Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.980exploits catalogados
36.899CVEs com exploração pública
24.695testados em laboratório
3.502 exploits
Metasploit500
Oracle Weblogic Apache Connector POST Request Buffer Overflow
CVE-2008-325717 jul 2008
Stack-based buffer overflow in the Apache Connector (mod_wl) in Oracle WebLogic Server (formerly BEA WebLogic Server) 10
60RISCO
abrir
Metasploit0
Trixbox langChoice PHP Local File Inclusion
CVE-2008-682509 jul 2008
Directory traversal vulnerability in user/index.php in Fonality trixbox CE 2.6.1 and earlier allows remote attackers to
43RISCO
abrir
Metasploit600
Snapshot Viewer for Microsoft Access ActiveX Control Arbitrary File Download
CVE-2008-246307 jul 2008
The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snaps
50RISCO
abrir
Metasploit200
OpenTFTP SP 1.4 Error Packet Overflow
CVE-2008-216105 jul 2008
Buffer overflow in TFTP Server SP 1.4 and 1.5 on Windows, and possibly other versions, allows remote attackers to execut
50RISCO
abrir
Metasploit300
Novell GroupWise Messenger Client Buffer Overflow
CVE-2008-270302 jul 2008
Multiple stack-based buffer overflows in Novell GroupWise Messenger (GWIM) Client before 2.0.3 HP1 for Windows allow rem
50RISCO
abrir
Metasploit200
Novell Client 4.91 SP4 nwfs.sys Local Privilege Escalation
CVE-2008-315826 jun 2008
Unspecified vulnerability in NWFS.SYS in Novell Client for Windows 4.91 SP4 has unknown impact and attack vectors, possi
38RISCO
abrir
Metasploit300
VeryPDF PDFView OCX ActiveX OpenPDF Heap Overflow
CVE-2008-549216 jun 2008
Heap-based buffer overflow in the PDFVIEW.PdfviewCtrl.1 ActiveX control in pdfview.ocx 2.0.0.1 in VeryDOC PDF Viewer OCX
50RISCO
abrir
Metasploit300
Novell iPrint Client ActiveX Control Buffer Overflow
CVE-2008-290816 jun 2008
Multiple stack-based buffer overflows in a certain ActiveX control in ienipp.ocx in Novell iPrint Client for Windows bef
50RISCO
abrir
Metasploit600
Mambo Cache_Lite Class mosConfig_absolute_path Remote File Include
CVE-2008-290514 jun 2008
PHP remote file inclusion vulnerability in includes/Cache/Lite/Output.php in the Cache_Lite package in Mambo 4.6.4 and e
43RISCO
abrir
Metasploit600
BASE base_qry_common Remote File Include
CVE-2006-268514 jun 2008
PHP remote file inclusion vulnerability in Basic Analysis and Security Engine (BASE) 1.2.4 and earlier, with register_gl
50RISCO
abrir
Metasploit300
CitectSCADA/CitectFacilities ODBC Buffer Overflow
CVE-2008-263911 jun 2008
Stack-based buffer overflow in the ODBC server service in Citect CitectSCADA 6 and 7, and CitectFacilities 7, allows rem
60RISCO
abrir
Metasploit600
Black Ice Cover Page ActiveX Control Arbitrary File Download
CVE-2008-268305 jun 2008
The BIDIB.BIDIBCtrl.1 ActiveX control in BIDIB.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to for
50RISCO
abrir
Metasploit200
DoubleTake/HP StorageWorks Storage Mirroring Service Authentication Overflow
CVE-2008-166104 jun 2008
Stack-based buffer overflow in DoubleTake.exe in HP StorageWorks Storage Mirroring (SWSM) before 4.5 SP2 allows remote a
50RISCO
abrir
Metasploit600
Icona SpA C6 Messenger DownloaderActiveX Control Arbitrary File Download and Execute
CVE-2008-255103 jun 2008
The DownloaderActiveX Control (DownloaderActiveX.ocx) in Icona SpA C6 Messenger 1.0.0.1 allows remote attackers to force
50RISCO
abrir
Metasploit200
Alt-N SecurityGateway username Buffer Overflow
CVE-2008-419302 jun 2008
Stack-based buffer overflow in SecurityGateway.dll in Alt-N Technologies SecurityGateway 1.0.1 allows remote attackers t
60RISCO
abrir
Metasploit300
Creative Software AutoUpdate Engine ActiveX Control Buffer Overflow
CVE-2008-095528 mai 2008
Stack-based buffer overflow in the Creative Software AutoUpdate Engine ActiveX control in CTSUEng.ocx allows remote atta
50RISCO
abrir
Metasploit300
EMC AlphaStor Device Manager Arbitrary Command Execution
CVE-2008-215727 mai 2008
robotd in the Library Manager in EMC AlphaStor 3.1 SP1 for Windows allows remote attackers to execute arbitrary commands
30RISCO
abrir
Metasploit300
EMC AlphaStor Library Manager Arbitrary Command Execution
CVE-2008-215727 mai 2008
robotd in the Library Manager in EMC AlphaStor 3.1 SP1 for Windows allows remote attackers to execute arbitrary commands
30RISCO
abrir
Metasploit500
EMC AlphaStor Agent Buffer Overflow
CVE-2008-215827 mai 2008
Multiple stack-based buffer overflows in the Command Line Interface process in the Server Agent in EMC AlphaStor 3.1 SP1
50RISCO
abrir
Metasploit200
IBM Lotus Domino Sametime STMux.exe Stack Buffer Overflow
CVE-2008-249921 mai 2008
Stack-based buffer overflow in the Community Services Multiplexer (aka MUX or StMux.exe) in IBM Lotus Sametime 7.5.1 CF1
60RISCO
abrir
Metasploit200
IBM Lotus Domino Web Server Accept-Language Stack Buffer Overflow
CVE-2008-224020 mai 2008
Stack-based buffer overflow in the Web Server service in IBM Lotus Domino before 7.0.3 FP1, and 8.x before 8.0.1, allows
50RISCO
abrir
Metasploit300
Symantec Altiris DS SQL Injection
CVE-2008-228615 mai 2008
SQL injection vulnerability in axengine.exe in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allow
50RISCO
abrir
Metasploit600
Timbuktu Pro Directory Traversal/File Upload
CVE-2008-111710 mai 2008
Directory traversal vulnerability in the Notes (aka Flash Notes or instant messages) feature in tb2ftp.dll in Timbuktu P
50RISCO
abrir
Metasploit300
OpenOffice OLE Importer DocumentSummaryInformation Stream Handling Overflow
CVE-2008-032017 abr 2008
Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of
50RISCO
abrir
Metasploit200
BigAnt Server 2.2 Buffer Overflow
CVE-2008-191415 abr 2008
Stack-based buffer overflow in the AntServer module (AntServer.exe) in BigAnt IM Server in BigAnt Messenger 2.2 allows r
60RISCO
abrir
Metasploit500
BigAnt Server 2.50 SP1 Buffer Overflow
CVE-2008-191415 abr 2008
Stack-based buffer overflow in the AntServer module (AntServer.exe) in BigAnt IM Server in BigAnt Messenger 2.2 allows r
60RISCO
abrir
Metasploit500
Tumbleweed FileTransfer vcst_eu.dll ActiveX Control Buffer Overflow
CVE-2008-172407 abr 2008
Stack-based buffer overflow in the IActiveXTransfer.FileTransfer method in the SecureTransport FileTransfer ActiveX cont
50RISCO
abrir
Metasploit200
Computer Associates Alert Notification Buffer Overflow
CVE-2007-462004 abr 2008
Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.
50RISCO
abrir
Metasploit300
Orbit Downloader URL Unicode Conversion Overflow
CVE-2008-160203 abr 2008
Stack-based buffer overflow in Orbit downloader 2.6.3 and 2.6.4 allows remote attackers to execute arbitrary code via a
50RISCO
abrir
Metasploit400
HP OpenView NNM 7.53, 7.51 OVAS.EXE Pre-Authentication Stack Buffer Overflow
CVE-2008-169702 abr 2008
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows
60RISCO
abrir
anteriorpágina 94 / 117próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.