Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.231exploits catalogados
35.420CVEs com exploração pública
24.695testados em laboratório
14.131 exploits
GitHub PoC1
Honeypot for Intel's AMT Firmware Vulnerability CVE-2017-5689
CVE-2017-5689CRITICALsob ataque12 mai 2017
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Mana
100RISCO
abrir
GitHub PoC1
Cisco Catalyst Remote Code Execution PoC
CVE-2017-3881CRITICALsob ataque11 mai 2017
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software co
100RISCO
abrir
GitHub PoC
homjxi0e/CVE-2017-0290-
CVE-2017-029011 mai 2017
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve
45RISCO
abrir
GitHub PoC9
RCE against WordPress 4.6; Python port of https://exploitbox.io/vuln/WordPress-Exploit-4-6-RCE-CODE-EXEC-CVE-2016-10033.html
CVE-2016-10033CRITICALsob ataque10 mai 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
GitHub PoC1
Code and vulnerable WordPress container for exploiting CVE-2016-10033
CVE-2016-10033CRITICALsob ataque10 mai 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISCO
abrir
GitHub PoC3
simple python poc for CVE-2017-5689
CVE-2017-5689CRITICALsob ataque09 mai 2017
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Mana
100RISCO
abrir
GitHub PoC4
CVE-2017-8779 aka RPCBomb
CVE-2017-877909 mai 2017
rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC through 1.4.3 do not consider t
60RISCO
abrir
GitHub PoC20
cyberheartmi9/CVE-2017-8295
CVE-2017-829506 mai 2017
WordPress through 4.7.4 relies on the Host HTTP header for a password-reset e-mail message, which makes it easier for re
28RISCO
abrir
GitHub PoC8
Apache Struts 2.0 RCE vulnerability - Allows an attacker to inject OS commands into a web application through the content-type header
CVE-2017-5638CRITICALsob ataqueransomware05 mai 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISCO
abrir
GitHub PoC2
a plugin that protects your wp site from the CVE-2017-8295 vulnerability
CVE-2017-829505 mai 2017
WordPress through 4.7.4 relies on the Host HTTP header for a password-reset e-mail message, which makes it easier for re
28RISCO
abrir
GitHub PoC39
CerberusSecurity/CVE-2017-5689
CVE-2017-5689CRITICALsob ataque04 mai 2017
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Mana
100RISCO
abrir
GitHub PoC
homjxi0e/CVE-2017-8295-WordPress-4.7.4---Unauthorized-Password-Reset
CVE-2017-829504 mai 2017
WordPress through 4.7.4 relies on the Host HTTP header for a password-reset e-mail message, which makes it easier for re
28RISCO
abrir
GitHub PoC2
RedDot CMS versions 7.5 Build 7.5.0.48 and below full database enumeration exploit that takes advantage of a remote SQL injection vulnerability in ioRD.asp.
CVE-2008-161303 mai 2017
SQL injection vulnerability in ioRD.asp in RedDot CMS 7.5 Build 7.5.0.48, and possibly other versions including 6.5 and
23RISCO
abrir
GitHub PoC3
Microsoft SQL Server sp_replwritetovarbin Memory Corruption via SQL Injection
CVE-2008-541603 mai 2017
Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and earlier; SQL Server 2000 Desktop
60RISCO
abrir
GitHub PoC
homjxi0e/CVE-2017-3881-Cisco
CVE-2017-3881CRITICALsob ataque02 mai 2017
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software co
100RISCO
abrir
GitHub PoC29
From SQL injection to root shell with CVE-2016-6662 by MaYaSeVeN
CVE-2016-666201 mai 2017
Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.2
35RISCO
abrir
GitHub PoC4
Shellshock POC | CVE-2014-6271 | cgi-bin reverse shell
CVE-2014-6271CRITICALsob ataque30 abr 2017
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISCO
abrir
GitHub PoC
A rebuilt version of the exploit for CVE-2016-1542 and CVE-2016-1543 from insinuator.net
CVE-2016-154227 abr 2017
The RPC API in RSCD agent in BMC BladeLogic Server Automation (BSA) 8.2.x, 8.3.x, 8.5.x, 8.6.x, and 8.7.x on Linux and U
60RISCO
abrir
GitHub PoC83
CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002
CVE-2019-100300026 abr 2017
A sandbox bypass vulnerability exists in Script Security Plugin 1.49 and earlier in src/main/java/org/jenkinsci/plugins/
60RISCO
abrir
GitHub PoC83
CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002
CVE-2018-199900226 abr 2017
A arbitrary file read vulnerability exists in Jenkins 2.132 and earlier, 2.121.1 and earlier in the Stapler web framewor
45RISCO
abrir
GitHub PoC83
CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002
CVE-2020-801226 abr 2017
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerabi
60RISCO
abrir
GitHub PoC
joke998/Cve-2017-0199
CVE-2017-0199HIGHsob ataqueransomware25 abr 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
GitHub PoC
Cve-2017-0199
CVE-2017-0199HIGHsob ataqueransomware25 abr 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
GitHub PoC2
An exploit implementation for RCE in RTF & DOCs (CVE-2017-0199)
CVE-2017-0199HIGHsob ataqueransomware24 abr 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
GitHub PoC
CVE-2017-7269
CVE-2017-7269CRITICALsob ataque24 abr 2017
Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet Information Services (IIS) 6.0 in
100RISCO
abrir
GitHub PoC2
Exploit toolkit CVE-2017-0199 - v2.0 is a handy python script which provides a quick and effective way to exploit Microsoft RTF RCE. It could generate a malicious RTF file and deliver metasploit / meterpreter payload to victim without any complex configuration.
CVE-2017-0199HIGHsob ataqueransomware23 abr 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
GitHub PoC2
Exploit toolkit for vulnerability RCE Microsoft RTF
CVE-2017-0199HIGHsob ataqueransomware22 abr 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
GitHub PoC7
Exploit toolkit CVE-2017-0199 - v2.0 is a handy python script which provides a quick and effective way to exploit Microsoft RTF RCE. It could generate a malicious RTF file and deliver metasploit / meterpreter / any other payload to victim without any complex configuration.
CVE-2017-0199HIGHsob ataqueransomware22 abr 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
GitHub PoC2
homjxi0e/CVE-2017-3881-exploit-cisco-
CVE-2017-3881CRITICALsob ataque20 abr 2017
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software co
100RISCO
abrir
GitHub PoC16
CVE-2017-0199
CVE-2017-0199HIGHsob ataqueransomware19 abr 2017
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Window
100RISCO
abrir
anteriorpágina 457 / 472próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.