Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

75.589exploits catalogados
34.508CVEs com exploração pública
24.695testados em laboratório
8.216 exploits
VulnCheck XDB
local
CVE-2020-1054HIGHsob ataque09 ago 2020
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o
98RISCO
abrir
VulnCheck XDB
local
CVE-2020-106609 ago 2020
An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privileg
23RISCO
abrir
VulnCheck XDB
local
CVE-2018-8120HIGHsob ataqueransomware09 ago 2020
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2017-0143HIGHsob ataqueransomware09 ago 2020
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows
100RISCO
abrir
VulnCheck XDB
local
CVE-2020-0787HIGHsob ataqueransomware09 ago 2020
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperl
98RISCO
abrir
VulnCheck XDB
local
CVE-2016-322509 ago 2020
The SMB server component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
50RISCO
abrir
VulnCheck XDB
local
CVE-2019-1458HIGHsob ataqueransomware09 ago 2020
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
100RISCO
abrir
VulnCheck XDB
local
CVE-2019-062309 ago 2020
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
23RISCO
abrir
VulnCheck XDB
local
CVE-2020-0683HIGHsob ataque09 ago 2020
An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'W
71RISCO
abrir
VulnCheck XDB
local
CVE-2020-0796CRITICALsob ataqueransomware09 ago 2020
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISCO
abrir
VulnCheck XDB
local
CVE-2015-2546HIGHsob ataqueransomware09 ago 2020
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
76RISCO
abrir
VulnCheck XDB
local
CVE-2019-0803HIGHsob ataque09 ago 2020
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
83RISCO
abrir
VulnCheck XDB
local
CVE-2016-0099HIGHsob ataqueransomware09 ago 2020
The Secondary Logon Service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
98RISCO
abrir
VulnCheck XDB
local
CVE-2016-005109 ago 2020
The WebDAV client in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Window
43RISCO
abrir
VulnCheck XDB
local
CVE-2021-33739HIGHsob ataque09 ago 2020
Microsoft DWM Core Library Elevation of Privilege Vulnerability
71RISCO
abrir
VulnCheck XDB
local
CVE-2011-124909 ago 2020
The Ancillary Function Driver (AFD) in afd.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vis
23RISCO
abrir
VulnCheck XDB
local
CVE-2016-009509 ago 2020
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, W
23RISCO
abrir
VulnCheck XDB
local
CVE-2015-000309 ago 2020
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 a
23RISCO
abrir
VulnCheck XDB
local
CVE-2011-2005HIGHsob ataque09 ago 2020
afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly valid
98RISCO
abrir
VulnCheck XDB
local
CVE-2014-4113HIGHsob ataque09 ago 2020
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 a
100RISCO
abrir
VulnCheck XDB
local
CVE-2019-0808HIGHsob ataque09 ago 2020
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
98RISCO
abrir
VulnCheck XDB
local
CVE-2017-0213HIGHsob ataqueransomware09 ago 2020
Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Ser
93RISCO
abrir
VulnCheck XDB
local
CVE-2015-237009 ago 2020
The authentication implementation in the RPC subsystem in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP
23RISCO
abrir
VulnCheck XDB
initial-access
CVE-2019-15107CRITICALsob ataqueransomware08 ago 2020
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2017-11882HIGHsob ataqueransomware08 ago 2020
Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Mi
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2020-1938CRITICALsob ataque07 ago 2020
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISCO
abrir
VulnCheck XDB
client-side
CVE-2016-9079HIGHsob ataque06 ago 2020
A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been dis
100RISCO
abrir
VulnCheck XDB
client-side
CVE-2017-8570HIGHsob ataque06 ago 2020
Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Mic
93RISCO
abrir
VulnCheck XDB
remote-with-credentials
CVE-2020-8816CRITICALsob ataque06 ago 2020
Pi-hole Web v4.3.2 (aka AdminLTE) allows Remote Code Execution by privileged dashboard users via a crafted DHCP static l
100RISCO
abrir
VulnCheck XDB
client-side
CVE-2018-20250HIGHsob ataqueransomware06 ago 2020
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISCO
abrir
anteriorpágina 238 / 274próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.