Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.900exploits catalogados
35.840CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Apple Mac OSX Adobe Version Cue - Local Privilege Escalation
CVE-2005-1307localosx08 dez 2004
The (1) stopserver.sh and (2) startserver.sh scripts in Adobe Version Cue on Mac OS X uses the current working directory
23RISCO
abrir
Exploit-DBVexDay Proof
Battlefield 1942 1.6.19 + Vietnam 1.2 - Broadcast Client Crash
CVE-2004-1220doswindows07 dez 2004
Battlefield 1942 1.6.19 and earlier, and Battlefield Vietnam 1.2 and earlier, allows a remote master server to cause a d
23RISCO
abrir
Exploit-DBVexDay Proof
MD5 - Message Digest Algorithm Hash Collision
CVE-2004-2761CRITICALdosmultiple07 dez 2004
The MD5 Message-Digest Algorithm is not collision resistant, which makes it easier for context-dependent attackers to co
48RISCO
abrir
Exploit-DBVexDay Proof
darryl burgdorf weblibs 1.0 - Directory Traversal
CVE-2004-1221webappsphp07 dez 2004
Directory traversal vulnerability in weblibs.pl in WebLibs 1.0 allows remote attackers to read arbitrary files via .. se
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5.0.1 - FTP URI Arbitrary FTP Server Command Execution
CVE-2004-1166remotewindows06 dez 2004
CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute
35RISCO
abrir
Exploit-DBVexDay Proof
GetRight 5.2a - '.grs' Skin File Buffer Overflow
CVE-2004-0575doswindows06 dez 2004
Integer overflow in DUNZIP32.DLL for Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server 2003, and Windows S
35RISCO
abrir
Exploit-DBVexDay Proof
KDE FTP - KIOSlave URI Arbitrary FTP Server Command Execution
CVE-2004-1165remotelinux06 dez 2004
Konqueror 3.3.1 allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded
23RISCO
abrir
Exploit-DBVexDay Proof
NapShare 1.2 - Remote Buffer Overflow (1)
CVE-2004-1286remotelinux06 dez 2004
Buffer overflow in the auto_filter_extern function in auto.c for NapShare 1.2, with the extern filter enabled, allows re
28RISCO
abrir
Exploit-DBVexDay Proof
Hosting Controller 0.6.1 Hotfix 1.4 - Directory Browsing
CVE-2004-1217remotewindows05 dez 2004
Hosting Controller 6.1 Hotfix 1.4, and possibly other versions, allows remote attackers to view arbitrary directories by
23RISCO
abrir
Exploit-DBVexDay Proof
PAFileDB 3.1 - Error Message Full Path Disclosure
CVE-2005-0780webappsphp04 dez 2004
paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) auth.php, (
23RISCO
abrir
Exploit-DBVexDay Proof
RSSH 2.x - Arbitrary Command Execution
CVE-2004-1161remotelinux02 dez 2004
rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users
23RISCO
abrir
Exploit-DBVexDay Proof
Kreed 1.05 - Format String / Denial of Service
CVE-2004-1214doswindows02 dez 2004
Format string vulnerability in Kreed 1.05 and earlier allows remote attackers to execute arbitrary code via format speci
23RISCO
abrir
Exploit-DBVexDay Proof
Advanced Guestbook 2.2/2.3 - Cross-Site Scripting
CVE-2004-1213webappsphp02 dez 2004
Cross-site scripting (XSS) vulnerability in index.php in Advanced Guestbook 2.3.1, 2.2, and possibly other versions allo
23RISCO
abrir
Exploit-DBVexDay Proof
Kreed 1.05 - Format String / Denial of Service
CVE-2004-1216doswindows02 dez 2004
The scripts that handle players in Kreed 1.05 and earlier allow remote attackers to cause a denial of service (server fr
23RISCO
abrir
Exploit-DBVexDay Proof
Blog Torrent 0.8 - Directory Traversal
CVE-2004-1212webappsphp02 dez 2004
Directory traversal vulnerability in btdownload.php in Blog Torrent preview 0.8 allows remote attackers to download arbi
23RISCO
abrir
Exploit-DBVexDay Proof
Kreed 1.05 - Format String / Denial of Service
CVE-2004-1215doswindows02 dez 2004
Kreed 1.05 and earlier allows remote attackers to cause a denial of service (server disconnect) via a long UDP packet, w
23RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01a - 'check' Buffer Overflow
CVE-2004-2513doswindows01 dez 2004
Buffer overflow in the IMAP service of Mercury (Pegasus) Mail 4.01 allows remote attackers to execute arbitrary code via
23RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01a - 'check' Buffer Overflow
CVE-2004-1211doswindows01 dez 2004
Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of
60RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01 - 'Pegasus' IMAP Buffer Overflow (2)
CVE-2004-1211remotewindows01 dez 2004
Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of
60RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01 - 'Pegasus' IMAP Buffer Overflow (2)
CVE-2004-2513remotewindows01 dez 2004
Buffer overflow in the IMAP service of Mercury (Pegasus) Mail 4.01 allows remote attackers to execute arbitrary code via
23RISCO
abrir
Exploit-DBVexDay Proof
Aspell (word-list-compress) - Command Line Stack Overflow
CVE-2004-0548locallinux01 dez 2004
Multiple stack-based buffer overflows in the word-list-compress functionality in compress.c for Aspell allow local users
23RISCO
abrir
Exploit-DBVexDay Proof
IPCop 1.4.1 - Web Administration Interface Proxy Log HTML Injection
CVE-2004-1210webappsmultiple30 nov 2004
Cross-site scripting (XSS) vulnerability in proxylog.dat in IPCop 1.4.1 and possibly other versions, allows remote attac
23RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01 - 'Pegasus' IMAP Buffer Overflow (1)
CVE-2004-2513remotewindows30 nov 2004
Buffer overflow in the IMAP service of Mercury (Pegasus) Mail 4.01 allows remote attackers to execute arbitrary code via
23RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01 - 'Pegasus' IMAP Buffer Overflow (1)
CVE-2004-1211remotewindows30 nov 2004
Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of
60RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01 - 'Pegasus' IMAP Buffer Overflow (3)
CVE-2004-1211remotewindows29 nov 2004
Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of
60RISCO
abrir
Exploit-DBVexDay Proof
File ELF 4.x - Header Buffer Overflow
CVE-2004-1304remotelinux29 nov 2004
Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary cod
28RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch WS_FTP Server 5.03 - MKD Remote Buffer Overflow
CVE-2004-1135doswindows29 nov 2004
Multiple buffer overflows in WS_FTP Server 5.03 2004.10.14 allow remote attackers to cause a denial of service (service
50RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch WS_FTP Server 5.03 - 'RNFR' Buffer Overflow
CVE-2001-1021doswindows29 nov 2004
Buffer overflows in WS_FTP 2.02 allow remote attackers to execute arbitrary code via long arguments to (1) DELE, (2) MDT
35RISCO
abrir
Exploit-DBVexDay Proof
Orbz Game 2.10 - Remote Buffer Overflow (PoC)
CVE-2004-1208doswindows29 nov 2004
Buffer overflow in Orbz 2.10 and earlier allows remote attackers to cause a denial of service (application crash) and po
23RISCO
abrir
Exploit-DBVexDay Proof
PHP 4.3.7/5.0.0RC3 - 'memory_limit' Remote Overflow
CVE-2004-0594remotelinux27 nov 2004
The memory_limit functionality in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, under certain conditions such as when reg
35RISCO
abrir
anteriorpágina 687 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.