Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
79.305exploits catalogados
36.465CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.466Referência 23.051GitHub PoC 15.051VulnCheck XDB 8883Nuclei 4361Metasploit 3493✓ solo verificadosrecientespopularesriesgo
19.066 exploits
Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control call-back-url Buffer Overflow (Metasploit)
Stack-based buffer overflow in Novell iPrint Client before 5.44 allows remote attackers to execute arbitrary code via a
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - SMB Relay Code Execution (MS08-068) (Metasploit)
Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control ExecuteRequest debug Buffer Overflow (Metasploit)
The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun Java - Web Start Plugin Command Line Argument Injection (Metasploit)
Unspecified vulnerability in the Java Deployment Toolkit component in Oracle Java SE and Java for Business JDK and JRE 6
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Excel - WOPT Record Parsing Heap Memory Corruption
Unspecified vulnerability in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Excel - WOPT Record Parsing Heap Memory Corruption
Buffer overflow in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
wpQuiz 2.7 - Authentication Bypass
Multiple SQL injection vulnerabilities in wpQuiz 2.7 allow remote attackers to execute arbitrary SQL commands via the (1
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Novell iPrint Client - ActiveX Control ExecuteRequest Buffer Overflow (Metasploit)
Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple Safari - Archive Metadata Command Execution (Metasploit)
The "Open 'safe' files after downloading" option in Safari on Apple Mac OS X allows remote user-assisted attackers to ex
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
OpenX - 'banner-edit.php' Arbitrary File Upload / PHP Code Execution (Metasploit)
Unrestricted file upload vulnerability in banner-edit.php in OpenX adserver 2.8.1 and earlier allows remote authenticate
43RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple iPhone MobileSafari LibTIFF - 'browser' Remote Buffer Overflow (Metasploit) (1)
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and othe
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Unreal Tournament 2004 (Windows) - 'secure' Remote Overflow (Metasploit)
The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier,
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS - ISAPI RSA WebAgent Redirect Overflow (Metasploit)
Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/Vista/2003 - Metafile Escape() SetAbortProc Code Execution (MS06-001) (Metasploit)
The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbit
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
IBM Lotus Domino Web Access Upload Module - Remote Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, in
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Apple QTJava - 'toQTPointer()' Arbitrary Memory Access (Metasploit)
Apple QuickTime Java extensions (QTJava.dll), as used in Safari and other browsers, and when Java is enabled, allows rem
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Sun Java - JRE AWT setDiffICM Buffer Overflow (Metasploit)
Stack-based buffer overflow in the setDiffICM function in the Abstract Window Toolkit (AWT) in Java Runtime Environment
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
ISS - 'PAM.dll' ICQ Parser Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, a
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Racer 0.5.3 Beta 5 - Remote Buffer Overflow (Metasploit)
Multiple buffer overflows in the (1) client and (2) server in Racer 0.5.3 beta 5 allow remote attackers to execute arbit
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
TikiWiki tiki-graph_formula - PHP Remote Code Execution (Metasploit)
tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f ar
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
LightNEasy CMS 3.2.1 - Blind SQL Injection
SQL injection vulnerability in common.php in LightNEasy 3.2.1 allows remote attackers to execute arbitrary SQL commands
23RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Java 6.19 CMM readMabCurveData - Remote Stack Overflow
Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0, Update, and
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Help Center - Cross-Site Scripting / Command Execution (MS10-042) (Metasploit)
The MPC::HexToNum function in helpctr.exe in Microsoft Windows Help and Support Center in Windows XP and Windows Server
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Madwifi - SIOCGIWSCAN Buffer Overflow (Metasploit)
Stack-based buffer overflow in net80211/ieee80211_wireless.c in MadWifi before 0.9.2.1 allows remote attackers to execut
28RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Mozilla Suite/Firefox - Navigator Object Code Execution (Metasploit)
Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code by chang
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Computer Associates License Client - GETCONFIG Overflow (Metasploit)
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execu
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
PeerCast 0.1216 (Windows x86) - URL Handling Buffer Overflow (Metasploit)
Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow rem
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Macrovision Installshield Update Service - ActiveX Unsafe Method (Metasploit)
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXn
50RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
RhinoSoft Serv-U FTPd Server - MDTM Overflow (Metasploit)
Buffer overflow in Serv-U ftp before 5.0.0.4 allows remote authenticated users to execute arbitrary code via a long time
60RIESGO
abrir ↗Exploit-DB✓ VexDay Proof
Adobe - FlateDecode Stream Predictor 02 Integer Overflow (Metasploit) (1)
Heap-based buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows rem
100RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.