Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
79.980exploits catalogados
36.899CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.476Referência 23.400GitHub PoC 15.250VulnCheck XDB 8.959Nuclei 4.393Metasploit 3.502✓ só verificadosrecentespopularesrisco
3.502 exploits
Metasploit300
SAP AG SAPgui EAI WebViewer3D Buffer Overflow
Stack-based buffer overflow in EAI WebViewer3D ActiveX control (webviewer3d.dll) in SAP AG SAPgui before 7.10 Patch Leve
50RISCO
abrir ↗Metasploit300
XM Easy Personal FTP Server 5.7.0 NLST DoS
XM Easy Personal FTP Server 5.6.0 allows remote authenticated users to cause a denial of service via a crafted argument
50RISCO
abrir ↗Metasploit400
Adobe Collab.getIcon() Buffer Overflow
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows r
100RISCO
abrir ↗Metasploit300
IBM Access Support ActiveX Control Buffer Overflow
Stack-based buffer overflow in the GetXMLValue method in the IBM Access Support ActiveX control in IbmEgath.dll, as dist
50RISCO
abrir ↗Metasploit600
phpMyAdmin Config File Code Injection
Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remo
100RISCO
abrir ↗Metasploit600
phpMyAdmin Config File Code Injection
Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x be
23RISCO
abrir ↗Metasploit400
Adobe Collab.getIcon() Buffer Overflow
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows r
100RISCO
abrir ↗Metasploit300
Talkative IRC v0.4.4.16 Response Buffer Overflow
Talkative IRC v0.4.4.16 Response Buffer Overflow
63RISCO
abrir ↗Metasploit600
IBM System Director Agent DLL Injection
Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows rem
50RISCO
abrir ↗Metasploit300
Foxit Reader Authorization Bypass
Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmatio
30RISCO
abrir ↗Metasploit400
eZip Wizard 3.0 Stack Buffer Overflow
Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .z
50RISCO
abrir ↗Metasploit400
Foxit Reader 3.0 Open Execute Action Stack Based Buffer Overflow
Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote attackers to e
60RISCO
abrir ↗Metasploit200
Belkin Bulldog Plus Web Service Buffer Overflow
Belkin Bulldog Plus Web Service Buffer Overflow
63RISCO
abrir ↗Metasploit300
POP Peeper v3.4 DATE Buffer Overflow
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RISCO
abrir ↗Metasploit300
POP Peeper v3.4 UIDL Buffer Overflow
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RISCO
abrir ↗Metasploit600
ContentKeeper Web Remote Command Execution
ContentKeeper Web Appliance < 125.10 RCE via mimencode
63RISCO
abrir ↗Metasploit400
Adobe JBIG2Decode Memory Corruption
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISCO
abrir ↗Metasploit400
Adobe JBIG2Decode Heap Corruption
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISCO
abrir ↗Metasploit300
Typo3 sa-2009-002 File Disclosure
The jumpUrl mechanism in class.tslib_fe.php in TYPO3 3.3.x through 3.8.x, 4.0 before 4.0.12, 4.1 before 4.1.10, 4.2 befo
50RISCO
abrir ↗Metasploit300
MS09-002 Microsoft Internet Explorer 7 CFunctionPointer Uninitialized Memory Corruption
Microsoft Internet Explorer 7 does not properly handle errors during attempted access to deleted objects, which allows r
60RISCO
abrir ↗Metasploit500
FeedDemon Stack Buffer Overflow
Stack-based buffer overflow in NewsGator FeedDemon 2.7 and earlier allows user-assisted remote attackers to execute arbi
50RISCO
abrir ↗Metasploit300
Orbit Downloader Connecting Log Creation Buffer Overflow
Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote
50RISCO
abrir ↗Metasploit400
Free Download Manager Torrent Parsing Buffer Overflow
Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Bui
43RISCO
abrir ↗Metasploit500
Free Download Manager Remote Control Server Buffer Overflow
Stack-based buffer overflow in Remote Control Server in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allo
50RISCO
abrir ↗Metasploit300
Amaya Browser v11.0 'bdo' Tag Overflow
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary
50RISCO
abrir ↗Metasploit300
HP OpenView Network Node Manager Toolbar.exe CGI Cookie Handling Buffer Overflow
Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow
60RISCO
abrir ↗Metasploit300
TYPO3 sa-2009-001 Weak Encryption Key File Disclosure
The System extension Install tool in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 creates the
18RISCO
abrir ↗Metasploit400
HTML Help Workshop 4.74 (hhp Project File) Buffer Overflow
Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary
50RISCO
abrir ↗Metasploit600
Symantec AppStream LaunchObj ActiveX Control Arbitrary File Download and Execute
The LaunchObj ActiveX control before 5.2.2.865 in launcher.dll in Symantec AppStream Client 5.2.x before 5.2.2 SP3 MP1 d
50RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.