Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

80.095exploits catalogados
36.945CVEs com exploração pública
24.695testados em laboratório
24.476 exploits
Exploit-DB
KeystoneJS 4.0.0-beta.5 - CSV Excel Macro Injection
CVE-2017-15879webappsnodejs25 out 2017
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in admin/server/api/download.js and lib/list/getCS
23RISCO
abrir
Exploit-DB
Mura CMS < 6.2 - Server-Side Request Forgery / XML External Entity Injection
CVE-2017-15639webappscfm24 out 2017
tasks/feed/readRSS.cfm in Mura CMS before 6.2 allows attackers to bypass intended access restrictions by leveraging the
23RISCO
abrir
Exploit-DBVexDay Proof
Unitrends UEB 9 - bpserverd Authentication Bypass Remote Command Execution (Metasploit)
CVE-2017-12477remotelinux_x8623 out 2017
It was discovered that the bpserverd proprietary protocol in Unitrends Backup (UB) before 10.0.0, as invoked through xin
50RISCO
abrir
Exploit-DBVexDay Proof
Unitrends UEB 9 - http api/storage Remote Root (Metasploit)
CVE-2017-12478remotelinux_x8623 out 2017
It was discovered that the api/storage web interface in Unitrends Backup (UB) before 10.0.0 has an issue in which one of
60RISCO
abrir
Exploit-DBVexDay Proof
Kaltura < 13.2.0 - Remote Code Execution
CVE-2017-14143webappsphp23 out 2017
The getUserzoneCookie function in Kaltura before 13.2.0 uses a hardcoded cookie secret to validate cookie signatures, wh
60RISCO
abrir
Exploit-DB
K7 Total Security 15.1.0.305 - Device Driver Arbitrary Memory Read
CVE-2017-18019doswindows23 out 2017
In K7 Total Security before 15.1.0.305, user-controlled input to the K7Sentry device is not sufficiently sanitized: the
23RISCO
abrir
Exploit-DB
Linux Kernel 4.14.0-rc4+ - 'waitid()' Local Privilege Escalation
CVE-2017-5123locallinux22 out 2017
Insufficient data validation in waitid allowed an user to escape sandboxes on Linux.
23RISCO
abrir
Exploit-DB
ArGoSoft Mini Mail Server 1.0.0.2 - Denial of Service
CVE-2017-15223doswindows21 out 2017
Denial-of-service vulnerability in ArGoSoft Mini Mail Server 1.0.0.2 and earlier allows remote attackers to waste CPU re
23RISCO
abrir
Exploit-DBVexDay Proof
Ayukov NFTP FTP Client < 2.0 - Remote Buffer Overflow
CVE-2017-15222remotewindows21 out 2017
Buffer Overflow vulnerability in Ayukov NFTPD 2.0 and earlier allows remote attackers to execute arbitrary code.
50RISCO
abrir
Exploit-DBVexDay Proof
Mozilla Firefox < 55 - Denial of Service
CVE-2017-7783dosmultiple20 out 2017
If a long user name is used in a username/password combination in a site URL (such as " http://UserName:Password@example
28RISCO
abrir
Exploit-DBVexDay Proof
Xen - Pagetable De-typing Unbounded Recursion
CVE-2017-15595doslinux18 out 2017
An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (unbounded recu
23RISCO
abrir
Exploit-DB
Check_MK 1.2.8p25 - Information Disclosure
CVE-2017-14955webappspython18 out 2017
Check_MK before 1.2.8p26 mishandles certain errors within the failed-login save feature because of a race condition, whi
28RISCO
abrir
Exploit-DB
OpenText Documentum Content Server - Privilege Escalation
CVE-2017-15276webappsmultiple17 out 2017
OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design ga
23RISCO
abrir
Exploit-DB
TP-Link WR940N - (Authenticated) Remote Code
CVE-2017-13772webappshardware17 out 2017
Multiple stack-based buffer overflows in TP-Link WR940N WiFi routers with hardware version 4 allow remote authenticated
35RISCO
abrir
Exploit-DB
OpenText Documentum Content Server - Arbitrary File Download Privilege Escalation
CVE-2017-15012webappsmultiple17 out 2017
OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 does not properly validate the i
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Edge Chakra JIT - Incorrect GenerateBailOut Calling Patterns
CVE-2017-11799doswindows17 out 2017
ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'nt!NtQueryObject (ObjectNameInformation)' Kernel Pool Memory Disclosure
CVE-2017-11785doswindows17 out 2017
The Microsoft Windows Kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Wind
23RISCO
abrir
Exploit-DB
Linux Kernel - 'AF_PACKET' Use-After-Free (2)
CVE-2017-15649doslinux17 out 2017
net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls
23RISCO
abrir
Exploit-DB
OpenText Documentum Content Server - Arbitrary File Download
CVE-2017-15014webappsmultiple17 out 2017
OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design ga
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 10 - WLDP/MSHTML CLSID UMCI Bypass
CVE-2017-11823doswindows17 out 2017
The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security
23RISCO
abrir
Exploit-DB
OpenText Documentum Content Server - 'dmr_content' Privilege Escalation
CVE-2017-15013webappsmultiple17 out 2017
OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design ga
23RISCO
abrir
Exploit-DBVexDay Proof
Apache Solr 7.0.1 - XML External Entity Expansion / Remote Code Execution
CVE-2017-12629webappsxml17 out 2017
Remote code execution occurs in Apache Solr before 7.1 with Apache Lucene before 7.1 by exploiting XXE in conjunction wi
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Edge Chakra JIT - 'RegexHelper::StringReplace' Must Call the Callback Function with Updating ImplicitCallFlags
CVE-2017-11802doswindows17 out 2017
ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker
35RISCO
abrir
Exploit-DBVexDay Proof
Tomcat - Remote Code Execution via JSP Upload Bypass (Metasploit)
CVE-2017-12617HIGHsob ataqueremotejava17 out 2017
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTT
100RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 11 (Windows 7 x86) - 'mshtml.dll' Remote Code Execution (MS17-007)
CVE-2017-0037HIGHsob ataqueremotewindows_x8617 out 2017
Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilde
93RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Edge Chakra - 'StackScriptFunction::BoxState::Box' Accesses to Uninitialized Pointers (Denial of Service)
CVE-2017-11809doswindows17 out 2017
ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 11 (Windows 7 x86) - 'mshtml.dll' Remote Code Execution (MS17-007)
CVE-2017-0059MEDIUMsob ataqueremotewindows_x8617 out 2017
Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information from process memory via
75RISCO
abrir
Exploit-DBVexDay Proof
Apple iOS 10.2 (14C92) - Remote Code Execution
CVE-2017-7115remoteios17 out 2017
An issue was discovered in certain Apple products. iOS before 11 is affected. tvOS before 11 is affected. The issue invo
23RISCO
abrir
Exploit-DB
Linux Kernel < 3.16.39 (Debian 8 x64) - 'inotfiy' Local Privilege Escalation
CVE-2017-7533locallinux_x86-6416 out 2017
Race condition in the fsnotify implementation in the Linux kernel through 4.12.4 allows local users to gain privileges o
23RISCO
abrir
Exploit-DB
Ikraus Anti Virus 2.16.7 - Remote Code Execution
CVE-2017-15643remotewindows16 out 2017
An active network attacker (MiTM) can achieve remote code execution on a machine that runs IKARUS Anti Virus 2.16.7. IKA
23RISCO
abrir
anteriorpágina 126 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.