Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

80.324exploits catalogados
37.130CVEs com exploração pública
24.695testados em laboratório
24.476 exploits
Exploit-DB
XGI Windows VGA Display Manager 6.14.10.1090 - Arbitrary Write (PoC)
CVE-2015-5466doswindows01 set 2015
Silicon Integrated Systems XGI WindowsXP Display Manager (aka XGI VGA Driver Manager and VGA Display Manager) 6.14.10.10
23RISCO
abrir
Exploit-DBVexDay Proof
Bedita 3.5.1 - Cross-Site Scripting
CVE-2015-6809webappsphp01 set 2015
Multiple cross-site scripting (XSS) vulnerabilities in BEdita before 3.6.0 allow remote attackers to inject arbitrary we
23RISCO
abrir
Exploit-DB
SiS Windows VGA Display Manager 6.14.10.3930 - Write-What-Where (PoC)
CVE-2015-5465doswindows01 set 2015
Silicon Integrated Systems WindowsXP Display Manager (aka VGA Driver Manager and VGA Display Manager) 6.14.10.3930 allow
23RISCO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Entitlements - 'Rootpipe' Local Privilege Escalation (Metasploit)
CVE-2015-3673localosx31 ago 2015
Admin Framework in Apple OS X before 10.10.4 does not properly restrict the location of writeconfig clients, which allow
38RISCO
abrir
Exploit-DB
Ganglia Web Frontend < 3.5.1 - PHP Code Execution
CVE-2012-3448webappsphp31 ago 2015
Unspecified vulnerability in Ganglia Web before 3.5.1 allows remote attackers to execute arbitrary PHP code via unknown
23RISCO
abrir
Exploit-DBVexDay Proof
Boxoft WAV to MP3 Converter - 'convert' Local Buffer Overflow
CVE-2015-7243localwindows31 ago 2015
Buffer overflow in Boxoft WAV to MP3 Converter allows remote attackers to cause a denial of service (crash) and possibly
50RISCO
abrir
Exploit-DB
Cyberoam Firewall CR500iNG-XP 10.6.2 MR-1 - Blind SQL Injection
CVE-2015-6811webappshardware31 ago 2015
SQL injection vulnerability in the Sophos Cyberoam CR500iNG-XP firewall appliance with CyberoamOS 10.6.2 MR-1 and earlie
23RISCO
abrir
Exploit-DBVexDay Proof
PCMan FTP Server 2.0.7 - 'RENAME' Remote Buffer Overflow
CVE-2013-4730remotewindows29 ago 2015
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USE
50RISCO
abrir
Exploit-DB
Wolf CMS - Arbitrary File Upload / Execution
CVE-2015-6568webappsphp28 ago 2015
Wolf CMS before 0.8.3.1 allows unrestricted file rename and PHP Code Execution because admin/plugin/file_manager/browse/
28RISCO
abrir
Exploit-DB
Wolf CMS - Arbitrary File Upload / Execution
CVE-2015-6567webappsphp28 ago 2015
Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/
28RISCO
abrir
Exploit-DBVexDay Proof
Oracle GlassFish Server 4.1 - Directory Traversal
CVE-2017-1000028webappsmultiple27 ago 2015
Oracle, GlassFish Server Open Source Edition 4.1 is vulnerable to both authenticated and unauthenticated Directory Trave
60RISCO
abrir
Exploit-DB
Invision Power Board (IP.Board) 4.x - Persistent Cross-Site Scripting
CVE-2015-6810webappsphp27 ago 2015
Cross-site scripting (XSS) vulnerability in Invision Power Services IPS Community Suite (aka Invision Power Board, IPB,
23RISCO
abrir
Exploit-DBVexDay Proof
QEMU - Programmable Interrupt Timer Controller Heap Overflow
CVE-2015-3214dosmultiple27 ago 2015
The pit_ioport_read in i8254.c in the Linux kernel before 2.6.33 and QEMU before 2.3.1 does not distinguish between read
23RISCO
abrir
Exploit-DB
Linux Kernel < 3.5.0-23 (Ubuntu 12.04.2 x64) - 'SOCK_DIAG' SMEP Bypass Local Privilege Escalation
CVE-2013-1763locallinux_x86-6426 ago 2015
Array index error in the __sock_diag_rcv_msg function in net/core/sock_diag.c in the Linux kernel before 3.7.10 allows l
23RISCO
abrir
Exploit-DB
Magento eCommerce - Remote Code Execution
CVE-2015-1397webappsxml26 ago 2015
SQL injection vulnerability in the getCsvFile function in the Mage_Adminhtml_Block_Widget_Grid class in Magento Communit
35RISCO
abrir
Exploit-DBVexDay Proof
vBulletin 3.6.0 < 4.2.3 - 'ForumRunner' SQL Injection
CVE-2016-6195webappsphp25 ago 2015
SQL injection vulnerability in forumrunner/includes/moderation.php in vBulletin before 4.2.2 Patch Level 5 and 4.2.3 bef
50RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - OneTableDocumentStream Invalid Object
CVE-2015-0065doswindows25 ago 2015
Microsoft Word 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruptio
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - Malformed Document Stack Buffer Overflow
CVE-2015-0064doswindows25 ago 2015
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Automation Services in SharePoint Server 2010, Web Applica
28RISCO
abrir
Exploit-DB
Pligg CMS 2.0.2 - Cross-Site Request Forgery (Add Admin)
CVE-2015-6655webappsphp24 ago 2015
Cross-site request forgery (CSRF) vulnerability in Pligg CMS 2.0.2 allows remote attackers to hijack the authentication
23RISCO
abrir
Exploit-DBVexDay Proof
Mozilla Firefox - 'pdf.js' Privileged JavaScript Injection (Metasploit)
CVE-2015-0802remotemultiple24 ago 2015
Mozilla Firefox before 37.0 relies on docshell type information instead of page principal information for Window.webidl
50RISCO
abrir
Exploit-DBVexDay Proof
Mozilla Firefox - 'pdf.js' Privileged JavaScript Injection (Metasploit)
CVE-2015-0816remotemultiple24 ago 2015
Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 do not properly restrict resource
50RISCO
abrir
Exploit-DB
Netsweeper 4.0.8 - Authentication Bypass (via Disabling of IP Quarantine)
CVE-2014-9610webappsphp21 ago 2015
Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication an
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'ATMFD.dll' CFF table (ATMFD+0x3440b / ATMFD+0x3440e) Invalid Memory Access
CVE-2015-2460doswindows21 ago 2015
ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1,
35RISCO
abrir
Exploit-DB
Netsweeper 3.0.6 - Authentication Bypass
CVE-2014-9611webappsphp21 ago 2015
Netsweeper before 4.0.5 allows remote attackers to bypass authentication and create arbitrary accounts and policies via
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'ATMFD.DLL' CFF table (ATMFD+0x34072 / ATMFD+0x3407b) Invalid Memory Access
CVE-2015-2459doswindows21 ago 2015
ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1,
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'ATMFD.DLL' Out-of-Bounds Read Due to Malformed FDSelect Offset in the CFF Table
CVE-2015-2462doswindows21 ago 2015
ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1,
35RISCO
abrir
Exploit-DB
Netsweeper 4.0.4 - SQL Injection
CVE-2014-9612webappsphp21 ago 2015
SQL injection vulnerability in remotereporter/load_logfiles.php in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - 'OGL.dll' DpOutputSpanStretch::OutputSpan Out of Bounds Write (MS15-080)
CVE-2015-2431doswindows21 ago 2015
Microsoft Office 2007 SP3 and 2010 SP2, Live Meeting 2007 Console, Lync 2010, Lync 2010 Attendee, Lync 2013 SP1, and Lyn
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - 'mso.dll' Arbitrary Free (MS15-081)
CVE-2015-2468doswindows21 ago 2015
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office for Mac 2011, Office fo
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - 'wwlib.dll' Type Confusion (MS15-081)
CVE-2015-2469doswindows21 ago 2015
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, and Office for Mac 2011 allow remote attackers to execute arbit
28RISCO
abrir
anteriorpágina 186 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.