Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

71.886exploits catalogados
32.153CVEs con explotación pública
1932probados en laboratorio
3462 exploits
Metasploit200
Hummingbird Connectivity 10 SP5 LPD Buffer Overflow
CVE-2005-181527 may 2005
Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of s
50RIESGO
abrir
Metasploit200
Berlios GPSD Format String Vulnerability
CVE-2004-138825 may 2005
Format string vulnerability in the gpsd_report function for BerliOS GPD daemon (gpsd, formerly pygps) 1.9.0 through 2.7
50RIESGO
abrir
Metasploit400
Novell ZENworks 6.5 Desktop/Server Management Overflow
CVE-2005-154319 may 2005
Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENwor
50RIESGO
abrir
Metasploit500
GlobalSCAPE Secure FTP Server Input Overflow
CVE-2005-141501 may 2005
Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a
50RIESGO
abrir
Metasploit500
NetTerm NetFTPD USER Buffer Overflow
CVE-2005-132326 abr 2005
Buffer overflow in NetFtpd for NetTerm 5.1.1 and earlier allows remote attackers to execute arbitrary code via a long US
50RIESGO
abrir
Metasploit400
MaxDB WebDBM GET Buffer Overflow
CVE-2005-068426 abr 2005
Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary
50RIESGO
abrir
Metasploit500
MailEnable Authorization Header Buffer Overflow
CVE-2005-134824 abr 2005
Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote at
60RIESGO
abrir
Metasploit300
Oracle DB SQL Injection via SYS.DBMS_CDC_SUBSCRIBE.ACTIVATE_SUBSCRIPTION
CVE-2005-483218 abr 2005
SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL
50RIESGO
abrir
Metasploit400
GLD (Greylisting Daemon) Postfix Buffer Overflow
CVE-2005-109912 abr 2005
Multiple buffer overflows in the HandleChild function in server.c in Greylisting daemon (GLD) 1.3 and 1.4, when GLD is l
50RIESGO
abrir
Metasploit400
MS05-017 Microsoft Message Queueing Service Path Overflow
CVE-2005-005912 abr 2005
Buffer overflow in the Message Queuing component of Microsoft Windows 2000 and Windows XP SP1 allows remote attackers to
60RIESGO
abrir
Metasploit200
CA BrightStor Universal Agent Overflow
CVE-2005-101811 abr 2005
Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticate
50RIESGO
abrir
Metasploit200
BakBone NetVault Remote Heap Overflow
CVE-2005-100901 abr 2005
Multiple buffer overflows in BakBone NetVault 6.x and 7.x allow (1) remote attackers to execute arbitrary code via a mod
50RIESGO
abrir
Metasploit200
GoodTech Telnet Server Buffer Overflow
CVE-2005-076815 mar 2005
Buffer overflow in the administration web server for GoodTech Telnet Server 4.0 and 5.0, and possibly all versions befor
50RIESGO
abrir
Metasploit200
SentinelLM UDP Buffer Overflow
CVE-2005-035307 mar 2005
Buffer overflow in the Sentinel LM (Lservnt) service in the Sentinel License Manager 7.2.0.2 allows remote attackers to
60RIESGO
abrir
Metasploit300
Computer Associates License Server GETCONFIG Overflow
CVE-2005-058102 mar 2005
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RIESGO
abrir
Metasploit200
Computer Associates License Client GETCONFIG Overflow
CVE-2005-058102 mar 2005
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RIESGO
abrir
Metasploit200
CA BrightStor ARCserve License Service GCR NETWORK Buffer Overflow
CVE-2005-058102 mar 2005
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RIESGO
abrir
Metasploit300
RealNetworks RealPlayer SMIL Buffer Overflow
CVE-2005-045501 mar 2005
Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlaye
50RIESGO
abrir
Metasploit600
vBulletin misc.php Template Name Arbitrary Code Execution
CVE-2005-051125 feb 2005
misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers
50RIESGO
abrir
Metasploit400
Arkeia Backup Client Type 77 Overflow (Win32)
CVE-2005-049118 feb 2005
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RIESGO
abrir
Metasploit200
Arkeia Backup Client Type 77 Overflow (Mac OS X)
CVE-2005-049118 feb 2005
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l
50RIESGO
abrir
Metasploit200
TrackerCam PHP Argument Buffer Overflow
CVE-2005-047818 feb 2005
Multiple buffer overflows in TrackerCam 5.12 and earlier allow remote attackers to cause a denial of service and possibl
50RIESGO
abrir
Metasploit200
CA BrightStor Discovery Service TCP Overflow
CVE-2005-253514 feb 2005
Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execu
60RIESGO
abrir
Metasploit400
URSoft W32Dasm Disassembler Function Buffer Overflow
CVE-2005-030824 ene 2005
Buffer overflow in the wsprintf function in W32Dasm 8.93 and earlier allows remote attackers to execute arbitrary code v
50RIESGO
abrir
Metasploit600
Cacti graph_view.php Remote Command Execution
CVE-2005-10004HIGH15 ene 2005
Cacti graph_view.php RCE via graph_start Parameter Injection
36RIESGO
abrir
Metasploit600
AWStats configdir Remote Command Execution
CVE-2005-011615 ene 2005
AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacte
60RIESGO
abrir
Metasploit300
Apple ITunes 4.7 Playlist Buffer Overflow
CVE-2005-004311 ene 2005
Buffer overflow in Apple iTunes 4.7 allows remote attackers to execute arbitrary code via a long URL in (1) .m3u or (2)
50RIESGO
abrir
Metasploit500
Blue Coat WinProxy Host Header Overflow
CVE-2005-408505 ene 2005
Buffer overflow in BlueCoat (a) WinProxy before 6.1a and (b) the web console access functionality in ProxyAV before 2.4.
50RIESGO
abrir
Metasploit200
3Com 3CDaemon 2.0 FTP Username Overflow
CVE-2005-027704 ene 2005
Buffer overflow in the FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to cause a denial of service
50RIESGO
abrir
Metasploit300
Serv-U FTP Server Buffer Overflow
CVE-2004-211131 dic 2004
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute
60RIESGO
abrir
anteriorpágina 102 / 116siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.