Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

76.008exploits catalogados
34.638CVEs com exploração pública
24.695testados em laboratório
13.743 exploits
GitHub PoC4
Joomla Unauthorized Access Vulnerability (CVE-2023-23752) Dockerized
CVE-2023-23752MEDIUMsob ataque25 mar 2023
[20230201] - Core - Improper access check in webservice endpoints
100RISCO
abrir
GitHub PoC
Authenticated Remote Code Execution in Icinga Web 2 <2.8.6, <2.9.6, <2.10
CVE-2022-24715HIGH25 mar 2023
Arbitrary code execution for authenticated users in Icinga Web 2
46RISCO
abrir
GitHub PoC
Brandaoo/CVE-2014-6271
CVE-2014-6271CRITICALsob ataque25 mar 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISCO
abrir
GitHub PoC1
a simple tool to detect the exploitation of BlueKeep vulnerability (CVE-2019-0708)
CVE-2019-0708CRITICALsob ataqueransomware25 mar 2023
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unau
100RISCO
abrir
GitHub PoC
CVE-2023-23397 powershell patch script for Windows 10 and 11
CVE-2023-23397CRITICALsob ataque24 mar 2023
Microsoft Outlook Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC37
MinIO敏感信息泄露漏洞批量扫描poc&exp
CVE-2023-28432HIGHsob ataque24 mar 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir
GitHub PoC7
CVE-2023-28432,minio未授权访问检测工具
CVE-2023-28432HIGHsob ataque24 mar 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir
GitHub PoC94
Joomla! < 4.2.8 - Unauthenticated information disclosure
CVE-2023-23752MEDIUMsob ataque24 mar 2023
[20230201] - Core - Improper access check in webservice endpoints
100RISCO
abrir
GitHub PoC6
test of exploit for CVE-2023-21716
CVE-2023-21716CRITICAL24 mar 2023
Microsoft Word Remote Code Execution Vulnerability
70RISCO
abrir
GitHub PoC15
CVE-2023-28432 POC
CVE-2023-28432HIGHsob ataque24 mar 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir
GitHub PoC1
An exploitation demo of Outlook Elevation of Privilege Vulnerability
CVE-2023-23397CRITICALsob ataque24 mar 2023
Microsoft Outlook Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC1
RSA NetWitness Platform EDR Agent / Incorrect Access Control - Code Execution
CVE-2022-4752924 mar 2023
Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Wi
23RISCO
abrir
GitHub PoC8
CVE-2023-28343 POC exploit
CVE-2023-2834323 mar 2023
OS command injection affects Altenergy Power Control Software C1.2.5 via shell metacharacters in the index.php/managemen
60RISCO
abrir
GitHub PoC8
CVE-2022-42475 飞塔RCE漏洞 POC
CVE-2022-42475CRITICALsob ataqueransomware23 mar 2023
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 through 7.2.2, 7.0.0 through 7.0.8, 6.4.0
100RISCO
abrir
GitHub PoC114
Exploit for CVE-2023-27532 against Veeam Backup & Replication
CVE-2023-27532HIGHsob ataqueransomware23 mar 2023
Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database
93RISCO
abrir
GitHub PoC34
CVE-2023-28434 nuclei templates
CVE-2023-28432HIGHsob ataque23 mar 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir
GitHub PoC10
MiniO verify interface sensitive information disclosure vulnerability (CVE-2023-28432)
CVE-2023-28432HIGHsob ataque23 mar 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir
GitHub PoC
https & http
CVE-2022-41082HIGHsob ataqueransomware22 mar 2023
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC14
Python script for sending e-mails with CVE-2023-23397 payload using SMTP
CVE-2023-23397CRITICALsob ataque22 mar 2023
Microsoft Outlook Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC1
Mustafa1986/cve-2022-42475-Fortinet
CVE-2022-42475CRITICALsob ataqueransomware22 mar 2023
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 through 7.2.2, 7.0.0 through 7.0.8, 6.4.0
100RISCO
abrir
GitHub PoC1
betillogalvanfbc/POC-CVE-2022-44268
CVE-2022-44268MEDIUM22 mar 2023
ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti
55RISCO
abrir
GitHub PoC6
Altenergy Power System Control Software set_timezone RCE Vulnerability (CVE-2023-28343)
CVE-2023-2834321 mar 2023
OS command injection affects Altenergy Power Control Software C1.2.5 via shell metacharacters in the index.php/managemen
60RISCO
abrir
GitHub PoC
maldev866/ChExp_CVE-2021-30632
CVE-2021-30632HIGHsob ataque21 mar 2023
Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap c
83RISCO
abrir
GitHub PoC25
Proof of Concept for CVE-2023-23397 in Python
CVE-2023-23397CRITICALsob ataque21 mar 2023
Microsoft Outlook Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC
Mustafa1986/CVE-2022-22963
CVE-2022-22963CRITICALsob ataque21 mar 2023
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is po
100RISCO
abrir
GitHub PoC
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
CVE-2022-36193CRITICAL21 mar 2023
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent chang
48RISCO
abrir
GitHub PoC130
Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.
CVE-2023-23397CRITICALsob ataque20 mar 2023
Microsoft Outlook Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC1
Patch for MS Outlook Critical Vulnerability - CVSS 9.8
CVE-2023-23397CRITICALsob ataque20 mar 2023
Microsoft Outlook Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC
Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10
CVE-2022-24716HIGH20 mar 2023
Path traversal in Icinga Web 2
78RISCO
abrir
GitHub PoC
this web is vulnerable against CVE-2021-44228
CVE-2021-44228CRITICALsob ataqueransomware20 mar 2023
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISCO
abrir
anteriorpágina 278 / 459próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.