Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

76.313exploits catalogados
34.834CVEs com exploração pública
24.695testados em laboratório
13.812 exploits
GitHub PoC1
CVE-2020-2551 Exploiter
CVE-2020-2551CRITICALsob ataque02 jun 2022
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). Suppor
100RISCO
abrir
GitHub PoC20
CVE-2022-30190 | MS-MSDT Follina One Click
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC2
swaiist/CVE-2022-30190-Fix
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC2
The CVE-2022-30190-follina Workarounds Patch
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC3
Python script to exploit CVE-2021-35064 and CVE-2021-36356
CVE-2021-3506402 jun 2022
KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo. Sudoers permits runn
60RISCO
abrir
GitHub PoC2
A very simple MSDT "Follina" exploit **patched**
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC2
MSDT protocol disabler (CVE-2022-30190 patch tool)
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC23
A tool written in Go that scans files & directories for the Follina exploit (CVE-2022-30190)
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC1
ITMarcin2211/CVE-2022-30190
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC1
Mitigates the "Folina"-ZeroDay (CVE-2022-30190)
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC390
CVE-2022-30190-follina.py-修改版,可以自定义word模板,方便实战中钓鱼使用。
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC2
gyaansastra/CVE-2022-30190
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
Simple Follina poc exploit
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
PDQ Package I created for CVE-2022-30190
CVE-2022-30190HIGHsob ataqueransomware02 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
hscorpion/CVE-2022-30190
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC17
Follina MS-MSDT 0-day MS Office RCE (CVE-2022-30190) PoC in Go
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
Python script to exploit CVE-2022-29303
CVE-2022-29303CRITICALsob ataque01 jun 2022
SolarView Compact ver.6.00 was discovered to contain a command injection vulnerability via conf_mail.php.
100RISCO
abrir
GitHub PoC3
An NSIS script that helps deploy and roll back the mitigation registry patch for CVE-2022-30190 as recommended by Microsoft
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC4
Removes the ability for MSDT to run, in response to CVE-2022-30190 (Follina)
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
CVE-2022-30190 or "Follina" 0day proof of concept
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
Vaisakhkm2625/MSDT-0-Day-CVE-2022-30190-Poc
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
mitespsoc/CVE-2022-30190-POC
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC1
A proof of concept of an SEH overflow with arbitrary dll injection
CVE-2010-530101 jun 2022
Stack-based buffer overflow in Kolibri 2.0 allows remote attackers to execute arbitrary code via a long URI in a HEAD re
28RISCO
abrir
GitHub PoC
Proof of Concept zu MSDT-Follina - CVE-2022-30190. ÜBERPRÜFUNG DER WIRKSAMKEIT VON MICROSOFT DEFNEDER IN DER JEWEILS AKTUELLSTEN WINDOWS 10 VERSION.
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC8
Just another PoC for the new MSDT-Exploit
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC7
MS-MSDT Follina CVE-2022-30190 PoC document generator
CVE-2022-30190HIGHsob ataqueransomware01 jun 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
Python script to exploit CVE-2022-22954 and then exploit CVE-2022-22960
CVE-2022-22954CRITICALsob ataqueransomware01 jun 2022
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side templa
100RISCO
abrir
GitHub PoC4
Python script to exploit CVE-2022-22954 and then exploit CVE-2022-22960
CVE-2022-22954CRITICALsob ataqueransomware01 jun 2022
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side templa
100RISCO
abrir
GitHub PoC1.250
【懒人神器】一款图形化、批量采集url、批量对采集的url进行各种nday检测的工具。可用于src挖掘、cnvd挖掘、0day利用、打造自己的武器库等场景。可以批量利用Actively Exploited Atlassian Confluence 0Day CVE-2022-26134和DedeCMS v5.7.87 SQL注入 CVE-2022-23337。
CVE-2022-26134CRITICALsob ataqueransomware31 mai 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISCO
abrir
GitHub PoC1
tuannq2299/CVE-2019-8942
CVE-2019-894231 mai 2022
WordPress before 4.9.9 and 5.x before 5.0.1 allows remote code execution because an _wp_attached_file Post Meta entry ca
60RISCO
abrir
anteriorpágina 311 / 461próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.