Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

80.184exploits catalogados
37.029CVEs com exploração pública
24.695testados em laboratório
24.476 exploits
Exploit-DB
Microsoft Windows Kernel - 'win32k.sys NtSetWindowLongPtr' Local Privilege Escalation (MS16-135) (2)
CVE-2016-7255HIGHsob ataqueransomwarelocalwindows08 jan 2017
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
93RISCO
abrir
Exploit-DB
Splunk 6.1.1 - 'Referer' Header Cross-Site Scripting
CVE-2014-8380webappsphp07 jan 2017
Cross-site scripting (XSS) vulnerability in Splunk 6.1.1 allows remote attackers to inject arbitrary web script or HTML
23RISCO
abrir
Exploit-DB
Microsoft Edge (Windows 10) - 'chakra.dll' Information Leak / Type Confusion Remote Code Execution
CVE-2016-7201HIGHsob ataqueremotewindows05 jan 2017
The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a de
93RISCO
abrir
Exploit-DB
Microsoft Edge (Windows 10) - 'chakra.dll' Information Leak / Type Confusion Remote Code Execution
CVE-2016-7200HIGHsob ataqueremotewindows05 jan 2017
The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a de
93RISCO
abrir
Exploit-DB
Firejail < 0.9.44.4 / < 0.9.38.8 LTS - Local Sandbox Escape
CVE-2017-5180locallinux04 jan 2017
Firejail before 0.9.44.4 and 0.9.38.x LTS before 0.9.38.8 LTS does not consider the .Xauthority case during its attempt
23RISCO
abrir
Exploit-DBVexDay Proof
Atlassian Confluence < 5.10.6 - Persistent Cross-Site Scripting
CVE-2016-6283webappsjsp04 jan 2017
Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.10.6 allows remote attackers to inject arbitra
23RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 / SwiftMailer < 5.4.5-DEV / Zend Framework / zend-mail < 2.4.11 - 'AIO' 'PwnScriptum' Remote Code Execution
CVE-2016-10045webappsphp02 jan 2017
The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail comman
60RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 / SwiftMailer < 5.4.5-DEV / Zend Framework / zend-mail < 2.4.11 - 'AIO' 'PwnScriptum' Remote Code Execution
CVE-2016-10074webappsphp02 jan 2017
The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass
35RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 / SwiftMailer < 5.4.5-DEV / Zend Framework / zend-mail < 2.4.11 - 'AIO' 'PwnScriptum' Remote Code Execution
CVE-2016-10034webappsphp02 jan 2017
The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.
35RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 / SwiftMailer < 5.4.5-DEV / Zend Framework / zend-mail < 2.4.11 - 'AIO' 'PwnScriptum' Remote Code Execution
CVE-2016-10033CRITICALsob ataquewebappsphp02 jan 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
Exploit-DB
Zend Framework / zend-mail < 2.4.11 - Remote Code Execution
CVE-2016-10034webappsphp30 dez 2016
The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.
35RISCO
abrir
Exploit-DB
PHPMailer < 5.2.18 - Remote Code Execution
CVE-2016-10033CRITICALsob ataquewebappsphp29 dez 2016
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
Exploit-DBVexDay Proof
Google Android - get_user/put_user (Metasploit)
CVE-2013-6282HIGHsob ataquelocalandroid29 dez 2016
The (1) get_user and (2) put_user API functions in the Linux kernel before 3.5.5 on the v6k and v7 ARM platforms do not
98RISCO
abrir
Exploit-DB
SapLPD 7.40 - Denial of Service
CVE-2016-10079doswindows28 dez 2016
SAPlpd through 7400.3.11.33 in SAP GUI 7.40 on Windows has a Denial of Service vulnerability (service crash) with a long
23RISCO
abrir
Exploit-DB
SwiftMailer < 5.4.5-DEV - Remote Code Execution
CVE-2016-10074webappsphp28 dez 2016
The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass
35RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 - Remote Code Execution
CVE-2016-10045webappsphp27 dez 2016
The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail comman
60RISCO
abrir
Exploit-DB
PHPMailer < 5.2.20 - Remote Code Execution
CVE-2016-10033CRITICALsob ataquewebappsphp27 dez 2016
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
Exploit-DBVexDay Proof
PHPMailer < 5.2.18 - Remote Code Execution
CVE-2016-10033CRITICALsob ataquewebappsphp26 dez 2016
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
Exploit-DBVexDay Proof
PHPMailer < 5.2.19 - Sendmail Argument Injection (Metasploit)
CVE-2016-1004webappsmultiple26 dez 2016
20RISCO
abrir
Exploit-DBVexDay Proof
Wampserver 3.0.6 - Insecure File Permissions Privilege Escalation
CVE-2016-10031localwindows26 dez 2016
WampServer 3.0.6 installs two services called 'wampapache' and 'wampmysqld' with weak file permissions, running with SYS
23RISCO
abrir
Exploit-DBVexDay Proof
PHPMailer < 5.2.19 - Sendmail Argument Injection (Metasploit)
CVE-2016-1003webappsmultiple26 dez 2016
20RISCO
abrir
Exploit-DBVexDay Proof
Shutter 0.93.1 - Code Execution
CVE-2016-10081locallinux26 dez 2016
/usr/bin/shutter in Shutter through 0.93.1 allows user-assisted remote attackers to execute arbitrary commands via a cra
23RISCO
abrir
Exploit-DB
Sonicwall 8.1.0.2-14sv - 'extensionsettings.cgi' Remote Command Injection (Metasploit)
CVE-2016-9683webappshardware25 dez 2016
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerabili
28RISCO
abrir
Exploit-DB
PHPMailer < 5.2.18 - Remote Code Execution
CVE-2016-10033CRITICALsob ataquewebappsphp25 dez 2016
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
Exploit-DB
Sonicwall 8.1.0.2-14sv - 'viewcert.cgi' Remote Command Injection (Metasploit)
CVE-2016-9684webappshardware24 dez 2016
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerabili
23RISCO
abrir
Exploit-DB
Apache mod_session_crypto - Padding Oracle
CVE-2016-0736webappsmultiple23 dez 2016
In Apache HTTP Server versions 2.4.0 to 2.4.23, mod_session_crypto was encrypting its data/cookie using the configured c
35RISCO
abrir
Exploit-DBVexDay Proof
OpenSSH < 7.4 - agent Protocol Arbitrary Library Loading
CVE-2016-10009HIGHremotelinux23 dez 2016
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute
53RISCO
abrir
Exploit-DBVexDay Proof
OpenSSH < 7.4 - 'UsePrivilegeSeparation Disabled' Forwarded Unix Domain Sockets Privilege Escalation
CVE-2016-10010HIGHlocallinux23 dez 2016
sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which
41RISCO
abrir
Exploit-DB
Freepbx < 2.11.1.5 - Remote Code Execution
CVE-2014-7235webappsphp23 dez 2016
htdocs_ari/includes/login.php in the ARI Framework module/Asterisk Recording Interface (ARI) in FreePBX before 2.9.0.9,
35RISCO
abrir
Exploit-DBVexDay Proof
Apple macOS 10.12 - Double vm_deallocate in Userspace MIG Code Use-After-Free
CVE-2016-7633dosmacos22 dez 2016
An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "Directory S
23RISCO
abrir
anteriorpágina 155 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.