Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

71.836exploits catalogados
32.133CVEs com exploração pública
1.932testados em laboratório
8.156 exploits
VulnCheck XDB
infoleak
CVE-2024-24919HIGHsob ataqueransomware21 fev 2025
Information disclosure
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2025-24016CRITICALsob ataque20 fev 2025
Remote code execution in Wazuh server
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-2961HIGH20 fev 2025
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4
78RISCO
abrir
VulnCheck XDB
client-side
CVE-2025-0411HIGHsob ataque19 fev 2025
7-Zip Mark-of-the-Web Bypass Vulnerability
83RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-0108HIGHsob ataque19 fev 2025
PAN-OS: Authentication Bypass in the Management Web Interface
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-0108HIGHsob ataque19 fev 2025
PAN-OS: Authentication Bypass in the Management Web Interface
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-0108HIGHsob ataque19 fev 2025
PAN-OS: Authentication Bypass in the Management Web Interface
100RISCO
abrir
VulnCheck XDB
denial-of-service
CVE-2023-44487HIGHsob ataque19 fev 2025
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many
93RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-0108HIGHsob ataque18 fev 2025
PAN-OS: Authentication Bypass in the Management Web Interface
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2024-13159CRITICALsob ataque18 fev 2025
Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Up
100RISCO
abrir
VulnCheck XDB
local
CVE-2023-4911HIGHsob ataque18 fev 2025
Glibc: buffer overflow in ld.so leading to privilege escalation
100RISCO
abrir
VulnCheck XDB
local
CVE-2021-3560HIGHsob ataque18 fev 2025
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
91RISCO
abrir
VulnCheck XDB
initial-access
CVE-2023-7028CRITICALsob ataque17 fev 2025
Weak Password Recovery Mechanism for Forgotten Password in GitLab
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-10924CRITICAL17 fev 2025
Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 - 9.1.1.1 - Authentication Bypass
85RISCO
abrir
VulnCheck XDB
remote-with-credentials
CVE-2025-24016CRITICALsob ataque16 fev 2025
Remote code execution in Wazuh server
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2019-1881816 fev 2025
strapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and packages/s
60RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-4577CRITICALsob ataqueransomware14 fev 2025
Argument Injection in PHP-CGI
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-4577CRITICALsob ataqueransomware14 fev 2025
Argument Injection in PHP-CGI
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-10924CRITICAL14 fev 2025
Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 - 9.1.1.1 - Authentication Bypass
85RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-0108HIGHsob ataque14 fev 2025
PAN-OS: Authentication Bypass in the Management Web Interface
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-10914CRITICAL14 fev 2025
D-Link DNS-320/DNS-320LW/DNS-325/DNS-340L account_mgr.cgi cgi_user_add os command injection
85RISCO
abrir
VulnCheck XDB
initial-access
CVE-2025-0108HIGHsob ataque13 fev 2025
PAN-OS: Authentication Bypass in the Management Web Interface
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2025-24016CRITICALsob ataque13 fev 2025
Remote code execution in Wazuh server
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-53677CRITICAL13 fev 2025
Apache Struts: Mixing setters for uploaded files and normal fields can allow bypass file upload checks
70RISCO
abrir
VulnCheck XDB
local
CVE-2021-21551HIGHsob ataque13 fev 2025
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privile
98RISCO
abrir
VulnCheck XDB
client-side
CVE-2024-42009CRITICALsob ataque13 fev 2025
A Cross-Site Scripting vulnerability in Roundcube through 1.5.7 and 1.6.x through 1.6.7 allows a remote attacker to stea
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2021-43798HIGHsob ataque12 fev 2025
Grafana path traversal
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2022-26134CRITICALsob ataqueransomware12 fev 2025
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2019-16278CRITICALsob ataque12 fev 2025
Directory Traversal in the function http_verify in nostromo nhttpd through 1.9.6 allows an attacker to achieve remote co
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-2961HIGH12 fev 2025
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4
78RISCO
abrir
anteriorpágina 97 / 272próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.