Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

76.500exploits catalogados
34.965CVEs com exploração pública
24.695testados em laboratório
24.443 exploits
Exploit-DBVexDay Proof
Banner Management Script - SQL Injection
CVE-2010-4981webappsphp18 jun 2010
SQL injection vulnerability in trackads.php in YourFreeWorld Banner Management allows remote attackers to execute arbitr
23RISCO
abrir
Exploit-DBVexDay Proof
Spring Framework - Arbitrary code Execution
CVE-2010-1622webappsmultiple18 jun 2010
SpringSource Spring Framework 2.5.x before 2.5.6.SEC02, 2.5.7 before 2.5.7.SR01, and 3.0.x before 3.0.3 allows remote at
35RISCO
abrir
Exploit-DBVexDay Proof
PowerZip 7.21 (Build 4010) - Stack Buffer Overflow
CVE-2010-3885doswindows18 jun 2010
20RISCO
abrir
Exploit-DBVexDay Proof
H264WebCam - Boundary Condition Error
CVE-2010-2349doswindows18 jun 2010
H264WebCam 3.7 allows remote attackers to cause a denial of service (crash) via a long URI in a GET request, which trigg
23RISCO
abrir
Exploit-DBVexDay Proof
(Gabriel's FTP Server) Open & Compact FTP Server 1.2 - Full System Access
CVE-2010-2620remotewindows18 jun 2010
Open&Compact FTP Server (Open-FTPD) 1.2 and earlier allows remote attackers to bypass authentication by sending (1) LIST
43RISCO
abrir
Exploit-DBVexDay Proof
Netware - SMB Remote Stack Overflow (PoC)
CVE-2010-2351dosnovell17 jun 2010
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remo
28RISCO
abrir
Exploit-DBVexDay Proof
Batch Audio Converter Lite Edition 1.0.0.0 - Local Stack Buffer Overflow (SEH)
CVE-2010-2348localwindows17 jun 2010
Stack-based buffer overflow in Batch Audio Converter Lite Edition 1.0.0.0 and earlier allows remote attackers to execute
23RISCO
abrir
Exploit-DBVexDay Proof
File Sharing Wizard 1.5.0 - Remote Overflow (SEH)
CVE-2010-2331remotewindows17 jun 2010
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to execute arbitrary code via a
23RISCO
abrir
Exploit-DBVexDay Proof
BlazeDVD 5.1 (Windows 7) - '.plf' File Stack Buffer Overflow (ASLR + DEP Bypass)
CVE-2006-6199localwindows17 jun 2010
Stack-based buffer overflow in BlazeVideo BlazeDVD Standard and Professional 5.0, and possibly earlier, allows remote at
50RISCO
abrir
Exploit-DBVexDay Proof
Samba 2.2.8 (BSD x86) - 'trans2open' Remote Overflow (Metasploit)
CVE-2003-0201remotebsd_x8617 jun 2010
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir
Exploit-DBVexDay Proof
Rosoft Audio Converter 4.4.4 - Local Buffer Overflow
CVE-2010-2329localwindows16 jun 2010
Buffer overflow in Rosoft Audio Converter 4.4.4 allows remote attackers to execute arbitrary code via a long playlist en
23RISCO
abrir
Exploit-DB
EZPX Photoblog 1.2 Beta - Remote File Inclusion
CVE-2010-2341webappsphp16 jun 2010
PHP remote file inclusion vulnerability in system/application/views/public/commentform.php in EZPX Photoblog 1.2 beta al
23RISCO
abrir
Exploit-DBVexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
CVE-2010-5018webappsphp16 jun 2010
Cross-site scripting (XSS) vulnerability in products/classified/headersearch.php in 2daybiz Online Classified Script all
23RISCO
abrir
Exploit-DB
Nakid CMS 0.5.2 - Remote File Inclusion
CVE-2010-2358webappsphp16 jun 2010
PHP remote file inclusion vulnerability in modules/catalog/upload_photo.php in Nakid CMS 0.5.2, when magic_quotes_gpc is
23RISCO
abrir
Exploit-DBVexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
CVE-2010-5019webappsphp16 jun 2010
SQL injection vulnerability in view_photo.php in 2daybiz Online Classified Script allows remote attackers to execute arb
23RISCO
abrir
Exploit-DBVexDay Proof
2DayBiz ybiz Network Community Script - SQL Injection / Cross-Site Scripting
CVE-2010-5015webappsphp16 jun 2010
SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arb
23RISCO
abrir
Exploit-DBVexDay Proof
Borland CaliberRM - StarTeam Multicast Service Buffer Overflow (Metasploit)
CVE-2008-0311remotewindows15 jun 2010
Stack-based buffer overflow in the PGMWebHandler::parse_request function in the StarTeam Multicast Service component (ST
50RISCO
abrir
Exploit-DBVexDay Proof
Trellian FTP Client 3.01 - PASV Remote Buffer Overflow (Metasploit)
CVE-2010-1465remotewindows15 jun 2010
Stack-based buffer overflow in Trellian FTP client 3.01, including 3.1.3.1789, allows remote attackers to execute arbitr
50RISCO
abrir
Exploit-DBVexDay Proof
MailEnable - IMAPD W3C Logging Buffer Overflow (Metasploit)
CVE-2005-3155remotewindows15 jun 2010
Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute
50RISCO
abrir
Exploit-DBVexDay Proof
FlipViewer FViewerLoading - ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-2919remotewindows15 jun 2010
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipView
50RISCO
abrir
Exploit-DBVexDay Proof
Tumbleweed SecureTransport FileTransfer - 'vcst_eu.dll' ActiveX Control Buffer Overflow (Metasploit)
CVE-2008-1724remotewindows15 jun 2010
Stack-based buffer overflow in the IActiveXTransfer.FileTransfer method in the SecureTransport FileTransfer ActiveX cont
50RISCO
abrir
Exploit-DBVexDay Proof
AIM Triton 1.0.4 - CSeq Buffer Overflow (Metasploit)
CVE-2006-3524remotewindows15 jun 2010
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RISCO
abrir
Exploit-DBVexDay Proof
Adobe - JBIG2Decode Memory Corruption (Metasploit) (1)
CVE-2009-0658localwindows15 jun 2010
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISCO
abrir
Exploit-DBVexDay Proof
File Sharing Wizard 1.5.0 - Buffer Overflow (PoC)
CVE-2010-2330doswindows15 jun 2010
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to cause a denial of service (c
28RISCO
abrir
Exploit-DBVexDay Proof
Kerio Personal Firewall 2.1.4 - Authentication Packet Overflow (Metasploit)
CVE-2003-0220remotewindows15 jun 2010
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows r
50RISCO
abrir
Exploit-DBVexDay Proof
SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
CVE-2006-3524remotewindows15 jun 2010
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RISCO
abrir
Exploit-DBVexDay Proof
EnjoySAP SAP GUI - ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-3605remotewindows15 jun 2010
Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEnd\SapGui\kwedit.dll in the EnjoySAP
50RISCO
abrir
Exploit-DBVexDay Proof
Smart ASP Survey - Cross-Site Scripting / SQL Injection
CVE-2010-5045webappsasp15 jun 2010
Cross-site scripting (XSS) vulnerability in poll/default.asp in Smart ASP Survey allows remote attackers to inject arbit
23RISCO
abrir
Exploit-DBVexDay Proof
SIPfoundry sipXphone 2.6.0.27 - CSeq Buffer Overflow (Metasploit)
CVE-2006-3524remotewindows15 jun 2010
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RISCO
abrir
Exploit-DBVexDay Proof
RealPlayer - 'rmoc3260.dll' ActiveX Control Heap Corruption (Metasploit)
CVE-2008-1309remotewindows15 jun 2010
The RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll in RealNetworks RealPlayer Enterprise, RealPlayer 10, Rea
50RISCO
abrir
anteriorpágina 370 / 815próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.