Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

78.950exploits catalogados
36.203CVEs con explotación pública
24.695probados en laboratorio
19.066 exploits
Exploit-DBVexDay Proof
Super Cms Blog Pro 1.0 - SQL Injection
CVE-2018-17391webappsphp25 sep 2018
SQL Injection exists in authors_post.php in Super Cms Blog Pro 1.0 via the author parameter.
23RIESGO
abrir
Exploit-DBVexDay Proof
WebKit - 'WebCore::AXObjectCache::handleMenuItemSelected' Use-After-Free
CVE-2018-4312dosmultiple25 sep 2018
A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS
23RIESGO
abrir
Exploit-DBVexDay Proof
WebRTC - FEC Out-of-Bounds Read
CVE-2018-16083dosmultiple21 sep 2018
An out of bounds read in forward error correction code in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote
23RIESGO
abrir
Exploit-DBVexDay Proof
WebRTC - VP9 Processing Use-After-Free
CVE-2018-16071dosmultiple21 sep 2018
A use after free in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'CiSetFileCache' WDAC Security Feature Bypass TOCTOU
CVE-2018-8449doswindows19 sep 2018
A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security F
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - Double Dereference in NtEnumerateKey Elevation of Privilege
CVE-2018-8410doswindows19 sep 2018
An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Edge Chakra JIT - 'localeCompare' Type Confusion
CVE-2018-8355doswindows18 sep 2018
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow
35RIESGO
abrir
Exploit-DBVexDay Proof
Solaris - libnspr NSPR_LOG_FILE Privilege Escalation (Metasploit)
CVE-2006-4842localsolaris18 sep 2018
The Netscape Portable Runtime (NSPR) API 4.6.1 and 4.6.2, as used in Sun Solaris 10, trusts user-specified environment v
38RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Edge Chakra - 'PathTypeHandlerBase::SetAttributesHelper' Type Confusion
CVE-2018-8384doswindows18 sep 2018
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi
35RIESGO
abrir
Exploit-DBVexDay Proof
Joomla! Component JCK Editor 6.4.4 - 'parent' SQL Injection
CVE-2018-17254webappsphp17 sep 2018
The JCK Editor component 6.4.4 for Joomla! allows SQL Injection via the jtreelink/dialogs/links.php parent parameter.
60RIESGO
abrir
Exploit-DBVexDay Proof
IBM Identity Governance and Intelligence 5.2.3.2 / 5.2.4 - SQL Injection
CVE-2018-1756HIGHwebappsphp12 sep 2018
IBM Security Identity Governance and Intelligence 5.2.3.2 and 5.2.4 is vulnerable to SQL injection. A remote attacker co
46RIESGO
abrir
Exploit-DBVexDay Proof
Android - 'zygote->init;' Chain from USB Privilege Escalation
CVE-2018-9488localandroid11 sep 2018
In the SELinux permissions of crash_dump.te, there is a permissions bypass due to a missing restriction. This could lead
23RIESGO
abrir
Exploit-DBVexDay Proof
Apache Struts 2 - Namespace Redirect OGNL Injection (Metasploit)
CVE-2018-11776HIGHbajo ataqueremotemultiple10 sep 2018
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Execution when alwaysSelectFullN
100RIESGO
abrir
Exploit-DBVexDay Proof
Ghostscript - Failed Restore Command Execution (Metasploit)
CVE-2018-16509locallinux10 sep 2018
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handlin
60RIESGO
abrir
Exploit-DBVexDay Proof
Jorani Leave Management 0.6.5 - (Authenticated) 'startdate' SQL Injection
CVE-2018-15918webappsphp06 sep 2018
An issue was discovered in Jorani 0.6.5. SQL Injection (error-based) allows a user of the application without permission
23RIESGO
abrir
Exploit-DBVexDay Proof
Network Manager VPNC 1.2.6 - 'Username' Local Privilege Escalation (Metasploit)
CVE-2018-10900HIGHlocallinux31 ago 2018
Network Manager VPNC plugin (aka networkmanager-vpnc) before version 1.2.6 is vulnerable to a privilege escalation attac
56RIESGO
abrir
Exploit-DBVexDay Proof
Cybrotech CyBroHttpServer 1.0.3 - Cross-Site Scripting
CVE-2018-16134webappswindows_x86-6430 ago 2018
Cybrotech CyBroHttpServer 1.0.3 allows XSS via a URI.
23RIESGO
abrir
Exploit-DBVexDay Proof
Cybrotech CyBroHttpServer 1.0.3 - Directory Traversal
CVE-2018-16133webappswindows_x86-6430 ago 2018
Cybrotech CyBroHttpServer 1.0.3 allows Directory Traversal via a ../ in the URI.
50RIESGO
abrir
Exploit-DBVexDay Proof
Argus Surveillance DVR 4.0.0.0 - Directory Traversal
CVE-2018-15745webappswindows_x8629 ago 2018
Argus Surveillance DVR 4.0.0.0 devices allow Unauthenticated Directory Traversal, leading to File Disclosure via a ..%2F
60RIESGO
abrir
Exploit-DBVexDay Proof
phpMyAdmin 4.7.x - Cross-Site Request Forgery
CVE-2017-1000499webappsphp29 ago 2018
phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - JScript RegExp.lastIndex Use-After-Free
CVE-2018-8353doswindows28 ago 2018
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet
35RIESGO
abrir
Exploit-DBVexDay Proof
Electron WebPreferences - Remote Code Execution
CVE-2018-15685remotemultiple27 ago 2018
GitHub Electron 1.7.15, 1.8.7, 2.0.7, and 3.0.0-beta.6, in certain scenarios involving IFRAME elements and "nativeWindow
28RIESGO
abrir
Exploit-DBVexDay Proof
Foxit PDF Reader 9.0.1.1049 - Pointer Overwrite Use-After-Free (Metasploit)
CVE-2018-9958localwindows27 ago 2018
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1
50RIESGO
abrir
Exploit-DBVexDay Proof
Responsive FileManager < 9.13.4 - Directory Traversal
CVE-2018-15536webappsphp27 ago 2018
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in arc
23RIESGO
abrir
Exploit-DBVexDay Proof
Adobe Flash - AVC Processing Out-of-Bounds Read
CVE-2018-12827doslinux27 ago 2018
Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead t
35RIESGO
abrir
Exploit-DBVexDay Proof
Responsive FileManager < 9.13.4 - Directory Traversal
CVE-2018-15535webappsphp27 ago 2018
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname
50RIESGO
abrir
Exploit-DBVexDay Proof
Foxit PDF Reader 9.0.1.1049 - Pointer Overwrite Use-After-Free (Metasploit)
CVE-2018-9948localwindows27 ago 2018
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader
50RIESGO
abrir
Exploit-DBVexDay Proof
WordPress Plugin Plainview Activity Monitor 20161228 - (Authenticated) Command Injection
CVE-2018-15877webappsphp27 ago 2018
The Plainview Activity Monitor plugin before 20180826 for WordPress is vulnerable to OS command injection via shell meta
60RIESGO
abrir
Exploit-DBVexDay Proof
HP Jetdirect - Path Traversal Arbitrary Code Execution (Metasploit)
CVE-2017-2741remoteunix27 ago 2018
A potential security vulnerability has been identified with HP PageWide Printers, HP OfficeJet Pro Printers, with firmwa
60RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 10 - Diagnostics Hub Standard Collector Service Privilege Escalation
CVE-2018-0952localwindows22 ago 2018
An Elevation of Privilege vulnerability exists when Diagnostics Hub Standard Collector allows file creation in arbitrary
23RIESGO
abrir

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.