Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

72.018exploits catalogados
32.219CVEs con explotación pública
1932probados en laboratorio
13.307 exploits
GitHub PoC
Exploit for CVE-2024-4040 – Authentication bypass in CrushFTP via CrushAuth cookie and AWS-style header spoofing. Stealthy Python PoC with secure token generation, SSL bypass, and improved output.
CVE-2024-4040CRITICALbajo ataque04 jul 2025
Unauthenticated arbitrary file read and remote code execution in CrushFTP
100RIESGO
abrir
GitHub PoC13
A easy sudo poc by cryingn.
CVE-2025-32462LOW03 jul 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo
28RIESGO
abrir
GitHub PoC1
CVE-2025-32462 Exploit
CVE-2025-32462LOW03 jul 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo
28RIESGO
abrir
GitHub PoC
CVE-2025-32462 exploit code
CVE-2025-32462LOW03 jul 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo
28RIESGO
abrir
GitHub PoC
CVE-2024-48061 Langflow vulnerable to remote code execution. Poc
CVE-2024-48061CRITICAL03 jul 2025
langflow <=1.0.18 is vulnerable to Remote Code Execution (RCE) as any component provided the code functionality and the
48RIESGO
abrir
GitHub PoC2
Sudo Local Privilege Escalation CVE-2025-32463 (Best For Cases Where the shell is not stable to spawn a new root shell)
CVE-2025-32463CRITICALbajo ataque03 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC25
PoC for CVE-2025-32463 - Sudo chroot Elevation of Privilege Vulnerability
CVE-2025-32463CRITICALbajo ataque03 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC1
san8383/CVE-2025-32463
CVE-2025-32463CRITICALbajo ataque03 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC
yaleman/cve-2025-24813-poc
CVE-2025-24813CRITICALbajo ataque03 jul 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RIESGO
abrir
GitHub PoC
0xAkarii/CVE-2025-32463
CVE-2025-32463CRITICALbajo ataque03 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC5
Multi-host, multi-port scanner and auditor for CVE-2025-6543-affected NetScaler devices. Supports SNMP and SSH enumeration with optional CSV reporting and exploit stubs.
CVE-2025-6543CRITICALbajo ataque03 jul 2025
Memory overflow vulnerability leading to unintended control flow and Denial of Service
78RIESGO
abrir
GitHub PoC7
This script checks for the presence of the **CVE-2025-20281** vulnerability in Cisco Identity Services Engine (ISE) and ISE-PIC, which allows **unauthenticated remote code execution (RCE)** as root due to insufficient input validation in a specific API.
CVE-2025-20281CRITICALbajo ataque03 jul 2025
Cisco ISE API Unauthenticated Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC
Mr.CIA's manual patching guide for CVE-2025-32463 (Sudo local privilege escalation) on Kali Linux and Ubuntu WSL.
CVE-2025-32463CRITICALbajo ataque03 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC
A Writeup for Sleirsgoevy's version of the Exploit Implementation of CVE-2018-4386 by Fire30 called Bad_Hoist
CVE-2018-438603 jul 2025
Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iO
23RIESGO
abrir
GitHub PoC11
RARLAB WinRAR Directory Traversal Remote Code Execution
CVE-2025-6218HIGHbajo ataque03 jul 2025
RARLAB WinRAR Directory Traversal Remote Code Execution Vulnerability
93RIESGO
abrir
GitHub PoC
MCP-Inspector-vulncheck is a Python script that checks if an MCP Inspector server is vulnerable to CVE-2025-49596. It tests whether the /sse endpoint responds to unauthenticated requests, indicating a potential security flaw. The script is simple to use and provides clear output on whether the target server is likely vulnerable or patched.
CVE-2025-49596CRITICAL03 jul 2025
MCP Inspector proxy server lacks authentication between the Inspector client and proxy
75RIESGO
abrir
GitHub PoC3
Exploit for Local Privilege Escalation in Sudo via Malicious nsswitch.conf with sudo -R. (CVE-2025-32463)
CVE-2025-32463CRITICALbajo ataque02 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC3
Wing FTP Server RCE via Lua Injection
CVE-2025-47812CRITICALbajo ataque02 jul 2025
In Wing FTP Server before 7.4.4. the user and admin web interfaces mishandle '\0' bytes, ultimately allowing injection o
100RIESGO
abrir
GitHub PoC466
Local Privilege Escalation to Root via Sudo chroot in Linux
CVE-2025-32463CRITICALbajo ataque02 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC1
CVE-2025-6934 POC
CVE-2025-6934CRITICAL02 jul 2025
Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation via 'on_regiser_user'
68RIESGO
abrir
GitHub PoC
Find out a modified Cacti public exploit!
CVE-2022-46169CRITICALbajo ataque02 jul 2025
Unauthenticated Command Injection
100RIESGO
abrir
GitHub PoC
neko205-mx/CVE-2025-32463_Exploit
CVE-2025-32463CRITICALbajo ataque02 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC
B1gN0Se/Tomcat-CVE-2025-31650
CVE-2025-31650HIGH02 jul 2025
Apache Tomcat: DoS via malformed HTTP/2 PRIORITY_UPDATE frame
53RIESGO
abrir
GitHub PoC
zhaduchanhzz/CVE-2025-32463_POC
CVE-2025-32463CRITICALbajo ataque02 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC
robbert1978/CVE-2025-32463_POC
CVE-2025-32463CRITICALbajo ataque02 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC11
This repository contains a Proof of Concept (PoC) exploit for the **CVE-2025-47175** vulnerability found in Microsoft PowerPoint. The vulnerability is a Use-After-Free (UAF) bug that allows an attacker to execute arbitrary code by tricking a user into opening a specially crafted PPTX file.
CVE-2025-47175HIGH02 jul 2025
Microsoft PowerPoint Remote Code Execution Vulnerability
41RIESGO
abrir
GitHub PoC
Python exploit for CVE-2021-41773 - Apache HTTP Server 2.4.49 Path Traversal vulnerability
CVE-2021-41773HIGHbajo ataqueransomware02 jul 2025
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RIESGO
abrir
GitHub PoC4
SysMancer/CVE-2025-32463
CVE-2025-32463CRITICALbajo ataque02 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RIESGO
abrir
GitHub PoC1
MAVRICK-1/cve-2024-23113-test-env
CVE-2024-23113CRITICALbajo ataque02 jul 2025
A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.
90RIESGO
abrir
GitHub PoC
DirtyPipe (CVE-2022-0847) exploit written in Rust
CVE-2022-0847HIGHbajo ataque01 jul 2025
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
anteriorpágina 139 / 444siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.