Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

76.313exploits catalogados
34.834CVEs com exploração pública
24.695testados em laboratório
24.443 exploits
Exploit-DBVexDay Proof
Microsoft Word - '.RTF' pFragments Stack Buffer Overflow (File Format) (MS10-087) (Metasploit)
CVE-2010-3333HIGHsob ataquelocalwindows04 mar 2011
Stack-based buffer overflow in Microsoft Office XP SP3, Office 2003 SP3, Office 2007 SP2, Office 2010, Office 2004 and 2
100RISCO
abrir
Exploit-DBVexDay Proof
JBoss Application Server 4.2 < 4.2.0.CP09 / 4.3 < 4.3.0.CP08 - Remote Command Execution
CVE-2010-0738MEDIUMsob ataqueransomwarewebappsjsp04 mar 2011
The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2
100RISCO
abrir
Exploit-DBVexDay Proof
Citrix Access Gateway - Command Execution (Metasploit)
CVE-2010-4566remotelinux03 mar 2011
The web authentication form in the NT4 authentication component in Citrix Access Gateway Enterprise Edition 9.2-49.8 and
43RISCO
abrir
Exploit-DBVexDay Proof
NetSupport Manager Agent - Remote Buffer Overflow (Metasploit) (2)
CVE-2011-0404remotelinux03 mar 2011
Stack-based buffer overflow in NetSupport Manager Agent for Linux 11.00, for Solaris 9.50, and for Mac OS X 11.00 allows
50RISCO
abrir
Exploit-DBVexDay Proof
vsftpd 2.3.2 - Denial of Service
CVE-2011-0762doslinux02 mar 2011
The vsf_filename_passes_filter function in ls.c in vsftpd before 2.3.3 allows remote authenticated users to cause a deni
60RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.6.x - fs/eventpoll.c epoll Data Structure File Descriptor Local Denial of Service
CVE-2011-1082doslinux02 mar 2011
fs/eventpoll.c in the Linux kernel before 2.6.38 places epoll file descriptors within other epoll data structures withou
23RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.6.x - epoll Nested Structures Local Denial of Service
CVE-2011-1083doslinux02 mar 2011
The epoll implementation in the Linux kernel 2.6.37.2 and earlier does not properly traverse a tree of epoll file descri
23RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.6.37 - Local Kernel Denial of Service (1)
CVE-2010-4165doslinux02 mar 2011
The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MA
23RISCO
abrir
Exploit-DBVexDay Proof
Wireshark 1.4.3 - NTLMSSP Null Pointer Dereference Denial of Service
CVE-2011-1143doslinux01 mar 2011
epan/dissectors/packet-ntlmssp.c in the NTLMSSP dissector in Wireshark before 1.4.4 allows remote attackers to cause a d
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP - WmiTraceMessageVa Integer Truncation (PoC) (MS11-011)
CVE-2011-0045doswindows01 mar 2011
The Trace Events functionality in the kernel in Microsoft Windows XP SP3 does not properly perform type conversion, whic
23RISCO
abrir
Exploit-DBVexDay Proof
PHP 'Exif' Extension - 'exif_read_data()' Remote Denial of Service
CVE-2011-0708dosmultiple28 fev 2011
exif.c in the Exif extension in PHP before 5.3.6 on 64-bit platforms performs an incorrect cast, which allows remote att
23RISCO
abrir
Exploit-DBVexDay Proof
EMC Replication Manager < 5.3 - Command Execution (Metasploit)
CVE-2011-0647localwindows27 fev 2011
The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x
50RISCO
abrir
Exploit-DB
GNU glibc < 2.12.2 - 'fnmatch()' Stack Corruption
CVE-2011-1071dosmultiple25 fev 2011
The GNU C Library (aka glibc or libc6) before 2.12.2 and Embedded GLIBC (EGLIBC) allow context-dependent attackers to ex
28RISCO
abrir
Exploit-DB
WordPress Plugin Forum Server 1.6.5 - SQL Injection
CVE-2011-1047webappsphp24 fev 2011
Multiple SQL injection vulnerabilities in VastHTML Forum Server (aka ForumPress) plugin 1.6.1 and 1.6.5 for WordPress al
23RISCO
abrir
Exploit-DBVexDay Proof
Logwatch Log File - Special Characters Privilege Escalation
CVE-2011-1018remotelinux24 fev 2011
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log fi
28RISCO
abrir
Exploit-DBVexDay Proof
Novell Netware - RPC XNFS xdrDecodeString
CVE-2010-4227dosnetware24 fev 2011
The xdrDecodeString function in XNFS.NLM in Novell Netware 6.5 before SP8 allows remote attackers to cause a denial of s
28RISCO
abrir
Exploit-DBVexDay Proof
CesarFTP 0.99g - 'MKD' Remote Buffer Overflow (Metasploit) (2)
CVE-2006-2961remotewindows23 fev 2011
Stack-based buffer overflow in CesarFTP 0.99g and earlier allows remote attackers to cause a denial of service (applicat
50RISCO
abrir
Exploit-DBVexDay Proof
IBM Lotus Sametime Server 8.0 - 'stcenter.nsf' Cross-Site Scripting
CVE-2011-1106webappsphp22 fev 2011
Cross-site scripting (XSS) vulnerability in stcenter.nsf in the server in IBM Lotus Sametime allows remote attackers to
23RISCO
abrir
Exploit-DBVexDay Proof
Mozilla Firefox - Interleaving 'document.write' / 'appendChild' (Metasploit)
CVE-2010-3765CRITICALsob ataqueremotewindows22 fev 2011
Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, a
100RISCO
abrir
Exploit-DBVexDay Proof
IBM Lotus Sametime - '/stconf.nsf/WebMessage?messageString' Cross-Site Scripting
CVE-2011-1038remotemultiple21 fev 2011
Multiple cross-site scripting (XSS) vulnerabilities in stconf.nsf in the server in IBM Lotus Sametime 8.0.1 allow remote
23RISCO
abrir
Exploit-DBVexDay Proof
IBM Lotus Domino LDAP - Bind Request Remote Code Execution
CVE-2011-0917doswindows18 fev 2011
Buffer overflow in nLDAP.exe in IBM Lotus Domino allows remote attackers to execute arbitrary code via a long string in
28RISCO
abrir
Exploit-DBVexDay Proof
Novell ZENworks 10/11 - TFTPD Remote Code Execution
CVE-2010-4323doswindows18 fev 2011
Heap-based buffer overflow in novell-tftp.exe in Novell ZENworks Configuration Manager (ZCM) 10.3.1, 10.3.2, and 11.0, a
23RISCO
abrir
Exploit-DBVexDay Proof
WSN Guest 1.24 - 'wsnuser' Cookie SQL Injection
CVE-2011-1060webappsphp18 fev 2011
SQL injection vulnerability in the member function in classes/member.php in WSN Guest 1.24 allows remote attackers to ex
23RISCO
abrir
Exploit-DBVexDay Proof
Novell Iprint - LPD Remote Code Execution
CVE-2010-4328doslinux18 fev 2011
Multiple stack-based buffer overflows in opt/novell/iprint/bin/ipsmd in Novell iPrint for Linux Open Enterprise Server 2
28RISCO
abrir
Exploit-DBVexDay Proof
PHP 5.3.5 - 'grapheme_extract()' Null Pointer Dereference Denial of Service
CVE-2011-0420dosphp17 fev 2011
The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependen
28RISCO
abrir
Exploit-DBVexDay Proof
PHP 5.3.5 - 'grapheme_extract()' Null Pointer Dereference
CVE-2011-0420doslinux17 fev 2011
The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependen
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Server Service - NetpwPathCanonicalize Overflow (MS06-040) (Metasploit)
CVE-2006-3439remotewindows17 fev 2011
Buffer overflow in the Server Service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote a
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - Print Spooler Service Impersonation (MS10-061) (Metasploit)
CVE-2010-2729remotewindows17 fev 2011
The Print Spooler service in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windo
60RISCO
abrir
Exploit-DBVexDay Proof
Rae Media Real Estate Single Agent - SQL Injection
CVE-2010-4738webappsasp16 fev 2011
Multiple SQL injection vulnerabilities in Rae Media INC Real Estate Single and Multi Agent System 3.0 allow remote attac
23RISCO
abrir
Exploit-DBVexDay Proof
Ruby on Rails 3.0.5 - 'WEBrick::HTTPRequest' Module HTTP Header Injection
CVE-2011-3187remotemultiple16 fev 2011
The to_s method in actionpack/lib/action_dispatch/middleware/remote_ip.rb in Ruby on Rails 3.0.5 does not validate the X
23RISCO
abrir
anteriorpágina 327 / 815próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.