Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
79.900exploits catalogados
36.847CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.475Referência 23.360GitHub PoC 15.228VulnCheck XDB 8.946Nuclei 4.390Metasploit 3.501✓ só verificadosrecentespopularesrisco
3.501 exploits
Metasploit500
EasyFTP Server LIST Command Stack Buffer Overflow
EasyFTP LIST Command denial of service
28RISCO
abrir ↗Metasploit300
MS10-065 Microsoft IIS 5 NTFS Stream Authentication Bypass
Unspecified vulnerability in Microsoft Internet Information Services (IIS) 5.1 on Windows XP SP3, when directory-based B
50RISCO
abrir ↗Metasploit400
Samba chain_reply Memory Corruption (Linux x86)
Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0
60RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager ovwebsnmpsrv.exe ovutil Buffer Overflow
Buffer overflow in ovutil.dll in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remo
50RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager ovwebsnmpsrv.exe main Buffer Overflow
Buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers t
50RISCO
abrir ↗Metasploit300
Titan FTP XCRC Directory Traversal Information Disclosure
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earl
23RISCO
abrir ↗Metasploit600
UnrealIRCD 3.2.8.1 Backdoor Command Execution
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally
60RISCO
abrir ↗Metasploit600
Microsoft Help Center XSS and Command Execution
The MPC::HexToNum function in helpctr.exe in Microsoft Windows Help and Support Center in Windows XP and Windows Server
60RISCO
abrir ↗Metasploit600
Oracle BeeHive 2 voice-servlet processEvaluation() Vulnerability
Unspecified vulnerability in the Services for Beehive component in Oracle Fusion Middleware 2.0.1.0, 2.0.1.1, 2.0.1.2, 2
60RISCO
abrir ↗Metasploit300
MS11-038 Microsoft Office Excel Malformed OBJ Record Handling Overflow
Stack-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 for Mac, Office 2008 for Mac, and Open XML F
60RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager ovwebsnmpsrv.exe Unrecognized Option Buffer Overflow
Buffer overflow in the error handling functionality in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.5
50RISCO
abrir ↗Metasploit300
Easy CD-DA Recorder PLS Buffer Overflow
Stack-based buffer overflow in D.R. Software Audio Converter 8.1, 2007, and 8.05 allows remote attackers to execute arbi
50RISCO
abrir ↗Metasploit300
Adobe Flash Player "newfunction" Invalid Pointer Use
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrob
100RISCO
abrir ↗Metasploit300
Adobe Flash Player "newfunction" Invalid Pointer Use
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrob
100RISCO
abrir ↗Metasploit600
Outlook ATTACH_BY_REF_ONLY File Execution
Microsoft Office Outlook 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 does not properly verify e-mail attachments with a PR_
50RISCO
abrir ↗Metasploit600
Outlook ATTACH_BY_REF_RESOLVE File Execution
Microsoft Office Outlook 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 does not properly verify e-mail attachments with a PR_
50RISCO
abrir ↗Metasploit200
MacOS X EvoCam HTTP GET Buffer Overflow
Buffer overflow in the web server for EvoLogical EvoCam 3.6.6 and 3.6.7 allows remote attackers to execute arbitrary cod
50RISCO
abrir ↗Metasploit300
SolarWinds TFTP Server 10.4.0.10 Denial of Service
SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new connections) via a crafted
50RISCO
abrir ↗Metasploit500
CommuniCrypt Mail 1.16 SMTP ActiveX Stack Buffer Overflow
CommuniCrypt Mail <= 1.16 ANSMTP/AOSMTP ActiveX Control Buffer Overflow
36RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager getnnmdata.exe (MaxAge) CGI Buffer Overflow
Stack-based buffer overflow in getnnmdata.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows r
60RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager snmpviewer.exe Buffer Overflow
Stack-based buffer overflow in the doLoad function in snmpviewer.exe in HP OpenView Network Node Manager (OV NNM) 7.01,
50RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager getnnmdata.exe (Hostname) CGI Buffer Overflow
Stack-based buffer overflow in getnnmdata.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows r
50RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager getnnmdata.exe (ICount) CGI Buffer Overflow
Stack-based buffer overflow in getnnmdata.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows r
50RISCO
abrir ↗Metasploit600
HP Mercury LoadRunner Agent magentproc.exe Remote Command Execution
Unspecified vulnerability in the Agent in HP LoadRunner before 9.50 and HP Performance Center before 9.50 allows remote
60RISCO
abrir ↗Metasploit400
Microsoft Office Visio VISIODWG.DLL DXF File Handling Vulnerability
Buffer overflow in VISIODWG.DLL before 10.0.6880.4 in Microsoft Office Visio allows user-assisted remote attackers to ex
50RISCO
abrir ↗Metasploit600
JBoss JMX Console Beanshell Deployer WAR Upload and Deployment
The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2
100RISCO
abrir ↗Metasploit600
JBoss Java Class DeploymentFileRepository WAR Deployment
The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2
100RISCO
abrir ↗Metasploit600
Maple Maplet File Creation and Command Execution
Maple <= v13 Maplet File Creation and Command Execution
36RISCO
abrir ↗Metasploit300
Oracle DB SQL Injection via SYS.DBMS_CDC_PUBLISH.DROP_CHANGE_SOURCE
Unspecified vulnerability in the Change Data Capture component in Oracle Database 9.2.0.8 and 9.2.0.8DV allows remote au
23RISCO
abrir ↗Metasploit300
Xftp FTP Client 3.0 PWD Remote Buffer Overflow
Xftp FTP Client <= 3.0 PWD Response Buffer Overflow
43RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.