Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

79.386exploits catalogados
36.533CVEs con explotación pública
24.695probados en laboratorio
5629 exploits
ReferênciaVexDay Proof
UPublisher 1.0 - 'viewarticle.asp' SQL Injection
CVE-2006-5888webappsasp
SQL injection vulnerability in viewarticle.asp in Superfreaker Studios UPublisher 1.0 allows remote attackers to execute
23RIESGO
abrir
ReferênciaVexDay Proof
Evince Document Viewer - 'DocumentMedia' Remote Buffer Overflow
CVE-2006-5864remotelinux
Stack-based buffer overflow in the ps_gettext function in ps.c for GNU gv 3.6.2, and possibly earlier versions, allows u
28RIESGO
abrir
ReferênciaVexDay Proof
PHPManta 1.0.2 - 'view-sourcecode.php' Local File Inclusion
CVE-2006-5866webappsphp
Directory traversal vulnerability in Mdoc/view-sourcecode.php for phpManta 1.0.2 and earlier allows remote attackers to
23RIESGO
abrir
ReferênciaVexDay Proof
NuRems 1.0 - 'propertysdetails.asp' SQL Injection
CVE-2006-5886webappsasp
SQL injection vulnerability in propertysdetails.asp in Dynamic Dataworx NuRealestate (NuRems) 1.0 and earlier allows rem
23RIESGO
abrir
ReferênciaVexDay Proof
BrewBlogger 1.3.1 - 'printLog.php' SQL Injection
CVE-2006-5889webappsphp
SQL injection vulnerability in printLog.php in BrewBlogger (BB) 1.3.1 allows remote attackers to execute arbitrary SQL c
23RIESGO
abrir
ReferênciaVexDay Proof
AspPired2Poll 1.0 - 'MoreInfo.asp' SQL Injection
CVE-2006-5892webappsasp
SQL injection vulnerability in MoreInfo.asp in The Net Guys ASPired2Poll 1.0 and earlier allows remote attackers to exec
23RIESGO
abrir
ReferênciaVexDay Proof
StoryStream 4.0 - 'baseDir' Remote File Inclusion
CVE-2006-5893webappsphp
Multiple PHP remote file inclusion vulnerabilities in iWonder Designs Storystream 0.4.0.0 allow remote attackers to exec
23RIESGO
abrir
ReferênciaVexDay Proof
Rama CMS 0.68 - Cookie: lang Local File Inclusion
CVE-2006-5894webappsphp
Directory traversal vulnerability in lang.php in Rama CMS 0.68 and earlier, when register_globals is enabled, allows rem
23RIESGO
abrir
ReferênciaVexDay Proof
EncapsCMS 0.3.6 - '/core/core.php' Remote File Inclusion
CVE-2006-5895webappsphp
PHP remote file inclusion vulnerability in core/core.php in EncapsCMS 0.3.6 allows remote attackers to execute arbitrary
23RIESGO
abrir
ReferênciaVexDay Proof
FipsCMS 4.5 - 'index.asp' SQL Injection
CVE-2006-6115webappsasp
SQL injection vulnerability in index.asp in fipsCMS 4.5 and earlier allows remote attackers to execute arbitrary SQL com
23RIESGO
abrir
ReferênciaVexDay Proof
fipsForum 2.6 - 'default2.asp' SQL Injection
CVE-2006-6116webappsasp
SQL injection vulnerability in default2.asp in fipsForum 2.6 and earlier allows remote attackers to execute arbitrary SQ
23RIESGO
abrir
ReferênciaVexDay Proof
SimpleBlog 2.3 - '/admin/edit.asp' SQL Injection
CVE-2006-6191webappsasp
SQL injection vulnerability in admin/edit.asp in 8pixel.net simpleblog 2.3 and earlier allows remote attackers to execut
23RIESGO
abrir
ReferênciaVexDay Proof
PEGames - 'index.php' Remote File Inclusion
CVE-2006-6213webappsphp
index.php in PEGames uses the extract function to overwrite critical variables, which allows remote attackers to conduct
23RIESGO
abrir
ReferênciaVexDay Proof
Wallpaper Complete Website 1.0.09 - SQL Injection
CVE-2006-6214webappsphp
SQL injection vulnerability in wallpaper.php in Wallpaper Website (Wallpaper Complete Website) 1.0.09 allows remote atta
23RIESGO
abrir
ReferênciaVexDay Proof
Hacks List phpBB Mod 1.21 - SQL Injection
CVE-2006-6216webappsphp
SQL injection vulnerability in admin_hacks_list.php in the Nivisec Hacks List 1.21 and earlier phpBB module allows remot
23RIESGO
abrir
ReferênciaVexDay Proof
Recipes Complete Website 1.1.14 - SQL Injection
CVE-2006-6220webappsphp
Multiple SQL injection vulnerabilities in Recipes Website (Recipes Complete Website) 1.1.14 allow remote attackers to ex
23RIESGO
abrir
ReferênciaVexDay Proof
S9Y Serendipity 1.0.3 - 'comment.php' Local File Inclusion
CVE-2006-6242webappsphp
Multiple directory traversal vulnerabilities in Serendipity 1.0.3 and earlier allow remote attackers to read or include
23RIESGO
abrir
ReferênciaVexDay Proof
CoolPlayer 2.17 - '.m3u' Local Stack Overflow
CVE-2006-6288localwindows
Multiple buffer overflows in Niek Albers CoolPlayer 216 and earlier allow remote attackers to execute arbitrary code via
23RIESGO
abrir
ReferênciaVexDay Proof
F-Prot AntiVirus 4.6.6 - CHM Heap Overflow (PoC)
CVE-2006-6293doslinux
Heap-based buffer overflow in FRISK Software F-Prot Antivirus before 4.6.7 allows user-assisted remote attackers to exec
28RIESGO
abrir
ReferênciaVexDay Proof
torrentflux 2.2 - Arbitrary File Create/ Execute/Delete
CVE-2006-6330webappsphp
index.php for TorrentFlux 2.2 allows remote registered users to execute arbitrary commands via shell metacharacters in t
23RIESGO
abrir
ReferênciaVexDay Proof
CM68 News 12.02.06 - 'addpth' Remote File Inclusion
CVE-2006-6462webappsphp
PHP remote file inclusion vulnerability in engine/oldnews.inc.php in CM68 News 12.02.06 allows remote attackers to execu
23RIESGO
abrir
ReferênciaVexDay Proof
HR Assist 1.05 - 'vdateUsr.asp' Remote Authentication Bypass
CVE-2006-6524webappsasp
SQL injection vulnerability in vdateUsr.asp in EzHRS HR Assist 1.05 and earlier allows remote attackers to execute arbit
23RIESGO
abrir
ReferênciaVexDay Proof
Gizzar 03162002 - 'index.php' Remote File Inclusion
CVE-2006-6526webappsphp
PHP remote file inclusion vulnerability in index.php in Gizzar 03162002 and earlier allows remote attackers to execute a
23RIESGO
abrir
ReferênciaVexDay Proof
Request For Travel 1.0 - 'product' SQL Injection
CVE-2006-6559webappsasp
SQL injection vulnerability in ProductDetails.asp in Lotfian Request For Travel 1.0 allows remote attackers to execute a
23RIESGO
abrir
ReferênciaVexDay Proof
ProFTPd 1.3.0/1.3.0a - 'mod_ctrls' 'support' Local Buffer Overflow (1)
CVE-2006-6563locallinux
Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in the mod_ctrls module in ProFTPD before 1
23RIESGO
abrir
ReferênciaVexDay Proof
Crob FTP Server 3.6.1 build 263 - 'LIST/NLST' Denial of Service
CVE-2006-6558doswindows
Crob FTP Server 3.6.1 b.263 allows remote attackers to cause a denial of service via a long series of "?A" sequences in
23RIESGO
abrir
ReferênciaVexDay Proof
FileZilla FTP Server 0.9.21 - 'LIST/NLST' Denial of Service
CVE-2006-6565doswindows
FileZilla Server before 0.9.22 allows remote attackers to cause a denial of service (crash) via a wildcard argument to t
60RIESGO
abrir
ReferênciaVexDay Proof
mxBB Module Profile CP 0.91c - Remote File Inclusion
CVE-2006-6566webappsphp
PHP remote file inclusion vulnerability in includes/profilcp_constants.php in the Profile Control Panel (CPanel) module
23RIESGO
abrir
ReferênciaVexDay Proof
mxBB Module kb_mods 2.0.2 - Remote File Inclusion
CVE-2006-6567webappsphp
PHP remote file inclusion vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB
23RIESGO
abrir
ReferênciaVexDay Proof
mxBB Module kb_mods 2.0.2 - Remote File Inclusion
CVE-2006-6568webappsphp
Directory traversal vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allow
23RIESGO
abrir
anteriorpágina 183 / 188siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.