Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

76.107exploits catalogados
34.679CVEs com exploração pública
24.695testados em laboratório
24.443 exploits
Exploit-DBVexDay Proof
7-Technologies IGSS 9.00.00 b11063 - 'IGSSdataServer.exe' Remote Stack Overflow (Metasploit)
CVE-2011-1567remotewindows16 mai 2011
Multiple stack-based buffer overflows in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Grap
50RISCO
abrir
Exploit-DBVexDay Proof
Adobe Audition 3.0 build 7283 - Session File Handling Buffer Overflow (PoC)
CVE-2011-0614doswindows13 mai 2011
Buffer overflow in Adobe Audition 3.0.1 and earlier allows remote attackers to cause a denial of service (memory corrupt
28RISCO
abrir
Exploit-DBVexDay Proof
Apache 1.4/2.2.x - APR 'apr_fnmatch()' Denial of Service
CVE-2011-0419doslinux12 mai 2011
Stack consumption vulnerability in the fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) libr
35RISCO
abrir
Exploit-DBVexDay Proof
Oracle GlassFish Server - Administration Console Authentication Bypass
CVE-2011-1511webappswindows12 mai 2011
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Sun Products Suite 2.1.1 and 3.0.1 allows r
28RISCO
abrir
Exploit-DBVexDay Proof
Apache Struts 2.0.0 < 2.2.1.1 - XWork 's:submit' HTML Tag Cross-Site Scripting
CVE-2011-1772remotemultiple10 mai 2011
Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x before 2.2.3, and OpenSymphony XWork i
35RISCO
abrir
Exploit-DBVexDay Proof
ICONICS WebHMI - ActiveX Buffer Overflow (Metasploit)
CVE-2011-2089remotewindows10 mai 2011
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0
50RISCO
abrir
Exploit-DBVexDay Proof
ICONICS WebHMI - ActiveX Stack Overflow
CVE-2011-2089remotewindows03 mai 2011
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0
50RISCO
abrir
Exploit-DBVexDay Proof
Perl 5.10 - Multiple Null Pointer Dereference Denial of Service Vulnerabilities
CVE-2011-0761dosmultiple03 mai 2011
Perl 5.10.x allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application cr
23RISCO
abrir
Exploit-DBVexDay Proof
OProfile 0.9.6 - 'opcontrol' Utility 'set_event()' Local Privilege Escalation
CVE-2011-1760locallinux29 abr 2011
utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to conduct eval injection attacks and gain privile
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Excel - Axis Properties Record Parsing Buffer Overflow (PoC) (MS11-02)
CVE-2011-0978doswindows29 abr 2011
Stack-based buffer overflow in Microsoft Excel 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 for Mac; Excel Viewer SP2;
35RISCO
abrir
Exploit-DBVexDay Proof
Libmodplug 0.8.8.2 - '.abc' Stack Buffer Overflow (PoC)
CVE-2011-1761doslinux28 abr 2011
Multiple stack-based buffer overflows in the (1) abc_new_macro and (2) abc_new_umacro functions in src/load_abc.cpp in l
28RISCO
abrir
Exploit-DBVexDay Proof
EMC HomeBase Server - Directory Traversal Remote Code Execution (Metasploit)
CVE-2010-0620remotewindows27 abr 2011
Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 al
28RISCO
abrir
Exploit-DBVexDay Proof
Cisco Unified Communications Manager 8.5 - 'xmldirectorylist.jsp' Multiple SQL Injections
CVE-2011-1609webappsjsp27 abr 2011
SQL injection vulnerability in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x before 6.1(5)su
28RISCO
abrir
Exploit-DBVexDay Proof
eZip Wizard 3.0 - Local Stack Buffer Overflow (Metasploit)
CVE-2009-1028localwindows25 abr 2011
Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .z
50RISCO
abrir
Exploit-DB
PHP 'phar' Extension 1.1.1 - Heap Overflow
CVE-2012-2386dosmultiple22 abr 2011
Integer overflow in the phar_parse_tarfile function in tar.c in the phar extension in PHP before 5.3.14 and 5.4.x before
35RISCO
abrir
Exploit-DB
SocialCMS 1.0.2 - Multiple Cross-Site Request Forgery Vulnerabilities
CVE-2012-1416webappsphp20 abr 2011
Multiple cross-site request forgery (CSRF) vulnerabilities in SocialCMS 1.0.2 allow remote attackers to hijack the authe
23RISCO
abrir
Exploit-DBVexDay Proof
Wireshark 1.4.4 - 'packet-dect.c' Remote Stack Buffer Overflow (Metasploit) (2)
CVE-2011-1591remotewindows19 abr 2011
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allow
50RISCO
abrir
Exploit-DBVexDay Proof
Oracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC - '/jde/E1Menu_OCL.mafService?e1.namespace' Cross-Site Scripting
CVE-2011-0836remotemultiple19 abr 2011
Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools 8.9 GA through 8.98.4.1 and OneWorld Tools through 24
23RISCO
abrir
Exploit-DBVexDay Proof
Oracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC - '/jde/MafletClose.mafService?RENDER_MAFLET' Cross-Site Scripting
CVE-2011-0836remotemultiple19 abr 2011
Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools 8.9 GA through 8.98.4.1 and OneWorld Tools through 24
23RISCO
abrir
Exploit-DBVexDay Proof
Oracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC - '/jde/E1Menu.maf?jdeowpBackButtonProtect' Cross-Site Scripting
CVE-2011-0836remotemultiple19 abr 2011
Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools 8.9 GA through 8.98.4.1 and OneWorld Tools through 24
23RISCO
abrir
Exploit-DBVexDay Proof
IBM Tivoli Directory Server SASL - Bind Request Remote Code Execution
CVE-2011-1206doswindows19 abr 2011
Stack-based buffer overflow in the server process in ibmslapd.exe in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.
28RISCO
abrir
Exploit-DBVexDay Proof
Oracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC - '/jde/JASMafletMafBrowserClose.mafService?jdemafjasLinkTarget' Cross-Site Scripting
CVE-2011-0836remotemultiple19 abr 2011
Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools 8.9 GA through 8.98.4.1 and OneWorld Tools through 24
23RISCO
abrir
Exploit-DBVexDay Proof
Oracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC - '/jde/E1Menu_Menu.mafService?e1.namespace' Cross-Site Scripting
CVE-2011-0836remotemultiple19 abr 2011
Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools 8.9 GA through 8.98.4.1 and OneWorld Tools through 24
23RISCO
abrir
Exploit-DBVexDay Proof
Wireshark 1.4.4 - 'packet-dect.c' Local Stack Buffer Overflow (Metasploit) (1)
CVE-2011-1591localwindows19 abr 2011
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allow
50RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash Player < 10.1.53.64 - Action Script Type Confusion (ASLR + DEP Bypass)
CVE-2010-3654remotewindows19 abr 2011
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 o
50RISCO
abrir
Exploit-DBVexDay Proof
Wireshark 1.4.1 < 1.4.4 - Local Overflow (SEH)
CVE-2011-1591localwindows18 abr 2011
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allow
50RISCO
abrir
Exploit-DB
FiSH-irssi 0.99 - Evil ircd Buffer Overflow
CVE-2007-1397remotelinux17 abr 2011
Multiple stack-based buffer overflows in the (1) ExtractRnick and (2) decrypt_topic_332 functions in FiSH allow remote a
23RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash Player 10.2.153.1 - SWF Memory Corruption (Metasploit)
CVE-2011-0611HIGHsob ataqueremotewindows16 abr 2011
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; A
100RISCO
abrir
Exploit-DB
Microsoft Word 2003 - Record Parsing Buffer Overflow (MS09-027) (Metasploit)
CVE-2009-0565localwindows16 abr 2011
Buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 200
35RISCO
abrir
Exploit-DBVexDay Proof
EC Software Help & Manual 5.5.1 Build 1296 - 'ijl15.dll' DLL Loading Arbitrary Code Execution
CVE-2011-5155remotewindows14 abr 2011
Untrusted search path vulnerability in Help & Manual 5.5.1 Build 1296 allows local users to gain privileges via a Trojan
23RISCO
abrir
anteriorpágina 323 / 815próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.