Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
79.900exploits catalogados
36.847CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.475Referência 23.360GitHub PoC 15.228VulnCheck XDB 8.946Nuclei 4.390Metasploit 3.501✓ só verificadosrecentespopularesrisco
3.501 exploits
Metasploit300
PCMAN FTP Server Post-Authentication STOR Command Stack Buffer Overflow
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USE
50RISCO
abrir ↗Metasploit300
MS13-059 Microsoft Internet Explorer CFlatMarkupPointer Use-After-Free
Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
50RISCO
abrir ↗Metasploit600
Horde Framework Unserialize PHP Code Execution
The framework/Util/lib/Horde/Variables.php script in the Util library in Horde before 5.1.1 allows remote attackers to c
50RISCO
abrir ↗Metasploit600
InstantCMS 1.6 Remote PHP Code Execution
InstantCMS <= 1.6 Remote PHP Code Execution
63RISCO
abrir ↗Metasploit300
Firefox onreadystatechange Event DocumentViewerImpl Use After Free
Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before
98RISCO
abrir ↗Metasploit300
MediaCoder .M3U Buffer Overflow
Buffer overflow in MediaCoder 0.8.48.5888 allows remote attackers to execute arbitrary code via a crafted .m3u file.
43RISCO
abrir ↗Metasploit300
IPMI 2.0 Cipher Zero Authentication Bypass Scanner
The Supermicro BMC implementation allows remote attackers to bypass authentication and execute arbitrary IPMI commands b
23RISCO
abrir ↗Metasploit300
IPMI 2.0 RAKP Remote SHA1 Password Hash Retrieval
The IPMI 2.0 specification supports RMCP+ Authenticated Key-Exchange Protocol (RAKP) authentication, which allows remote
60RISCO
abrir ↗Metasploit300
Canon Printer Wireless Configuration Disclosure
English/pages_MacUS/wls_set_content.html on the Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX9
18RISCO
abrir ↗Metasploit300
Canon Wireless Printer Denial Of Service
The Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX922 printers allow remote attackers to cause
23RISCO
abrir ↗Metasploit500
Java Applet ProviderSkeleton Insecure Invoke Method
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, and
60RISCO
abrir ↗Metasploit500
FreeBSD 9 Address Space Manipulation Privilege Escalation
The vm_map_lookup function in sys/vm/vm_map.c in the mmap implementation in the kernel in FreeBSD 9.0 through 9.1-RELEAS
38RISCO
abrir ↗Metasploit600
Havalite CMS Arbitary File Upload Vulnerability
Havalite CMS Arbitary File Upload RCE
63RISCO
abrir ↗Metasploit600
LibrettoCMS File Manager Arbitary File Upload Vulnerability
LibrettoCMS File Manager Arbitrary File Upload
63RISCO
abrir ↗Metasploit600
HP System Management Homepage JustGetSNMPQueue Command Injection
ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands vi
50RISCO
abrir ↗Metasploit600
ZPanel 10.0.0.2 htpasswd Module Username Command Execution
ZPanel <= 10.0.0.2 htpasswd Module Username Command Execution
36RISCO
abrir ↗Metasploit600
ZPanel zsudo Local Privilege Escalation Exploit
ZPanel zsudo Local Privilege Escalation
36RISCO
abrir ↗Metasploit600
Foreman (Red Hat OpenStack/Satellite) bookmarks/create Code Injection
Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote
43RISCO
abrir ↗Metasploit300
Foreman (Red Hat OpenStack/Satellite) users/create Mass Assignment
The create method in app/controllers/users_controller.rb in Foreman before 1.2.0-RC2 allows remote authenticated users w
43RISCO
abrir ↗Metasploit600
Netgear DGN1000 Setup.cgi Unauthenticated RCE
NETGEAR DGN setup.cgi OS Command Injection
68RISCO
abrir ↗Metasploit300
HP Data Protector Cell Request Service Buffer Overflow
Unspecified vulnerability in HP Storage Data Protector 6.20, 6.21, 7.00, and 7.01 allows remote attackers to execute arb
60RISCO
abrir ↗Metasploit0
Intrasrv 1.0 Buffer Overflow
A remote SEH buffer overflow has been discovered in IntraSrv 1.0 (2007-06-03). An attacker may send a crafted HTTP GET o
30RISCO
abrir ↗Metasploit300
Monkey HTTPD Header Parsing Denial of Service (DoS)
Stack-based buffer overflow in the mk_request_header_process function in mk_request.c in Monkey HTTP Daemon (monkeyd) be
23RISCO
abrir ↗Metasploit300
Synactis PDF In-The-Box ConnectToSynactic Stack Buffer Overflow
Synactis PDF In-The-Box ConnectToSynactic Stack-Based Buffer Overflow
36RISCO
abrir ↗Metasploit500
Apache Struts includeParams Remote Code Execution
Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not
60RISCO
abrir ↗Metasploit500
Apache Struts includeParams Remote Code Execution
Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not
60RISCO
abrir ↗Metasploit300
ERS Viewer 2013 ERS File Handling Buffer Overflow
Stack-based buffer overflow in the rf_report_error function in ermapper_u.dll in Intergraph ERDAS ER Viewer before 13.0.
50RISCO
abrir ↗Metasploit300
Lianja SQL 1.0.0RC5.1 db_netserver Stack Buffer Overflow
Stack-based buffer overflow in db_netserver in Lianja SQL Server before 1.0.0RC5.2 allows remote attackers to cause a de
50RISCO
abrir ↗Metasploit300
Java JMX Server Insecure Endpoint Code Execution Scanner
The JMX RMI service in VMware vCenter Server 5.0 before u3e, 5.1 before u3b, 5.5 before u3, and 6.0 before u1 does not r
60RISCO
abrir ↗Metasploit200
Novell Client 2 SP3 nicm.sys Local Privilege Escalation
The NICM.SYS kernel driver 3.1.11.0 in Novell Client 4.91 SP5 on Windows XP and Windows Server 2003; Novell Client 2 SP2
38RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.