CVE-2025-5548
CVE-2025-5548MEDIUM13 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
alanschmidt81/CVE-2025-5548
CVE-2025-5548MEDIUM12 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
Apache HTTP Server (2.4.49) üzerinde CVE-2021-42013 zafiyetini (Path Traversal & RCE) simüle eden Docker tabanlı sızma testi laboratuvarı.
CVE-2021-42013CRITICALsob ataqueransomware12 mar 2026
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISCO
abrir
GitHub PoC1
Educational lab demonstrating CVE-2018-7600 (Drupalgeddon2) Remote Code Execution using a Docker-based vulnerable Drupal 7.56 environment.
CVE-2018-7600CRITICALsob ataqueransomware12 mar 2026
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbi
100RISCO
abrir
GitHub PoC
CVE-2017-0199 XLS --> HTA --> VBS --> STEGANOGRAPHY --> DBATLOADER/GULOADER STYLE MALWARE
CVE-2017-0199HIGHsob ataqueransomware12 mar 2026
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
GitHub PoC
CVE-2024-32002 Private for Capstone Project CC10
CVE-2024-32002CRITICAL12 mar 2026
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC
0x0asif/CVE-2024-21762
CVE-2024-21762CRITICALsob ataqueransomware12 mar 2026
A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0
100RISCO
abrir
GitHub PoC
🚀 Complete analysis and exploitation of CVE-2025-5548 (FreeFloat FTP Server 1.0 - NOOP Buffer Overflow) Full methodology: manual tool installation, lab environment setup, fuzzing, offset calculation, bad chars, JMP ESP and working reverse shell exploit.
CVE-2025-5548MEDIUM12 mar 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISCO
abrir
GitHub PoC
LunaLynx12/cve-2023-43208-poc
CVE-2023-43208CRITICALsob ataqueransomware12 mar 2026
NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that
100RISCO
abrir
GitHub PoC
Basic Proof of Concept (Poc) Exploit for React RSC - CVE-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware12 mar 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
rootxran/CVE-2026-29053
CVE-2026-29053HIGH12 mar 2026
Ghost Vulnerable to Remote Code Execution via Malicious Themes
56RISCO
abrir
GitHub PoC
hook repo for cve-2024-32002
CVE-2024-32002CRITICAL12 mar 2026
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
anteriorpágina 122 / 511próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.