Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.980exploits catalogados
36.899CVEs com exploração pública
24.695testados em laboratório
3.502 exploits
Metasploit400
HP OpenView NNM 7.53, 7.51 OVAS.EXE Pre-Authentication Stack Buffer Overflow
CVE-2008-169702 abr 2008
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows
60RISCO
abrir
Metasploit300
Wireshark LDAP Dissector DOS
CVE-2008-156228 mar 2008
The LDAP dissector in Wireshark (formerly Ethereal) 0.99.2 through 0.99.8 allows remote attackers to cause a denial of s
50RISCO
abrir
Metasploit400
Quick FTP Pro 2.1 Transfer-Mode Overflow
CVE-2008-161027 mar 2008
Stack-based buffer overflow in TallSoft Quick TFTP Server Pro 2.1 allows remote attackers to cause a denial of service o
50RISCO
abrir
Metasploit300
TFTP Server for Windows 1.4 ST WRQ Buffer Overflow
CVE-2008-161126 mar 2008
Stack-based buffer overflow in TFTP Server SP 1.4 for Windows allows remote attackers to cause a denial of service or ex
50RISCO
abrir
Metasploit200
Asus Dpcproxy Buffer Overflow
CVE-2008-149121 mar 2008
Stack-based buffer overflow in the DPC Proxy server (DpcProxy.exe) in ASUS Remote Console (aka ARC or ASMB3) 2.0.0.19 an
60RISCO
abrir
Metasploit300
CA BrightStor ARCserve Backup AddColumn() ActiveX Buffer Overflow
CVE-2008-147216 mar 2008
Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including Br
50RISCO
abrir
Metasploit500
MDaemon 9.6.4 IMAPD FETCH Buffer Overflow
CVE-2008-135813 mar 2008
Stack-based buffer overflow in the IMAP server in Alt-N Technologies MDaemon 9.6.4 allows remote authenticated users to
50RISCO
abrir
Metasploit300
RealPlayer rmoc3260.dll ActiveX Control Heap Corruption
CVE-2008-130908 mar 2008
The RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll in RealNetworks RealPlayer Enterprise, RealPlayer 10, Rea
50RISCO
abrir
Metasploit300
Symantec BackupExec Calendar Control Buffer Overflow
CVE-2007-601628 fev 2008
Multiple stack-based buffer overflows in the PVATLCalendar.PVCalendar.1 ActiveX control in pvcalendar.ocx in the schedul
50RISCO
abrir
Metasploit300
Novell iPrint Client ActiveX Control ExecuteRequest Buffer Overflow
CVE-2008-093522 fev 2008
Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.
50RISCO
abrir
Metasploit400
Now SMS/MMS Gateway Buffer Overflow
CVE-2008-087119 fev 2008
Multiple stack-based buffer overflows in Now SMS/MMS Gateway 2007.06.27 and earlier allow remote attackers to execute ar
50RISCO
abrir
Metasploit400
Adobe Collab.collectEmailInfo() Buffer Overflow
CVE-2007-5659HIGHsob ataque08 fev 2008
Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code
100RISCO
abrir
Metasploit400
Adobe util.printf() Buffer Overflow
CVE-2008-2992HIGHsob ataqueransomware08 fev 2008
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary c
100RISCO
abrir
Metasploit400
Adobe util.printf() Buffer Overflow
CVE-2008-2992HIGHsob ataqueransomware08 fev 2008
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary c
100RISCO
abrir
Metasploit300
UltraVNC 1.0.2 Client (vncviewer.exe) Buffer Overflow
CVE-2008-061006 fev 2008
Stack-based buffer overflow in the ClientConnection::NegotiateProtocolVersion function in vncviewer/ClientConnection.cpp
50RISCO
abrir
Metasploit400
WinComLPD Buffer Overflow
CVE-2008-515904 fev 2008
Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earl
50RISCO
abrir
Metasploit400
SAP SAPLPD 6.28 Buffer Overflow
CVE-2008-062104 fev 2008
Buffer overflow in SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to
60RISCO
abrir
Metasploit300
Facebook Photo Uploader 4 ActiveX Control Buffer Overflow
CVE-2008-571131 jan 2008
Heap-based buffer overflow in the Facebook PhotoUploader ActiveX control 5.0.14.0 and earlier allows remote attackers to
50RISCO
abrir
Metasploit600
Coppermine Photo Gallery picEditor.php Command Execution
CVE-2008-050630 jan 2008
include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing
50RISCO
abrir
Metasploit300
Persits XUpload ActiveX AddFile Buffer Overflow
CVE-2008-049225 jan 2008
Stack-based buffer overflow in the Persits.XUpload.2 ActiveX control in XUpload.ocx 3.0.0.4 and earlier in Persits XUplo
43RISCO
abrir
Metasploit200
Streamcast HTTP User-Agent Buffer Overflow
CVE-2008-055024 jan 2008
Off-by-one error in Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) or
50RISCO
abrir
Metasploit300
Winamp Ultravox Streaming Metadata (in_mp3.dll) Buffer Overflow
CVE-2008-006518 jan 2008
Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbi
50RISCO
abrir
Metasploit300
SAP MaxDB cons.exe Remote Command Injection
CVE-2008-024409 jan 2008
SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via "&&" and other shell me
60RISCO
abrir
Metasploit200
XTACACSD report() Buffer Overflow
CVE-2008-723208 jan 2008
Buffer overflow in the report function in xtacacsd 4.1.2 and earlier allows remote attackers to execute arbitrary code v
43RISCO
abrir
Metasploit200
MySQL yaSSL SSL Hello Message Buffer Overflow
CVE-2008-022604 jan 2008
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attacke
60RISCO
abrir
Metasploit400
MySQL yaSSL SSL Hello Message Buffer Overflow
CVE-2008-022604 jan 2008
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attacke
60RISCO
abrir
Metasploit400
HP LoadRunner 9.0 ActiveX AddFolder Buffer Overflow
CVE-2007-653025 dez 2007
Buffer overflow in the XUpload.ocx ActiveX control in Persits Software XUpload 2.1.0.1, and probably other versions befo
50RISCO
abrir
Metasploit300
IBM Lotus Domino Web Access Upload Module Buffer Overflow
CVE-2007-447420 dez 2007
Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, in
50RISCO
abrir
Metasploit600
Apple OS X Software Update Command Execution
CVE-2007-586317 dez 2007
Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (
43RISCO
abrir
Metasploit300
Appian Enterprise Business Suite 5.6 SP1 DoS
CVE-2007-650917 dez 2007
Unspecified vulnerability in Appian Enterprise Business Process Management (BPM) Suite 5.6 SP1 allows remote attackers t
50RISCO
abrir
anteriorpágina 95 / 117próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.