Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
81.003exploits catalogados
37.620CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.482Referência 24.011GitHub PoC 15.501VulnCheck XDB 9.077Nuclei 4.427Metasploit 3.505✓ só verificadosrecentespopularesrisco
24.482 exploits
Exploit-DB✓ VexDay Proof
McAfee ePolicy Orchestrator / ProtectionPilot - Remote Overflow (Metasploit)
Buffer overflow in McAfee ePolicy Orchestrator before 3.5.0.720 and ProtectionPilot before 1.1.1.126 allows remote attac
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Mozilla Suite/Firefox - InstallVersion->compareTo() Code Execution (Metasploit)
Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of serv
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Mozilla Suite/Firefox - Navigator Object Code Execution (Metasploit)
Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code by chang
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft WINS - Service Memory Overwrite (MS04-045) (Metasploit)
The WINS service (wins.exe) on Microsoft Windows NT Server 4.0, Windows 2000 Server, and Windows Server 2003 allows remo
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
iPhone MobileMail - LibTIFF Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Apple iPhone MobileSafari LibTIFF - 'email' Remote Buffer Overflow (Metasploit) (2)
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHP 4 - Unserialize() ZVAL Reference Counter Overflow (Cookie) (Metasploit)
Integer overflow in PHP 4.4.4 and earlier allows remote context-dependent attackers to execute arbitrary code via a long
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PeaZIP 2.6.1 - Zip Processing Command Injection (Metasploit)
PeaZIP 2.6.1, 2.5.1, and earlier on Windows allows user-assisted remote attackers to execute arbitrary commands via a .z
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Java 6.19 CMM readMabCurveData - Remote Stack Overflow
Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0, Update, and
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Apple iPhone MobileSafari LibTIFF - 'browser' Remote Buffer Overflow (Metasploit) (1)
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer - COM CreateObject Code Execution (MS06-014/MS06-073) (Metasploit)
Unspecified vulnerability in the RDS.Dataspace ActiveX control, which is contained in ActiveX Data Objects (ADO) and dis
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Macrovision Installshield Update Service - ActiveX Unsafe Method (Metasploit)
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXn
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
WebSTAR FTP Server - USER Overflow (Metasploit)
Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbit
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Arugizer Trojan Horse (Energizer DUO) - Code Execution (Metasploit)
UsbCharger.dll in the Energizer DUO USB battery charger software contains a backdoor that is implemented through the Aru
43RISCO
abrir ↗Exploit-DB✓ VexDay Proof
LightNEasy CMS 3.2.1 - Blind SQL Injection
SQL injection vulnerability in LightNEasy.php in LightNEasy 3.2.1, when magic_quotes_gpc is disabled, allows remote atta
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
BakBone NetVault - Remote Heap Overflow (Metasploit)
Multiple buffer overflows in BakBone NetVault 6.x and 7.x allow (1) remote attackers to execute arbitrary code via a mod
50RISCO
abrir ↗Exploit-DB
primitive CMS 1.0.9 - Multiple Vulnerabilities
cms_write.php in Primitive CMS 1.0.9 does not properly restrict access, which allows remote attackers to gain administra
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - ANI LoadAniIcon() Chunk Size Stack Buffer Overflow (SMTP) (MS07-017) (Metasploit)
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Unreal Tournament 2004 (Linux) - 'secure' Remote Overflow (Metasploit)
The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier,
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
McAfee Visual Trace - ActiveX Control Buffer Overflow (Metasploit)
Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Ex
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris LPD - Command Execution (Metasploit)
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request wit
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IBM TPM for OS Deployment 5.1.0.x - 'rembo.exe' Remote Buffer Overflow (Metasploit)
The management service in IBM Tivoli Provisioning Manager for OS Deployment before 5.1 Fix Pack 2 does not properly hand
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Private Communications Transport - Remote Overflow (MS04-011) (Metasploit)
Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library, as u
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SmarterMail 7.1.3876 - Directory Traversal
Directory traversal vulnerability in FileStorageUpload.ashx in SmarterMail 7.1.3876 allows remote attackers to read arbi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
BoutikOne 1.0 - SQL Injection
SQL injection vulnerability in list.php in BoutikOne 1.0 allows remote attackers to execute arbitrary SQL commands via t
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client Browser Plugin - 'call-back-url' Remote Stack Overflow
Stack-based buffer overflow in Novell iPrint Client before 5.44 allows remote attackers to execute arbitrary code via a
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Apple QuickTime FLI LinePacket - Remote Code Execution
Heap-based buffer overflow in QuickTimeAuthoring.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attacker
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
xt:Commerce Gambio 2008 < 2010 - 'reviews.php' Error-Based SQL Injection
SQL injection vulnerability in product_reviews_info.php in xt:Commerce Gambio 2008 allows remote attackers to execute ar
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Restaurant Guide 1.0.0 - Multiple Vulnerabilities
SQL injection vulnerability in the Restaurant Guide (com_restaurantguide) component 1.0.0 for Joomla! allows remote atta
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component Restaurant Guide 1.0.0 - Multiple Vulnerabilities
Cross-site scripting (XSS) vulnerability in the Restaurant Guide (com_restaurantguide) component 1.0.0 for Joomla! allow
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.