Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.900exploits catalogados
36.847CVEs com exploração pública
24.695testados em laboratório
3.501 exploits
Metasploit300
PCMAN FTP Server Post-Authentication STOR Command Stack Buffer Overflow
CVE-2013-473027 jun 2013
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USE
50RISCO
abrir
Metasploit300
MS13-059 Microsoft Internet Explorer CFlatMarkupPointer Use-After-Free
CVE-2013-318427 jun 2013
Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code or cause a denial of service
50RISCO
abrir
Metasploit600
Horde Framework Unserialize PHP Code Execution
CVE-2014-169127 jun 2013
The framework/Util/lib/Horde/Variables.php script in the Util library in Horde before 5.1.1 allows remote attackers to c
50RISCO
abrir
Metasploit600
InstantCMS 1.6 Remote PHP Code Execution
CVE-2013-10051CRITICAL26 jun 2013
InstantCMS <= 1.6 Remote PHP Code Execution
63RISCO
abrir
Metasploit300
Firefox onreadystatechange Event DocumentViewerImpl Use After Free
CVE-2013-1690HIGHsob ataque25 jun 2013
Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before
98RISCO
abrir
Metasploit300
MediaCoder .M3U Buffer Overflow
CVE-2017-886924 jun 2013
Buffer overflow in MediaCoder 0.8.48.5888 allows remote attackers to execute arbitrary code via a crafted .m3u file.
43RISCO
abrir
Metasploit300
IPMI 2.0 Cipher Zero Authentication Bypass Scanner
CVE-2013-478220 jun 2013
The Supermicro BMC implementation allows remote attackers to bypass authentication and execute arbitrary IPMI commands b
23RISCO
abrir
Metasploit300
IPMI 2.0 RAKP Remote SHA1 Password Hash Retrieval
CVE-2013-478620 jun 2013
The IPMI 2.0 specification supports RMCP+ Authenticated Key-Exchange Protocol (RAKP) authentication, which allows remote
60RISCO
abrir
Metasploit300
Canon Printer Wireless Configuration Disclosure
CVE-2013-461418 jun 2013
English/pages_MacUS/wls_set_content.html on the Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX9
18RISCO
abrir
Metasploit300
Canon Wireless Printer Denial Of Service
CVE-2013-461518 jun 2013
The Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX922 printers allow remote attackers to cause
23RISCO
abrir
Metasploit500
Java Applet ProviderSkeleton Insecure Invoke Method
CVE-2013-246018 jun 2013
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, and
60RISCO
abrir
Metasploit500
FreeBSD 9 Address Space Manipulation Privilege Escalation
CVE-2013-217118 jun 2013
The vm_map_lookup function in sys/vm/vm_map.c in the mmap implementation in the kernel in FreeBSD 9.0 through 9.1-RELEAS
38RISCO
abrir
Metasploit600
Havalite CMS Arbitary File Upload Vulnerability
CVE-2013-10055CRITICAL17 jun 2013
Havalite CMS Arbitary File Upload RCE
63RISCO
abrir
Metasploit600
LibrettoCMS File Manager Arbitary File Upload Vulnerability
CVE-2013-10054CRITICAL14 jun 2013
LibrettoCMS File Manager Arbitrary File Upload
63RISCO
abrir
Metasploit600
HP System Management Homepage JustGetSNMPQueue Command Injection
CVE-2013-357611 jun 2013
ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands vi
50RISCO
abrir
Metasploit600
ZPanel 10.0.0.2 htpasswd Module Username Command Execution
CVE-2013-10053HIGH07 jun 2013
ZPanel <= 10.0.0.2 htpasswd Module Username Command Execution
36RISCO
abrir
Metasploit600
ZPanel zsudo Local Privilege Escalation Exploit
CVE-2013-10052HIGH07 jun 2013
ZPanel zsudo Local Privilege Escalation
36RISCO
abrir
Metasploit600
Foreman (Red Hat OpenStack/Satellite) bookmarks/create Code Injection
CVE-2013-212106 jun 2013
Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote
43RISCO
abrir
Metasploit300
Foreman (Red Hat OpenStack/Satellite) users/create Mass Assignment
CVE-2013-211306 jun 2013
The create method in app/controllers/users_controller.rb in Foreman before 1.2.0-RC2 allows remote authenticated users w
43RISCO
abrir
Metasploit600
Netgear DGN1000 Setup.cgi Unauthenticated RCE
CVE-2024-12847CRITICAL05 jun 2013
NETGEAR DGN setup.cgi OS Command Injection
68RISCO
abrir
Metasploit300
HP Data Protector Cell Request Service Buffer Overflow
CVE-2013-233303 jun 2013
Unspecified vulnerability in HP Storage Data Protector 6.20, 6.21, 7.00, and 7.01 allows remote attackers to execute arb
60RISCO
abrir
Metasploit0
Intrasrv 1.0 Buffer Overflow
CVE-2019-1718130 mai 2013
A remote SEH buffer overflow has been discovered in IntraSrv 1.0 (2007-06-03). An attacker may send a crafted HTTP GET o
30RISCO
abrir
Metasploit300
Monkey HTTPD Header Parsing Denial of Service (DoS)
CVE-2013-384330 mai 2013
Stack-based buffer overflow in the mk_request_header_process function in mk_request.c in Monkey HTTP Daemon (monkeyd) be
23RISCO
abrir
Metasploit300
Synactis PDF In-The-Box ConnectToSynactic Stack Buffer Overflow
CVE-2013-10057HIGH30 mai 2013
Synactis PDF In-The-Box ConnectToSynactic Stack-Based Buffer Overflow
36RISCO
abrir
Metasploit500
Apache Struts includeParams Remote Code Execution
CVE-2013-196624 mai 2013
Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not
60RISCO
abrir
Metasploit500
Apache Struts includeParams Remote Code Execution
CVE-2013-211524 mai 2013
Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not
60RISCO
abrir
Metasploit300
ERS Viewer 2013 ERS File Handling Buffer Overflow
CVE-2013-348223 mai 2013
Stack-based buffer overflow in the rf_report_error function in ermapper_u.dll in Intergraph ERDAS ER Viewer before 13.0.
50RISCO
abrir
Metasploit300
Lianja SQL 1.0.0RC5.1 db_netserver Stack Buffer Overflow
CVE-2013-356322 mai 2013
Stack-based buffer overflow in db_netserver in Lianja SQL Server before 1.0.0RC5.2 allows remote attackers to cause a de
50RISCO
abrir
Metasploit300
Java JMX Server Insecure Endpoint Code Execution Scanner
CVE-2015-234222 mai 2013
The JMX RMI service in VMware vCenter Server 5.0 before u3e, 5.1 before u3b, 5.5 before u3, and 6.0 before u1 does not r
60RISCO
abrir
Metasploit200
Novell Client 2 SP3 nicm.sys Local Privilege Escalation
CVE-2013-395622 mai 2013
The NICM.SYS kernel driver 3.1.11.0 in Novell Client 4.91 SP5 on Windows XP and Windows Server 2003; Novell Client 2 SP2
38RISCO
abrir
anteriorpágina 65 / 117próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.