Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

82.202exploits catalogados
38.443CVEs com exploração pública
24.695testados em laboratório
82.202 exploits
VulnCheck XDB
initial-access
CVE-2023-1698CRITICAL20 out 2023
WAGO: WBM Command Injection in multiple products
85RISCO
abrir ↗
GitHub PoC★ 36
PoC for CVE-2023-36802 Microsoft Kernel Streaming Service Proxy
CVE-2023-36802HIGHsob ataque20 out 2023
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISCO
abrir ↗
GitHub PoC
testing cve-2023-41993-test
CVE-2023-41993HIGHsob ataque20 out 2023
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to
76RISCO
abrir ↗
GitHub PoC★ 3
yTxZx/CVE-2023-28432
CVE-2023-28432HIGHsob ataque20 out 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir ↗
GitHub PoC★ 14
CVE-2023-36802 ITW case
CVE-2023-36802HIGHsob ataque19 out 2023
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISCO
abrir ↗
VulnCheck XDB
local
CVE-2023-36802HIGHsob ataque19 out 2023
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
76RISCO
abrir ↗
GitHub PoC
000Tonio/cve-2021-1675
CVE-2021-1675HIGHsob ataqueransomware19 out 2023
Windows Print Spooler Remote Code Execution Vulnerability
100RISCO
abrir ↗
GitHub PoC★ 11
CVE-2023-20198 PoC (!)
CVE-2023-20198CRITICALsob ataque18 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
GitHub PoC
Checker for CVE-2023-20198 , Not a full POC Just checks the implementation and detects if hex is in response or not
CVE-2023-20198CRITICALsob ataque18 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
GitHub PoC★ 2
This script can identify if Cisco IOS XE devices are vulnerable to CVE-2023-20198
CVE-2023-20198CRITICALsob ataque18 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
GitHub PoC★ 1
emomeni/Simple-Ansible-for-CVE-2023-20198
CVE-2023-20198CRITICALsob ataque17 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
GitHub PoC★ 1
cisco-CVE-2023-20198-tester
CVE-2023-20198CRITICALsob ataque17 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
GitHub PoC★ 33
CVE-2023-20198 & 0Day Implant Scanner
CVE-2023-20198CRITICALsob ataque17 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
GitHub PoC★ 20
CVE-2023-20198 Checkscript
CVE-2023-20198CRITICALsob ataque17 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
GitHub PoC
raystr-atearedteam/CVE-2023-20198-checker
CVE-2023-20198CRITICALsob ataque17 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
VulnCheck XDB
remote-with-credentials
CVE-2022-26923HIGHsob ataque17 out 2023
Active Directory Domain Services Elevation of Privilege Vulnerability
100RISCO
abrir ↗
VulnCheck XDB
local
CVE-2023-4911HIGHsob ataque17 out 2023
Glibc: buffer overflow in ld.so leading to privilege escalation
98RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2021-34473CRITICALsob ataqueransomware17 out 2023
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISCO
abrir ↗
GitHub PoC
Proxyshell for Exploiting CVE-2021-34473
CVE-2021-34473CRITICALsob ataqueransomware17 out 2023
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISCO
abrir ↗
GitHub PoC★ 43
Exploit tool for CVE-2023-4911, targeting the 'Looney Tunables' glibc vulnerability in various Linux distributions.
CVE-2023-4911HIGHsob ataque17 out 2023
Glibc: buffer overflow in ld.so leading to privilege escalation
98RISCO
abrir ↗
GitHub PoC★ 80
检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare
CVE-2022-26923HIGHsob ataque17 out 2023
Active Directory Domain Services Elevation of Privilege Vulnerability
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2023-38646—17 out 2023
Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary comman
60RISCO
abrir ↗
GitHub PoC★ 22
A python based exploit to test out rapid reset attack (CVE-2023-44487)
CVE-2023-44487HIGHsob ataque16 out 2023
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many
93RISCO
abrir ↗
GitHub PoC★ 1
This repository has the sole purpose of rewriting the CVE-2019-9053 script, which in the original publication is written in Python 2.7. I will be using Python 3.
CVE-2019-9053—16 out 2023
An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve
35RISCO
abrir ↗
GitHub PoC
Python exploit for vsftpd 2.3.4 - Backdoor Command Execution
CVE-2011-2523—16 out 2023
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISCO
abrir ↗
VulnCheck XDB
denial-of-service
CVE-2023-44487HIGHsob ataque16 out 2023
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many
93RISCO
abrir ↗
Metasploit300
Cisco IOX XE unauthenticated Command Line Interface (CLI) execution
CVE-2023-20198CRITICALsob ataque16 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
Metasploit300
Cisco IOX XE unauthenticated OS command execution
CVE-2023-20273HIGHsob ataque16 out 2023
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject c
100RISCO
abrir ↗
Metasploit300
Cisco IOX XE unauthenticated OS command execution
CVE-2023-20198CRITICALsob ataque16 out 2023
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISCO
abrir ↗
Metasploit600
Cisco IOX XE Unauthenticated RCE Chain
CVE-2023-20273HIGHsob ataque16 out 2023
A vulnerability in the web UI feature of Cisco IOS XE Software could allow an authenticated, remote attacker to inject c
100RISCO
abrir ↗
← anteriorpágina 530 / 2.741próximo →

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.