Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.231exploits catalogados
35.420CVEs com exploração pública
24.695testados em laboratório
24.451 exploits
Exploit-DBVexDay Proof
vsftpd 2.0.5 - 'deny_file' Option Remote Denial of Service (2)
CVE-2007-5962doswindows21 mai 2008
Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 throug
28RISCO
abrir
Exploit-DBVexDay Proof
vsftpd 2.0.5 - 'deny_file' Option Remote Denial of Service (1)
CVE-2007-5962doswindows21 mai 2008
Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 throug
28RISCO
abrir
Exploit-DBVexDay Proof
libxslt XSL 1.1.23 - File Processing Buffer Overflow
CVE-2008-1767doslinux21 mai 2008
Buffer overflow in pattern.c in libxslt before 1.1.24 allows context-dependent attackers to cause a denial of service (c
28RISCO
abrir
Exploit-DBVexDay Proof
AppServ Open Project 2.5.10 - 'appservlang' Cross-Site Scripting
CVE-2008-2398webappsphp20 mai 2008
Cross-site scripting (XSS) vulnerability in index.php in AppServ Open Project 2.5.10 and earlier allows remote attackers
38RISCO
abrir
Exploit-DBVexDay Proof
Web Slider 0.6 - 'slide' SQL Injection
CVE-2008-2422webappsphp20 mai 2008
SQL injection vulnerability in index.php in Web Slider 0.6 allows remote attackers to execute arbitrary SQL commands via
23RISCO
abrir
Exploit-DBVexDay Proof
Starsgames Control Panel 4.6.2 - 'index.php' Cross-Site Scripting
CVE-2008-2458webappsphp20 mai 2008
Cross-site scripting (XSS) vulnerability in index.php in Starsgames Control Panel 4.6.2 and earlier allows remote attack
23RISCO
abrir
Exploit-DBVexDay Proof
bcoos 1.0.13 - 'file' Local File Inclusion
CVE-2008-2350webappsphp19 mai 2008
Directory traversal vulnerability in highlight.php in bcoos 1.0.9 through 1.0.13 allows remote attackers to read arbitra
23RISCO
abrir
Exploit-DBVexDay Proof
cPanel 11.21 - 'wwwact' Privilege Escalation
CVE-2008-2478webappsphp19 mai 2008
scripts/wwwacct in cPanel 11.18.6 STABLE and earlier and 11.23.1 CURRENT and earlier allows remote authenticated users w
23RISCO
abrir
Exploit-DBVexDay Proof
PHP-AGTC Membership System 1.1a - Arbitrary Add Admin
CVE-2007-5752webappsphp18 mai 2008
adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication, which allows remote at
23RISCO
abrir
Exploit-DBVexDay Proof
FicHive 1.0 - 'category' Blind SQL Injection
CVE-2008-2425webappsphp17 mai 2008
SQL injection vulnerability in index.php in FicHive 1.0 allows remote attackers to execute arbitrary SQL commands via th
23RISCO
abrir
Exploit-DBVexDay Proof
ACGV News 0.9.1 - 'glossaire.php?id' SQL Injection
CVE-2008-2412webappsphp16 mai 2008
SQL injection vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to execute arbitrary SQL command
23RISCO
abrir
Exploit-DBVexDay Proof
AN Guestbook 0.4 - 'send_email.php' Cross-Site Scripting
CVE-2008-2414webappsphp16 mai 2008
Cross-site scripting (XSS) vulnerability in send_email.php in AN Guestbook (ANG) 0.4 allows remote attackers to inject a
23RISCO
abrir
Exploit-DBVexDay Proof
ACGV News 0.9.1 - 'glossaire.php?id' Cross-Site Scripting
CVE-2008-2413webappsphp16 mai 2008
Cross-site scripting (XSS) vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to inject arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
Digital Hive 2.0 - 'base_include.php' Local File Inclusion
CVE-2008-2415webappsphp16 mai 2008
Directory traversal vulnerability in template/purpletech/base_include.php in DigitalHive (aka hive) 2.0 RC2 allows remot
23RISCO
abrir
Exploit-DBVexDay Proof
SunShop Shopping Cart 3.5.1 - 'index.php' SQL Injection
CVE-2008-2339webappsphp15 mai 2008
SQL injection vulnerability in index.php in Turnkey Web Tools SunShop Shopping Cart 3.5.1 allows remote attackers to exe
23RISCO
abrir
Exploit-DBVexDay Proof
philboard 0.5 - 'W1L3D4_foruma_yeni_konu_ac.asp?forumid' SQL Injection
CVE-2008-2334webappsasp14 mai 2008
Multiple SQL injection vulnerabilities in W1L3D4 Philboard 0.5 allow remote attackers to execute arbitrary SQL commands
23RISCO
abrir
Exploit-DBVexDay Proof
philboard 0.5 - 'W1L3D4_konuya_mesaj_yaz.asp' Multiple SQL Injections
CVE-2008-2334webappsphp14 mai 2008
Multiple SQL injection vulnerabilities in W1L3D4 Philboard 0.5 allow remote attackers to execute arbitrary SQL commands
23RISCO
abrir
Exploit-DBVexDay Proof
philboard 0.5 - 'W1L3D4_konuoku.asp?id' SQL Injection
CVE-2008-2334webappsphp14 mai 2008
Multiple SQL injection vulnerabilities in W1L3D4 Philboard 0.5 allow remote attackers to execute arbitrary SQL commands
23RISCO
abrir
Exploit-DBVexDay Proof
Fusebox 5.5.1 - 'fusebox5.php' Remote File Inclusion
CVE-2008-2284webappsphp12 mai 2008
PHP remote file inclusion vulnerability in fusebox5.php in Fusebox 5.5.1 allows remote attackers to execute arbitrary PH
23RISCO
abrir
Exploit-DBVexDay Proof
CyrixMED 1.4 - 'index.php' Cross-Site Scripting
CVE-2008-2264webappsphp12 mai 2008
Cross-site scripting (XSS) vulnerability in index.php in CyrixMED 1.4 allows remote attackers to inject arbitrary web sc
23RISCO
abrir
Exploit-DBVexDay Proof
PHPInstantGallery 2.0 - 'index.php?Gallery' Cross-Site Scripting
CVE-2008-2449webappsphp12 mai 2008
Multiple cross-site scripting (XSS) vulnerabilities in Isaac McGowan phpInstantGallery 2.0 allow remote attackers to inj
23RISCO
abrir
Exploit-DBVexDay Proof
PHPInstantGallery 2.0 - 'image.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2008-2449webappsphp12 mai 2008
Multiple cross-site scripting (XSS) vulnerabilities in Isaac McGowan phpInstantGallery 2.0 allow remote attackers to inj
23RISCO
abrir
Exploit-DBVexDay Proof
ScrewTurn Software ScrewTurn Wiki 2.0.x - 'System Log' Page HTML Injection
CVE-2008-3483webappsphp11 mai 2008
Cross-site scripting (XSS) vulnerability in ScrewTurn Wiki 2.0.29 and 2.0.30 allows remote attackers to inject arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
BlogPHP 2.0 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2008-6631webappsphp10 mai 2008
Multiple cross-site scripting (XSS) vulnerabilities in index.php in BlogPHP 2.0 allow remote attackers to inject arbitra
23RISCO
abrir
Exploit-DBVexDay Proof
Ktools Photostore 3.5.2 - Multiple SQL Injections
CVE-2008-6647webappsphp10 mai 2008
SQL injection vulnerability in gallery.php in Ktools PhotoStore 3.4.3 allows remote attackers to execute arbitrary SQL c
23RISCO
abrir
Exploit-DBVexDay Proof
cPanel 11.x - '/scripts2/changeip?user' Cross-Site Scripting
CVE-2008-2070webappsphp09 mai 2008
The WHM interface 11.15.0 for cPanel 11.18 before 11.18.4 and 11.22 before 11.22.3 allows remote attackers to bypass XSS
23RISCO
abrir
Exploit-DBVexDay Proof
Ktools Photostore 3.5.1 - 'gid' SQL Injection
CVE-2008-6649webappsphp09 mai 2008
SQL injection vulnerability in manager/image_details_editor.php in Ktools PhotoStore 2.5, 2.9.8, 3.1.0, and other versio
23RISCO
abrir
Exploit-DBVexDay Proof
cPanel 11.x - '/scripts2/listaccts?search' Cross-Site Scripting
CVE-2008-2070webappsphp09 mai 2008
The WHM interface 11.15.0 for cPanel 11.18 before 11.18.4 and 11.22 before 11.22.3 allows remote attackers to bypass XSS
23RISCO
abrir
Exploit-DBVexDay Proof
Oracle Application Server Portal 10g - Authentication Bypass
CVE-2008-2138remotemultiple09 mai 2008
Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read
28RISCO
abrir
Exploit-DBVexDay Proof
cPanel 11.x - '/scripts2/knowlegebase?issue' Cross-Site Scripting
CVE-2008-2070webappsphp09 mai 2008
The WHM interface 11.15.0 for cPanel 11.18 before 11.18.4 and 11.22 before 11.22.3 allows remote attackers to bypass XSS
23RISCO
abrir
anteriorpágina 485 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.