Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.980exploits catalogados
36.899CVEs com exploração pública
24.695testados em laboratório
3.502 exploits
Metasploit300
MS07-064 Microsoft DirectX DirectShow SAMI Buffer Overflow
CVE-2007-390111 dez 2007
Stack-based buffer overflow in the DirectShow Synchronized Accessible Media Interchange (SAMI) parser in quartz.dll for
50RISCO
abrir
Metasploit400
MS07-065 Microsoft Message Queueing Service DNS Name Path Overflow
CVE-2007-303911 dez 2007
Stack-based buffer overflow in the Microsoft Message Queuing (MSMQ) service in Microsoft Windows 2000 Server SP4, Window
50RISCO
abrir
Metasploit500
BadBlue 2.72b PassThru Buffer Overflow
CVE-2007-637710 dez 2007
Stack-based buffer overflow in the PassThru functionality in ext.dll in BadBlue 2.72b and earlier allows remote attacker
50RISCO
abrir
Metasploit500
HP OpenView Network Node Manager OpenView5.exe CGI Buffer Overflow
CVE-2007-620406 dez 2007
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote att
50RISCO
abrir
Metasploit200
MacOS X QuickTime RTSP Content-Type Overflow
CVE-2007-616623 nov 2007
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac
50RISCO
abrir
Metasploit300
Apple QuickTime 7.3 RTSP Response Header Buffer Overflow
CVE-2007-616623 nov 2007
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac
50RISCO
abrir
Metasploit400
ACDSee XPM File Section Buffer Overflow
CVE-2007-219323 nov 2007
Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build
50RISCO
abrir
Metasploit300
WinZip FileView (WZFILEVIEW.FileViewCtrl.61) ActiveX Buffer Overflow
CVE-2006-519802 nov 2007
The WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 before buil
50RISCO
abrir
Metasploit300
SonicWall SSL-VPN NetExtender ActiveX Control Buffer Overflow
CVE-2007-560301 nov 2007
Stack-based buffer overflow in the SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX control before 2.1.0.51, and 2.5.x
50RISCO
abrir
Metasploit300
Macrovision InstallShield Update Service Buffer Overflow
CVE-2007-566031 out 2007
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXn
50RISCO
abrir
Metasploit300
GOM Player ActiveX Control Buffer Overflow
CVE-2007-577927 out 2007
Buffer overflow in the GomManager (GomWeb Control) ActiveX control in GomWeb3.dll 1.0.0.12 in Gretech Online Movie Playe
60RISCO
abrir
Metasploit600
Macrovision InstallShield Update Service ActiveX Unsafe Method
CVE-2007-566020 out 2007
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXn
50RISCO
abrir
Metasploit300
RealPlayer ierpplug.dll ActiveX Control Playlist Name Buffer Overflow
CVE-2007-560118 out 2007
Stack-based buffer overflow in the Database Component in MPAMedia.dll in RealNetworks RealPlayer 10.5 and 11 beta, and e
50RISCO
abrir
Metasploit300
Oracle DB SQL Injection via SYS.LT.FINDRICSET Evil Cursor Method
CVE-2007-551117 out 2007
SQL injection vulnerability in Workspace Manager for Oracle Database before OWM 10.2.0.4.1, OWM 10.1.0.8.0, and OWM 9.2.
50RISCO
abrir
Metasploit600
TikiWiki tiki-graph_formula Remote PHP Code Execution
CVE-2007-542310 out 2007
tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f ar
60RISCO
abrir
Metasploit300
Electronic Arts SnoopyCtrl ActiveX Control Buffer Overflow
CVE-2007-446608 out 2007
Multiple stack-based buffer overflows in Electronic Arts (EA) SnoopyCtrl ActiveX control (NPSnpy.dll) allow remote attac
50RISCO
abrir
Metasploit600
HPLIP hpssd.py From Address Arbitrary Command Execution
CVE-2007-520804 out 2007
hpssd in Hewlett-Packard Linux Imaging and Printing Project (hplip) 1.x and 2.x before 2.7.10 allows context-dependent a
50RISCO
abrir
Metasploit400
Borland InterBase PWD_db_aliased() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit400
Borland InterBase open_marker_file() Buffer Overflow
CVE-2007-524403 out 2007
Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versio
50RISCO
abrir
Metasploit400
Borland InterBase INET_connect() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit400
Borland InterBase jrd8_create_database() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit200
Firebird Relational Database isc_create_database() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit200
Firebird Relational Database SVC_attach() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit200
Firebird Relational Database isc_attach_database() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit400
Borland InterBase isc_create_database() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit400
Borland InterBase SVC_attach() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit400
Borland InterBase isc_attach_database() Buffer Overflow
CVE-2007-524303 out 2007
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0
50RISCO
abrir
Metasploit300
Kazaa Altnet Download Manager ActiveX Control Buffer Overflow
CVE-2007-521703 out 2007
Stack-based buffer overflow in the ADM4 ActiveX control in adm4.dll in Altnet Download Manager 4.0.0.6, as used in (1) K
43RISCO
abrir
Metasploit500
CA BrightStor HSM Buffer Overflow
CVE-2007-508227 set 2007
Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r
50RISCO
abrir
Metasploit200
Xitami 2.5c2 Web Server If-Modified-Since Overflow
CVE-2007-506724 set 2007
Multiple buffer overflows in iMatix Xitami Web Server 2.5c2 allow remote attackers to execute arbitrary code via a long
60RISCO
abrir
anteriorpágina 96 / 117próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.