Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

80.184exploits catalogados
37.029CVEs com exploração pública
24.695testados em laboratório
24.476 exploits
Exploit-DB
HelpDEZK 1.1.1 - Cross-Site Request Forgery / Code Execution
CVE-2017-7447webappsphp05 abr 2017
HelpDEZk 1.1.1 has CSRF in admin/home#/logos/ with an impact of remote execution of arbitrary PHP code.
23RISCO
abrir
Exploit-DB
HelpDEZK 1.1.1 - Cross-Site Request Forgery / Code Execution
CVE-2017-7446webappsphp05 abr 2017
HelpDEZk 1.1.1 has CSRF in admin/home#/person/ with an impact of obtaining admin privileges.
23RISCO
abrir
Exploit-DBVexDay Proof
Faveo Helpdesk Community 1.9.3 - Cross-Site Request Forgery
CVE-2017-7571webappsphp05 abr 2017
public/rolechangeadmin in Faveo 1.9.3 allows CSRF. The impact is obtaining admin privileges.
23RISCO
abrir
Exploit-DB
D-Link DIR-615 - Cross-Site Request Forgery
CVE-2017-7398webappshardware05 abr 2017
D-Link DIR-615 HW: T1 FW:20.09 is vulnerable to Cross-Site Request Forgery (CSRF) vulnerability. This enables an attacke
23RISCO
abrir
Exploit-DB
SpiceWorks 7.5 TFTP - Remote File Overwrite / Upload
CVE-2017-7237remotewindows05 abr 2017
The Spiceworks TFTP Server, as distributed with Spiceworks Inventory 7.5, allows remote attackers to access the Spicewor
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit 10.0.2 (12602.3.12.0.1_ r210800) - 'constructJSReadableStreamDefaultReader' Type Confusion
CVE-2017-2457webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issu
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'RenderLayer' Use-After-Free
CVE-2017-2455dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'table' Use-After-Free
CVE-2017-2471dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. watchOS
23RISCO
abrir
Exploit-DB
Apache Tomcat 6/7/8/9 - Information Disclosure
CVE-2016-6816remotemultiple04 abr 2017
The code in Apache Tomcat 9.0.0.M1 to 9.0.0.M11, 8.5.0 to 8.5.6, 8.0.0.RC1 to 8.0.38, 7.0.0 to 7.0.72, and 6.0.0 to 6.0.
35RISCO
abrir
Exploit-DBVexDay Proof
Apple Webkit - 'JSCallbackData' Universal Cross-Site Scripting
CVE-2017-2442webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issu
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - Bad Locking in necp_open Use-After-Free
CVE-2017-2478dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - SIOCSIFORDER Socket ioctl Memory Corruption Due to Bad Bounds Checking
CVE-2017-2473dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit - Negative-Size memmove in HTMLFormElement
CVE-2017-2459dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit 10.0.2(12602.3.12.0.1) - 'Frame::setDocument (1)' Universal Cross-Site Scripting
CVE-2017-2364webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. The
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - 'bpf' Heap Overflow
CVE-2017-2482dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RISCO
abrir
Exploit-DBVexDay Proof
Broadcom Wi-Fi SoC - TDLS Teardown Request Remote Heap Overflow
CVE-2017-0561remotehardware04 abr 2017
A remote code execution vulnerability in the Broadcom Wi-Fi firmware could enable a remote attacker to execute arbitrary
28RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'WebCore::toJS' Use-After-Free
CVE-2017-2476dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.3 (16D32) - 'audit_pipe_open' Off-by-One Memory Corruption
CVE-2017-2483dosmacos04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RISCO
abrir
Exploit-DBVexDay Proof
Apple Webkit - Universal Cross-Site Scripting by Accessing a Named Property from an Unloaded Window
CVE-2017-2367webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - SIOCGIFORDER Socket ioctl Off-by-One Memory Corruption
CVE-2017-2474dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.3 (16D32) - Use-After-Free Due to Double-Release in posix_spawn
CVE-2017-2472dosmacos04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.2 (16C67) - 'AppleIntelCapriController::GetLinkConfig' Code Execution Due to Lack of Bounds Checking
CVE-2017-2443dosmacos04 abr 2017
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Intel Graph
23RISCO
abrir
Exploit-DBVexDay Proof
Broadcom Wi-Fi SoC - 'dhd_handle_swc_evt' Heap Overflow
CVE-2017-0569remotehardware04 abr 2017
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execu
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'ComposedTreeIterator::traverseNextInShadowTree' Use-After-Free
CVE-2017-2466dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit 10.0.2 (12602.3.12.0.1) - 'disconnectSubframes' Universal Cross-Site Scripting
CVE-2017-2445webappsmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS Kernel 10.12.2 (16C67) - Memory Disclosure Due to Lack of Bounds Checking in AppleIntelCapriController::getDisplayPipeCapability
CVE-2017-2489dosmacos04 abr 2017
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Intel Graph
23RISCO
abrir
Exploit-DBVexDay Proof
Broadcom Wi-Fi SoC - Heap Overflow 'wlc_tdls_cal_mic_chk' Due to Large RSN IE in TDLS Setup Confirm Frame
CVE-2017-0561doshardware04 abr 2017
A remote code execution vulnerability in the Broadcom Wi-Fi firmware could enable a remote attacker to execute arbitrary
28RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit 10.0.2 - HTMLInputElement Use-After-Free
CVE-2017-2454dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel 10.12.3 (16D32) - Double-Free Due to Bad Locking in fsevents Device
CVE-2017-2490localmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
23RISCO
abrir
Exploit-DBVexDay Proof
Apple WebKit - 'FormSubmission::create' Use-After-Free
CVE-2017-2460dosmultiple04 abr 2017
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS bef
23RISCO
abrir
anteriorpágina 147 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.