Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.596exploits catalogados
36.656CVEs com exploração pública
24.695testados em laboratório
24.466 exploits
Exploit-DB
Sudo 1.9.5p1 - 'Baron Samedit ' Heap-Based Buffer Overflow Privilege Escalation (1)
CVE-2021-3156HIGHsob ataquelocalmultiple03 fev 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
Exploit-DB
Pixelimity 1.0 - 'password' Cross-Site Request Forgery
CVE-2020-23522webappsmultiple03 fev 2021
Pixelimity 1.0 has cross-site request forgery via the admin/setting.php data [Password] parameter.
23RISCO
abrir
Exploit-DB
Klog Server 2.4.1 - Command Injection (Authenticated)
CVE-2021-3317webappsphp01 fev 2021
KLog Server through 2.4.1 allows authenticated command injection. async.php calls shell_exec() on the original value of
35RISCO
abrir
Exploit-DB
Quick.CMS 6.7 - Remote Code Execution (Authenticated)
CVE-2020-35754webappsphp29 jan 2021
OpenSolution Quick.CMS < 6.7 and Quick.Cart < 6.7 allow an authenticated user to perform code injection (and consequentl
28RISCO
abrir
Exploit-DB
MyBB Hide Thread Content Plugin 1.0 - Information Disclosure
CVE-2021-3337webappsphp29 jan 2021
The Hide-Thread-Content plugin through 2021-01-27 for MyBB allows remote attackers to bypass intended content-reading re
28RISCO
abrir
Exploit-DB
Metasploit Framework 6.0.11 - msfvenom APK template command injection
CVE-2020-7384HIGHlocalmultiple28 jan 2021
Client-Side Command Injection in Rapid7 Metasploit
68RISCO
abrir
Exploit-DB
CMSUno 1.6.2 - 'lang' Remote Code Execution (Authenticated)
CVE-2020-25538webappsphp28 jan 2021
An authenticated attacker can inject malicious code into "lang" parameter in /uno/central.php file in CMSuno 1.6.2 and r
23RISCO
abrir
Exploit-DB
CMSUno 1.6.2 - 'lang' Remote Code Execution (Authenticated)
CVE-2020-25557webappsphp28 jan 2021
In CMSuno 1.6.2, an attacker can inject malicious PHP code as a "username" while changing his/her username & password. A
23RISCO
abrir
Exploit-DB
Fuel CMS 1.4.1 - Remote Code Execution (2)
CVE-2018-16763webappsphp28 jan 2021
FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This ca
60RISCO
abrir
Exploit-DB
Tenda AC5 AC1200 Wireless - 'WiFi Name & Password' Stored Cross Site Scripting
CVE-2021-3186webappshardware26 jan 2021
A Stored Cross-site scripting (XSS) vulnerability in /main.html Wifi Settings in Tenda AC5 AC1200 version V15.03.06.47_m
23RISCO
abrir
Exploit-DB
Oracle WebLogic Server 12.2.1.0 - RCE (Unauthenticated)
CVE-2020-14882CRITICALsob ataquewebappsjava26 jan 2021
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions
100RISCO
abrir
Exploit-DBVexDay Proof
Klog Server 2.4.1 - Unauthenticated Command Injection (Metasploit)
CVE-2020-35729webappsphp25 jan 2021
KLog Server 2.4.1 allows OS command injection via shell metacharacters in the actions/authenticate.php user parameter.
60RISCO
abrir
Exploit-DB
Atlassian Confluence Widget Connector Macro - SSTI
CVE-2019-3396CRITICALsob ataqueransomwarewebappsmultiple22 jan 2021
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from vers
100RISCO
abrir
Exploit-DB
Oracle WebLogic Server 14.1.1.0 - RCE (Authenticated)
CVE-2021-2109HIGHwebappsjava22 jan 2021
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions
63RISCO
abrir
Exploit-DBVexDay Proof
Wordpress Plugin Simple Job Board 2.9.3 - Authenticated File Read (Metasploit)
CVE-2020-35749webappsphp21 jan 2021
Directory traversal vulnerability in class-simple_job_board_resume_download_handler.php in the Simple Board Job plugin 2
50RISCO
abrir
Exploit-DB
Anchor CMS 0.12.7 - CSRF (Delete user)
CVE-2020-23342webappsmultiple21 jan 2021
A CSRF vulnerability exists in Anchor CMS 0.12.7 anchor/views/users/edit.php that can change the Delete admin users.
28RISCO
abrir
Exploit-DB
osTicket 1.14.2 - SSRF
CVE-2020-24881webappsphp19 jan 2021
SSRF exists in osTicket before 1.14.3, where an attacker can add malicious file to server or perform port scanning.
60RISCO
abrir
Exploit-DB
Laravel 8.4.2 debug mode - Remote code execution
CVE-2021-3129CRITICALsob ataqueransomwarewebappsphp14 jan 2021
Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitra
100RISCO
abrir
Exploit-DB
Nagios XI 5.7.X - Remote Code Execution RCE (Authenticated)
CVE-2020-35578webappsphp14 jan 2021
An issue was discovered in the Manage Plugins page in Nagios XI before 5.8.0. Because the line-ending conversion feature
60RISCO
abrir
Exploit-DBVexDay Proof
Apache Flink 1.11.0 - Unauthenticated Arbitrary File Read (Metasploit)
CVE-2020-17519CRITICALsob ataquewebappsjava08 jan 2021
Apache Flink directory traversal attack: reading remote files through the REST API
100RISCO
abrir
Exploit-DBVexDay Proof
Sonatype Nexus 3.21.1 - Remote Code Execution (Authenticated)
CVE-2020-10199HIGHsob ataquewebappsjava06 jan 2021
Sonatype Nexus Repository before 3.21.2 allows JavaEL Injection (issue 1 of 2).
100RISCO
abrir
Exploit-DBVexDay Proof
Gitea 1.7.5 - Remote Code Execution
CVE-2019-11229webappsmultiple06 jan 2021
models/repo_mirror.go in Gitea before 1.7.6 and 1.8.x before 1.8-RC3 mishandles mirror repo URL settings, leading to rem
35RISCO
abrir
Exploit-DBVexDay Proof
PaperStream IP (TWAIN) 1.42.0.5685 - Local Privilege Escalation
CVE-2018-16156localwindows06 jan 2021
In PaperStream IP (TWAIN) 1.42.0.5685 (Service Update 7), the FJTWSVIC service running with SYSTEM privilege processes u
23RISCO
abrir
Exploit-DB
IPeakCMS 3.5 - Boolean-based blind SQLi
CVE-2021-3018webappsmultiple06 jan 2021
ipeak Infosystems ibexwebCMS (aka IPeakCMS) 3.5 is vulnerable to an unauthenticated Boolean-based SQL injection via the
43RISCO
abrir
Exploit-DB
Fluentd TD-agent plugin 4.0.1 - Insecure Folder Permission
CVE-2020-28169localwindows05 jan 2021
The td-agent-builder plugin before 2020-12-18 for Fluentd allows attackers to gain privileges because the bin directory
23RISCO
abrir
Exploit-DBVexDay Proof
Klog Server 2.4.1 - Command Injection (Unauthenticated)
CVE-2020-35729webappsphp05 jan 2021
KLog Server 2.4.1 allows OS command injection via shell metacharacters in the actions/authenticate.php user parameter.
60RISCO
abrir
Exploit-DB
IncomCMS 2.0 - Insecure File Upload
CVE-2020-29597webappsmultiple05 jan 2021
IncomCMS 2.0 has a modules/uploader/showcase/script.php insecure file upload vulnerability. This vulnerability allows un
60RISCO
abrir
Exploit-DB
Wordpress Core 5.2.2 - 'post previews' XSS
CVE-2019-16223webappsphp04 jan 2021
WordPress before 5.2.3 allows XSS in post previews by authenticated users.
23RISCO
abrir
Exploit-DB
Advanced Comment System 1.0 - 'ACS_path' Path Traversal
CVE-2020-35598webappsphp04 jan 2021
ACS Advanced Comment System 1.0 is affected by Directory Traversal via an advanced_component_system/index.php?ACS_path=.
43RISCO
abrir
Exploit-DB
Subrion CMS 4.2.1 - 'avatar[path]' XSS
CVE-2020-35437webappsphp04 jan 2021
Subrion CMS 4.2.1 is affected by: Cross Site Scripting (XSS) through the avatar[path] parameter in a POST request to the
23RISCO
abrir
anteriorpágina 42 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.