Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
82.202exploits catalogados
38.443CVEs com exploração pública
24.695testados em laboratório
TodosReferência 24.651Exploit-DB 24.485GitHub PoC 15.884VulnCheck XDB 9.215Nuclei 4.454Metasploit 3.513✓ só verificadosrecentespopularesrisco
82.202 exploits
GitHub PoC★ 36
PoC for CVE-2023-36802 Microsoft Kernel Streaming Service Proxy
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISCO
abrir ↗GitHub PoC
testing cve-2023-41993-test
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to
76RISCO
abrir ↗GitHub PoC★ 14
CVE-2023-36802 ITW case
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISCO
abrir ↗VulnCheck XDB
local
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISCO
abrir ↗GitHub PoC
000Tonio/cve-2021-1675
Windows Print Spooler Remote Code Execution Vulnerability
100RISCO
abrir ↗GitHub PoC★ 11
CVE-2023-20198 PoC (!)
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗GitHub PoC
Checker for CVE-2023-20198 , Not a full POC Just checks the implementation and detects if hex is in response or not
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗GitHub PoC★ 2
This script can identify if Cisco IOS XE devices are vulnerable to CVE-2023-20198
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗GitHub PoC★ 1
emomeni/Simple-Ansible-for-CVE-2023-20198
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗GitHub PoC★ 1
cisco-CVE-2023-20198-tester
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗GitHub PoC★ 33
CVE-2023-20198 & 0Day Implant Scanner
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗GitHub PoC★ 20
CVE-2023-20198 Checkscript
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗GitHub PoC
raystr-atearedteam/CVE-2023-20198-checker
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗VulnCheck XDB
remote-with-credentials
Active Directory Domain Services Elevation of Privilege Vulnerability
100RISCO
abrir ↗VulnCheck XDB
initial-access
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISCO
abrir ↗GitHub PoC
Proxyshell for Exploiting CVE-2021-34473
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISCO
abrir ↗GitHub PoC★ 43
Exploit tool for CVE-2023-4911, targeting the 'Looney Tunables' glibc vulnerability in various Linux distributions.
Glibc: buffer overflow in ld.so leading to privilege escalation
98RISCO
abrir ↗GitHub PoC★ 80
检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare
Active Directory Domain Services Elevation of Privilege Vulnerability
100RISCO
abrir ↗VulnCheck XDB
initial-access
Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary comman
60RISCO
abrir ↗GitHub PoC★ 22
A python based exploit to test out rapid reset attack (CVE-2023-44487)
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many
93RISCO
abrir ↗GitHub PoC★ 1
This repository has the sole purpose of rewriting the CVE-2019-9053 script, which in the original publication is written in Python 2.7. I will be using Python 3.
An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve
35RISCO
abrir ↗GitHub PoC
Python exploit for vsftpd 2.3.4 - Backdoor Command Execution
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISCO
abrir ↗VulnCheck XDB
denial-of-service
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many
93RISCO
abrir ↗Metasploit300
Cisco IOX XE unauthenticated Command Line Interface (CLI) execution
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗Metasploit300
Cisco IOX XE unauthenticated OS command execution
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject c
100RISCO
abrir ↗Metasploit300
Cisco IOX XE unauthenticated OS command execution
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗Metasploit600
Cisco IOX XE Unauthenticated RCE Chain
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject c
100RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.