Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

82.117exploits catalogados
38.374CVEs com exploração pública
24.695testados em laboratório
82.117 exploits
GitHub PoC★ 10
An Exploitation tool to exploit the confluence server that are vulnerable to CVE-2023-22527 leads to RCE
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22518CRITICALsob ataqueransomware23 jan 2024
All versions of Confluence Data Center and Server are affected by this unexploited vulnerability. This Improper Authoriz
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware23 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
GitHub PoC
Shimon03/CVE-2023-7028-Account-Take-Over-Gitlab
CVE-2023-7028CRITICALsob ataque23 jan 2024
Weak Password Recovery Mechanism for Forgotten Password in GitLab
100RISCO
abrir ↗
GitHub PoC★ 2
thanhlam-attt/CVE-2023-7028
CVE-2023-7028CRITICALsob ataque23 jan 2024
Weak Password Recovery Mechanism for Forgotten Password in GitLab
100RISCO
abrir ↗
VulnCheck XDB
infoleak
CVE-2024-0204CRITICAL23 jan 2024
Authentication Bypass in GoAnywhere MFT
85RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-25157CRITICAL23 jan 2024
Unfiltered SQL Injection Vulnerabilities in Geoserver
85RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2024-0204CRITICAL23 jan 2024
Authentication Bypass in GoAnywhere MFT
85RISCO
abrir ↗
Metasploit600
Fortra GoAnywhere MFT Unauthenticated Remote Code Execution
CVE-2024-0204CRITICAL22 jan 2024
Authentication Bypass in GoAnywhere MFT
85RISCO
abrir ↗
VulnCheck XDB
local
CVE-2023-28252HIGHsob ataqueransomware22 jan 2024
Windows Common Log File System Driver Elevation of Privilege Vulnerability
98RISCO
abrir ↗
GitHub PoC★ 5
thanhlam-attt/CVE-2023-22527
CVE-2023-22527CRITICALsob ataqueransomware22 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
GitHub PoC★ 2
Drun1baby/CVE-2023-22527
CVE-2023-22527CRITICALsob ataqueransomware22 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
GitHub PoC
Different files for computer security coursework
CVE-2021-3156HIGHsob ataque22 jan 2024
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir ↗
GitHub PoC★ 55
A modification to fortra's CVE-2023-28252 exploit, compiled to exe
CVE-2023-28252HIGHsob ataqueransomware22 jan 2024
Windows Common Log File System Driver Elevation of Privilege Vulnerability
98RISCO
abrir ↗
VulnCheck XDB
local
CVE-2021-3156HIGHsob ataque22 jan 2024
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir ↗
GitHub PoC
BurakSevben/CVE-2024-24142
CVE-2024-24142CRITICAL22 jan 2024
Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter.
48RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware22 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware22 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-22527CRITICALsob ataqueransomware22 jan 2024
A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated atta
100RISCO
abrir ↗
GitHub PoC
BurakSevben/CVE-2024-24141
CVE-2024-24141CRITICAL21 jan 2024
Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter.
48RISCO
abrir ↗
VulnCheck XDB
local
CVE-2023-4911HIGHsob ataque20 jan 2024
Glibc: buffer overflow in ld.so leading to privilege escalation
98RISCO
abrir ↗
GitHub PoC★ 8
Repository containing a Proof of Concept (PoC) demonstrating the impact of CVE-2023-4911, a vulnerability in glibc's ld.so dynamic loader, exposing risks related to Looney Tunables.
CVE-2023-4911HIGHsob ataque20 jan 2024
Glibc: buffer overflow in ld.so leading to privilege escalation
98RISCO
abrir ↗
GitHub PoC★ 12
Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.
CVE-2023-46805HIGHsob ataqueransomware19 jan 2024
An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a re
100RISCO
abrir ↗
GitHub PoC★ 12
Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.
CVE-2024-21887CRITICALsob ataqueransomware19 jan 2024
A command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x,
100RISCO
abrir ↗
← anteriorpágina 501 / 2.738próximo →

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.