Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
71.836exploits catalogados
32.133CVEs com exploração pública
1.932testados em laboratório
TodosExploit-DB 22.786Referência 19.967GitHub PoC 13.264VulnCheck XDB 8.156Nuclei 4.201Metasploit 3.462✓ só verificadosrecentespopularesrisco
3.462 exploits
Metasploit300
Foxit Reader Authorization Bypass
Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmatio
30RISCO
abrir ↗Metasploit400
eZip Wizard 3.0 Stack Buffer Overflow
Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .z
50RISCO
abrir ↗Metasploit400
Foxit Reader 3.0 Open Execute Action Stack Based Buffer Overflow
Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote attackers to e
60RISCO
abrir ↗Metasploit200
Belkin Bulldog Plus Web Service Buffer Overflow
Belkin Bulldog Plus Web Service Buffer Overflow
63RISCO
abrir ↗Metasploit300
POP Peeper v3.4 DATE Buffer Overflow
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RISCO
abrir ↗Metasploit300
POP Peeper v3.4 UIDL Buffer Overflow
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RISCO
abrir ↗Metasploit600
ContentKeeper Web Remote Command Execution
ContentKeeper Web Appliance < 125.10 RCE via mimencode
63RISCO
abrir ↗Metasploit400
Adobe JBIG2Decode Memory Corruption
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISCO
abrir ↗Metasploit400
Adobe JBIG2Decode Heap Corruption
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISCO
abrir ↗Metasploit300
Typo3 sa-2009-002 File Disclosure
The jumpUrl mechanism in class.tslib_fe.php in TYPO3 3.3.x through 3.8.x, 4.0 before 4.0.12, 4.1 before 4.1.10, 4.2 befo
50RISCO
abrir ↗Metasploit300
MS09-002 Microsoft Internet Explorer 7 CFunctionPointer Uninitialized Memory Corruption
Microsoft Internet Explorer 7 does not properly handle errors during attempted access to deleted objects, which allows r
60RISCO
abrir ↗Metasploit500
FeedDemon Stack Buffer Overflow
Stack-based buffer overflow in NewsGator FeedDemon 2.7 and earlier allows user-assisted remote attackers to execute arbi
50RISCO
abrir ↗Metasploit300
Orbit Downloader Connecting Log Creation Buffer Overflow
Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote
50RISCO
abrir ↗Metasploit400
Free Download Manager Torrent Parsing Buffer Overflow
Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Bui
43RISCO
abrir ↗Metasploit500
Free Download Manager Remote Control Server Buffer Overflow
Stack-based buffer overflow in Remote Control Server in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allo
50RISCO
abrir ↗Metasploit300
Amaya Browser v11.0 'bdo' Tag Overflow
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary
50RISCO
abrir ↗Metasploit300
HP OpenView Network Node Manager Toolbar.exe CGI Cookie Handling Buffer Overflow
Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow
60RISCO
abrir ↗Metasploit300
TYPO3 sa-2009-001 Weak Encryption Key File Disclosure
The System extension Install tool in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 creates the
18RISCO
abrir ↗Metasploit400
HTML Help Workshop 4.74 (hhp Project File) Buffer Overflow
Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary
50RISCO
abrir ↗Metasploit600
Symantec AppStream LaunchObj ActiveX Control Arbitrary File Download and Execute
The LaunchObj ActiveX control before 5.2.2.865 in launcher.dll in Symantec AppStream Client 5.2.x before 5.2.2 SP3 MP1 d
50RISCO
abrir ↗Metasploit400
Oracle Secure Backup NDMP_CONNECT_CLIENT_AUTH Buffer Overflow
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
50RISCO
abrir ↗Metasploit300
Oracle Secure Backup exec_qr() Command Injection Vulnerability
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
30RISCO
abrir ↗Metasploit300
Oracle DB SQL Injection in MDSYS.SDO_TOPO_DROP_FTBL Trigger
Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.2 allows remote authent
50RISCO
abrir ↗Metasploit400
BEA WebLogic JSESSIONID Cookie Value Overflow
Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA
50RISCO
abrir ↗Metasploit300
TrendMicro Data Loss Prevention 5.5 Directory Traversal
Directory traversal vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16,
60RISCO
abrir ↗Metasploit300
Tomcat UTF-8 Directory Traversal Vulnerability
Directory traversal vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16,
60RISCO
abrir ↗Metasploit500
HP OpenView Network Node Manager Toolbar.exe CGI Buffer Overflow
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote att
50RISCO
abrir ↗Metasploit400
Destiny Media Player 1.61 PLS M3U Buffer Overflow
Stack-based buffer overflow in Pirate Radio Destiny Media Player 1.61 allows remote attackers to execute arbitrary code
50RISCO
abrir ↗Metasploit100
SasCam Webcam Server v.2.6.5 Get() Method Buffer Overflow
Buffer overflow in the XHTTP Module 4.1.0.0 in the ActiveX control for SaschArt SasCam Webcam Server 2.6.5 allows remote
50RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.