Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

80.191exploits catalogados
37.033CVEs com exploração pública
24.695testados em laboratório
15.321 exploits
GitHub PoC
moeinmiadi/CVE-2015-1635_PoC
CVE-2015-1635CRITICALsob ataque20 out 2025
HTTP.sys in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold an
100RISCO
abrir
GitHub PoC
Proof-of-Concept (POC) of a simple firewall in Python designed to mitigate the Spring4Shell (CVE-2022-22965) RCE attack by inspecting and blocking malicious request bodies.
CVE-2022-22965CRITICALsob ataque19 out 2025
A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data b
100RISCO
abrir
GitHub PoC6
专业级HTTP请求走私漏洞利用与自动化渗透测试工具
CVE-2025-55315CRITICAL19 out 2025
ASP.NET Security Feature Bypass Vulnerability
60RISCO
abrir
GitHub PoC
CaelumIsMe/CVE-2019-9053-POC
CVE-2019-905319 out 2025
An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve
35RISCO
abrir
GitHub PoC1
📋 ملخص مشروع MikroTik RouterOS 6.49.18 Exploit Kit 🎯 نظرة عامة تم إنشاء مشروع احترافي وشامل لاختراق أجهزة MikroTik RouterOS 6.49.18 يتضمن جميع المكونات المطلوبة مع واجهة عربية كاملة وتوثيق مفصل. ✅ المكونات المكتملة 1️⃣ سكربتات الاختراق (7 سكربتات ✅ المميزات الرئيسية 1🎯 دعم CVE-2023-30799 اقراء دليل ملخص شامل للاداة PROJECT_SUMMARY.md
CVE-2023-30799CRITICAL19 out 2025
MikroTik RouterOS Administrator Privilege Escalation
48RISCO
abrir
GitHub PoC
robbin0919/CVE-2025-32463
CVE-2025-32463CRITICALsob ataque19 out 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC3
Patch for CVE-2025-54236(a.k.a Session Reaper) which allows customer account takeover and RCE under certain conditions. This patch is actually a Magento 2 extension and universal compatible for Magento 2.3 & 2.4. If you cannot upgrade Magento or cannot apply the official hotfix, try this one.
CVE-2025-54236CRITICALsob ataque19 out 2025
Adobe Commerce | Improper Input Validation (CWE-20)
100RISCO
abrir
GitHub PoC
Custom vulnerable VM (Ubuntu 14.04) designed for teaching multi-stage penetration testing. Features 10 interconnected challenges across Forensics, Web Exploitation (SQLi, XSS), Cryptography, and Kernel Exploitation (OverlayFS/CVE-2015-1328) to achieve full root compromise.
CVE-2015-132818 out 2025
The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does no
50RISCO
abrir
GitHub PoC
We are presented with a security alert indicating the detection of the Follina (CVE-2022-30190) vulnerability. A malicious Word document triggered msdt.exe execution, suggesting possible remote code execution on the host JonasPRD. Our task is to investigate the alert, confirm exploitation, assess impact, and recommend remediation.
CVE-2022-30190HIGHsob ataqueransomware18 out 2025
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC7
Privilege escalation in Fedora Linux via ABRT (Automatic Bug Reporting Tool): CVE-2025-12744
CVE-2025-12744HIGH18 out 2025
Abrt: command-injection in abrt leading to local privilege escalation
41RISCO
abrir
GitHub PoC6
Proof-of-Concept
CVE-2025-33073HIGHsob ataque18 out 2025
Windows SMB Client Elevation of Privilege Vulnerability
93RISCO
abrir
GitHub PoC
End-to-end Domain Controller exploitation using Metasploit and Impacket: discovered DC10, exploited Zerologon (CVE-2020-1472), extracted NTLM hashes, gained SYSTEM shell, and established a Meterpreter session.
CVE-2020-1472MEDIUMsob ataqueransomware18 out 2025
Netlogon Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC
CVE-2017-1000367
CVE-2017-100036717 out 2025
Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_
23RISCO
abrir
GitHub PoC
autocode07/cisagov__check-cve-2019-19781.4142e02b
CVE-2019-19781CRITICALsob ataqueransomware17 out 2025
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. Th
100RISCO
abrir
GitHub PoC1
Sudo Vulnerability Local PrivEsc (CVE-2025-32463) POC with Python
CVE-2025-32463CRITICALsob ataque17 out 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC1
Sudo Vulnerability Local PrivEsc (CVE-2025-32463) POC with Python
CVE-2025-32463CRITICALsob ataque17 out 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC
CVE-2024-27956
CVE-2024-27956CRITICAL17 out 2025
WordPress Automatic plugin <= 3.92.0 - Unauthenticated Arbitrary SQL Execution vulnerability
85RISCO
abrir
GitHub PoC1
secvulnhub/CVE-2025-32463-EXPLOIT
CVE-2025-32463CRITICALsob ataque17 out 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC
0axz-tools/CVE-2024-51793
CVE-2024-51793CRITICAL17 out 2025
WordPress RepairBuddy plugin <= 3.8115 - Arbitrary File Upload vulnerability
48RISCO
abrir
GitHub PoC1
Yukik4z3/CVE-2025-24893
CVE-2025-24893CRITICALsob ataque17 out 2025
Remote code execution as guest via SolrSearchMacros request in xwiki
100RISCO
abrir
GitHub PoC
POC of CVE-2025-61882
CVE-2025-61882CRITICALsob ataqueransomware16 out 2025
Vulnerability in the Oracle Concurrent Processing product of Oracle E-Business Suite (component: BI Publisher Integratio
100RISCO
abrir
GitHub PoC13
Proof of concept for CVE-2022-1364 against Alibaba's UC Browser
CVE-2022-1364HIGHsob ataque16 out 2025
Type confusion in V8 Turbofan in Google Chrome prior to 100.0.4896.127 allowed a remote attacker to potentially exploit
76RISCO
abrir
GitHub PoC1
The default configuration of LDAP on FortiOS v6.0.x to v6.2.0 does not check server identity for LDAP/S leading to MITM attacks. This PoC demos full exfiltration of credentials sent on the local subnet to an LDAP server that is easily impersonated.
CVE-2019-5591MEDIUMsob ataqueransomware16 out 2025
A Default Configuration vulnerability in FortiOS may allow an unauthenticated attacker on the same subnet to intercept s
83RISCO
abrir
GitHub PoC
PoC of CVE-2025-60751
CVE-2025-60751HIGH16 out 2025
GeographicLib 2.5 is vulnerable to Buffer Overflow in GeoConvert DMS::InternalDecode.
41RISCO
abrir
GitHub PoC7
Playground to experiment with different behavior on patched/unpatched Kestrel for the CVE-2025-55315 HTTP smuggling vulnerability
CVE-2025-55315CRITICAL16 out 2025
ASP.NET Security Feature Bypass Vulnerability
60RISCO
abrir
GitHub PoC46
Tool that reproduces CVE-2025-55315 in ASP.NET Core.
CVE-2025-55315CRITICAL16 out 2025
ASP.NET Security Feature Bypass Vulnerability
60RISCO
abrir
GitHub PoC1
Investigation into the XZ Utils backdoor (CVE-2024-3094): chronology, attack chain, risk to SSH, and supply-chain insights. Includes slides, sources, and mitigations (parity checks, attestations, or SBOMs, as well as SLSA)
CVE-2024-3094CRITICAL16 out 2025
Xz: malicious code in distributed source
70RISCO
abrir
GitHub PoC151
Exploit for CVE-2025-11001 or CVE-2025-11002
CVE-2025-11001HIGH15 out 2025
7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability
46RISCO
abrir
GitHub PoC
CVE-2024-53677 관련 컨설턴트용 툴 개발
CVE-2024-53677CRITICAL15 out 2025
Apache Struts: Mixing setters for uploaded files and normal fields can allow bypass file upload checks
70RISCO
abrir
GitHub PoC1
This repo shows an exploit to CVE-2021-24762. This is an Blind SQLi exploit that, on default config, greps the admin password.
CVE-2021-2476215 out 2025
Perfect Survey < 1.5.2 - Unauthenticated SQL Injection
60RISCO
abrir
anteriorpágina 170 / 511próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.