Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

71.886exploits catalogados
32.153CVEs com exploração pública
1.932testados em laboratório
22.786 exploits
Exploit-DB
Microsoft Windows - 'win32k!NtGdiGetRealizationInfo' Kernel Stack Memory Disclosure
CVE-2017-847322 jun 2017
Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, an
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'win32k!NtGdiMakeFontDir' Kernel Stack Memory Disclosure
CVE-2017-847722 jun 2017
Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'win32k!NtGdiExtGetObjectW' Kernel Stack Memory Disclosure
CVE-2017-847022 jun 2017
Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'nt!NtQueryInformationTransaction (information class 1)' Kernel Stack Memory Disclosure
CVE-2017-848022 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 with Exim MTA - Remote Code Execution
CVE-2016-1003421 jun 2017
The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.
35RISCO
abrir
Exploit-DB
Microsoft Windows - 'IOCTL_MOUNTMGR_QUERY_POINTS' Kernel Mountmgr Pool Memory Disclosure
CVE-2017-848821 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'nt!KiDispatchException' Kernel Stack Memory Disclosure in Exception Handling
CVE-2017-848221 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'IOCTL_DISK_GET_DRIVE_GEOMETRY_EX' Kernel partmgr Pool Memory Disclosure
CVE-2017-849221 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'nt!NtQueryVolumeInformationFile (FileFsVolumeInformation)' Kernel Pool Memory Disclosure
CVE-2017-846221 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'win32k!NtGdiGetOutlineTextMetricsInternalW' Kernel Pool Memory Disclosure
CVE-2017-848421 jun 2017
Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'IOCTL_DISK_GET_DRIVE_LAYOUT_EX' Kernel partmgr Pool Memory Disclosure
CVE-2017-846921 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'IOCTL 0x390400_ operation code 0x00020000' Kernel KsecDD Pool Memory Disclosure
CVE-2017-848721 jun 2017
Windows OLE in Windows XP and Windows Server 2003 allows an attacker to execute code when a victim opens a specially cra
35RISCO
abrir
Exploit-DB
Microsoft Windows - '0x224000 IOCTL (WmiQueryAllData)' Kernel WMIDataDevice Pool Memory Disclosure
CVE-2017-848921 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
Microsoft Windows - 'IOCTL_VOLUME_GET_VOLUME_DISK_EXTENTS' volmgr Pool Memory Disclosure
CVE-2017-849121 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 with Exim MTA - Remote Code Execution
CVE-2016-1004521 jun 2017
The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail comman
60RISCO
abrir
Exploit-DB
Microsoft Windows - 'win32k!NtGdiEnumFonts' Kernel Pool Memory Disclosure
CVE-2017-849021 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 with Exim MTA - Remote Code Execution
CVE-2016-1007421 jun 2017
The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass
35RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 with Exim MTA - Remote Code Execution
CVE-2016-10033CRITICALsob ataque21 jun 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
Exploit-DB
Microsoft Windows - 'nt!NtNotifyChangeDirectoryFile' Kernel Pool Memory Disclosure
CVE-2017-029921 jun 2017
The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,
23RISCO
abrir
Exploit-DB
Freeware Advanced Audio Coder (FAAC) 1.28 - Denial of Service
CVE-2017-913020 jun 2017
The faacEncOpen function in libfaac/frame.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to caus
23RISCO
abrir
Exploit-DB
BOA Web Server 0.94.14rc21 - Arbitrary File Access
CVE-2017-983320 jun 2017
/cgi-bin/wapopen in Boa 0.94.14rc21 allows the injection of "../.." using the FILECAMERA variable (sent by GET) to read
50RISCO
abrir
Exploit-DB
Freeware Advanced Audio Coder (FAAC) 1.28 - Denial of Service
CVE-2017-912920 jun 2017
The wav_open_read function in frontend/input.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to c
23RISCO
abrir
Exploit-DB
GNU binutils - 'bfd_get_string' Stack Buffer Overflow
CVE-2017-974719 jun 2017
The ieee_archive_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GN
23RISCO
abrir
Exploit-DB
GNU binutils - 'ieee_object_p' Stack Buffer Overflow
CVE-2017-974819 jun 2017
The ieee_object_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU
23RISCO
abrir
Exploit-DB
GNU binutils - 'print_insn_score16' Buffer Overflow
CVE-2017-974219 jun 2017
The score_opcodes function in opcodes/score7-dis.c in GNU Binutils 2.28 allows remote attackers to cause a denial of ser
23RISCO
abrir
Exploit-DB
GNU binutils - 'aarch64_ext_ldst_reglist' Buffer Overflow
CVE-2017-975619 jun 2017
The aarch64_ext_ldst_reglist function in opcodes/aarch64-dis.c in GNU Binutils 2.28 allows remote attackers to cause a d
23RISCO
abrir
Exploit-DB
GNU binutils - 'decode_pseudodbg_assert_0' Buffer Overflow
CVE-2017-974919 jun 2017
The *regs* macros in opcodes/bfin-dis.c in GNU Binutils 2.28 allow remote attackers to cause a denial of service (buffer
23RISCO
abrir
Exploit-DB
GNU binutils - 'disassemble_bytes' Heap Overflow
CVE-2017-974619 jun 2017
The disassemble_bytes function in objdump.c in GNU Binutils 2.28 allows remote attackers to cause a denial of service (b
23RISCO
abrir
Exploit-DB
GNU binutils - 'rx_decode_opcode' Buffer Overflow
CVE-2017-975019 jun 2017
opcodes/rx-decode.opc in GNU Binutils 2.28 lacks bounds checks for certain scale arrays, which allows remote attackers t
23RISCO
abrir
Exploit-DB
WebKit JSC - arrayProtoFuncSplice does not Initialize all Indices
CVE-2017-698016 jun 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. tvOS
23RISCO
abrir
anteriorpágina 133 / 760próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.