Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.724exploits catalogados
35.724CVEs com exploração pública
24.695testados em laboratório
24.455 exploits
Exploit-DBVexDay Proof
obotix IP Camera M1 1.9.4 .7/M10 2.0.5.2 - 'events.tar?source_ip' Cross-Site Scripting
CVE-2006-2490remotehardware17 mai 2006
Multiple cross-site scripting (XSS) vulnerabilities in Mobotix IP Network Cameras M1 1.9.4.7 and M10 2.0.5.2, and other
23RISCO
abrir
Exploit-DBVexDay Proof
Quezza BB 1.0 - 'quezza_root_path' File Inclusion
CVE-2006-2485webappsphp17 mai 2006
PHP remote file inclusion vulnerability in includes/class_template.php in Quezza 1.0 and earlier, and possibly 1.1.0 all
23RISCO
abrir
Exploit-DBVexDay Proof
obotix IP Camera M1 1.9.4 .7/M10 2.0.5.2 - help Script Cross-Site Scripting
CVE-2006-2490remotehardware17 mai 2006
Multiple cross-site scripting (XSS) vulnerabilities in Mobotix IP Network Cameras M1 1.9.4.7 and M10 2.0.5.2, and other
23RISCO
abrir
Exploit-DBVexDay Proof
Open Wiki 0.78 - 'ow.asp' Cross-Site Scripting
CVE-2006-2473webappsasp17 mai 2006
Cross-site scripting (XSS) vulnerability in ow.asp in OpenWiki 0.78 allows remote attackers to inject arbitrary web scri
23RISCO
abrir
Exploit-DBVexDay Proof
DeluxeBB 1.06 - 'Attachment mod_mime' Remote Command Execution
CVE-2006-4558webappsphp16 mai 2006
DeluxeBB 1.06 and earlier, when run on the Apache HTTP Server with the mod_mime module, allows remote attackers to execu
23RISCO
abrir
Exploit-DBVexDay Proof
RealVNC 4.1.0 < 4.1.1 - VNC Null Authentication Bypass
CVE-2006-2369remotemultiple16 mai 2006
RealVNC 4.1.1, and other products that use RealVNC such as AdderLink IP and Cisco CallManager, allows remote attackers t
60RISCO
abrir
Exploit-DBVexDay Proof
Caucho Resin 3.0.17/3.0.18 - Viewfile Information Disclosure
CVE-2006-2437webappsjava16 mai 2006
The viewfile servlet in the documentation package (resin-doc) for Caucho Resin 3.0.17 and 3.0.18 allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
PHP-Fusion 6.00.306 - 'srch_where' SQL Injection
CVE-2006-2459webappsphp16 mai 2006
SQL injection vulnerability in messages.php in PHP-Fusion 6.00.307 and earlier allows remote authenticated users to exec
23RISCO
abrir
Exploit-DBVexDay Proof
PHPRemoteView - 'PRV.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2006-2425webappsphp16 mai 2006
Multiple cross-site scripting (XSS) vulnerabilities in PRV.php in PhpRemoteView, possibly 2003-10-23 and earlier, allow
23RISCO
abrir
Exploit-DBVexDay Proof
GNUnet 0.7.0d - Empty UDP Packet Remote Denial of Service
CVE-2006-2413doswindows15 mai 2006
GNUnet before SVN revision 2781 allows remote attackers to cause a denial of service (infinite loop and CPU consumption)
23RISCO
abrir
Exploit-DBVexDay Proof
Sun Java Applet - Font.createFont Remote Denial of Service
CVE-2006-2426dosjava15 mai 2006
Sun Java Runtime Environment (JRE) 1.5.0_6 and earlier, JDK 1.5.0_6 and earlier, and SDK 1.5.0_6 and earlier allows remo
28RISCO
abrir
Exploit-DBVexDay Proof
PuTTy.exe 0.53 - Validation Remote Buffer Overflow (Metasploit)
CVE-2002-1359remotewindows15 mai 2006
Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers
60RISCO
abrir
Exploit-DBVexDay Proof
Confixx 3.0/3.1 - 'index.php' Cross-Site Scripting
CVE-2006-2423webappsphp15 mai 2006
Cross-site scripting (XSS) vulnerability in ftplogin/index.php in Confixx 3.1.2 allows remote attackers to inject arbitr
23RISCO
abrir
Exploit-DBVexDay Proof
RadScripts RadLance 7.0 - 'popup.php' Local File Inclusion
CVE-2006-2404webappsphp15 mai 2006
Directory traversal vulnerability in popup.php in RadScripts RadLance Gold 7.0 allows remote attackers to read arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
DeluxeBB 1.06 - 'name' SQL Injection (mq=off)
CVE-2006-2503webappsphp15 mai 2006
SQL injection vulnerability in misc.php in DeluxeBB 1.06 allows remote attackers to execute arbitrary SQL commands via t
23RISCO
abrir
Exploit-DBVexDay Proof
Pixaria PopPhoto 3.5.4 - 'CFG[popphoto_base_path]' Remote File Inclusion
CVE-2006-2395webappsphp15 mai 2006
PHP remote file inclusion vulnerability in resources/includes/popp.config.loader.inc.php in PopSoft Digital PopPhoto Stu
23RISCO
abrir
Exploit-DBVexDay Proof
freeSSHd 1.0.9 - Key Exchange Algorithm Buffer Overflow
CVE-2006-2407remotewindows15 mai 2006
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other produc
60RISCO
abrir
Exploit-DBVexDay Proof
PHPODP 1.5 - 'ODP.php' Cross-Site Scripting
CVE-2006-2396webappsphp15 mai 2006
Cross-site scripting (XSS) vulnerability in phpODP 1.5h allows remote attackers to inject arbitrary web script via the b
23RISCO
abrir
Exploit-DBVexDay Proof
PHP Script Tools PSY Auction - 'email_request.php?user_id' Cross-Site Scripting
CVE-2006-7004webappsphp15 mai 2006
Cross-site scripting (XSS) vulnerability in email_request.php in PSY Auction allows remote attackers to inject arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
PHP Script Tools PSY Auction - 'item.php?id' SQL Injection
CVE-2006-7005webappsphp15 mai 2006
SQL injection vulnerability in item.php in PSY Auction allows remote attackers to execute arbitrary SQL commands via the
23RISCO
abrir
Exploit-DBVexDay Proof
RealVNC 4.1.0 < 4.1.1 - VNC Null Authentication Bypass (Metasploit)
CVE-2006-2369remotemultiple15 mai 2006
RealVNC 4.1.1, and other products that use RealVNC such as AdderLink IP and Cisco CallManager, allows remote attackers t
60RISCO
abrir
Exploit-DBVexDay Proof
raydium svn 309 - Multiple Vulnerabilities
CVE-2006-2408doswindows14 mai 2006
Multiple buffer overflows in Raydium before SVN revision 310 allow remote attackers to execute arbitrary code via a larg
23RISCO
abrir
Exploit-DBVexDay Proof
Empire 4.3.2 - 'strncat' Denial of Service
CVE-2006-2393doswindows14 mai 2006
The client_cmd function in Empire 4.3.2 and earlier allows remote attackers to cause a denial of service (application cr
23RISCO
abrir
Exploit-DBVexDay Proof
raydium svn 309 - Multiple Vulnerabilities
CVE-2006-2412doswindows14 mai 2006
The raydium_network_read function in network.c in Raydium SVN revision 312 and earlier allows remote attackers to cause
23RISCO
abrir
Exploit-DBVexDay Proof
raydium svn 309 - Multiple Vulnerabilities
CVE-2006-2409doswindows14 mai 2006
Format string vulnerability in the raydium_log function in console.c in Raydium before SVN revision 310 allows local use
23RISCO
abrir
Exploit-DBVexDay Proof
outgun 1.0.3 bot 2 - Multiple Vulnerabilities
CVE-2006-2402doswindows14 mai 2006
Buffer overflow in the changeRegistration function in servernet.cpp for Outgun 1.0.3 bot 2 and earlier allows remote att
23RISCO
abrir
Exploit-DBVexDay Proof
raydium svn 309 - Multiple Vulnerabilities
CVE-2006-2410doswindows14 mai 2006
raydium_network_netcall_exec function in network.c in Raydium SVN revision 312 and earlier allows remote attackers to ca
23RISCO
abrir
Exploit-DBVexDay Proof
Genecys 0.2 - Buffer Overflow / NULL Pointer (Denial of Service)
CVE-2006-2555doswindows14 mai 2006
The parse_command function in Genecys 0.2 and earlier allows remote attackers to cause a denial of service (crash) via a
23RISCO
abrir
Exploit-DBVexDay Proof
Genecys 0.2 - Buffer Overflow / NULL Pointer (Denial of Service)
CVE-2006-2554doswindows14 mai 2006
Buffer overflow in the tell_player_surr_changes function in Genecys 0.2 and earlier might allow remote attackers to exec
28RISCO
abrir
Exploit-DBVexDay Proof
outgun 1.0.3 bot 2 - Multiple Vulnerabilities
CVE-2006-2401doswindows14 mai 2006
The leetnet functions (leetnet/rudp.cpp) in Outgun 1.0.3 bot 2 and earlier allow remote attackers to cause a denial of s
23RISCO
abrir
anteriorpágina 601 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.