Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

76.313exploits catalogados
34.834CVEs con explotación pública
24.695probados en laboratorio
13.885 exploits
GitHub PoC
Greetdawn/CVE-2022-0847-DirtyPipe-
CVE-2022-0847HIGHbajo ataque11 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC4
仅仅是poc,并不是exp
CVE-2022-24990CRITICALbajo ataqueransomware10 mar 2022
TerraMaster NAS 4.2.29 and earlier allows remote attackers to discover the administrative password by sending "User-Agen
100RIESGO
abrir
GitHub PoC
PaoPaoLong-lab/Spring-CVE-2022-22947-
CVE-2022-22947CRITICALbajo ataque10 mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RIESGO
abrir
GitHub PoC
CVE-2019-18818/19606 Strapi RCE
CVE-2019-1881810 mar 2022
strapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and packages/s
60RIESGO
abrir
GitHub PoC
osungjinwoo/CVE-2022-0847-Dirty-Pipe
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
edsonjt81/CVE-2022-0847-Linux
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC25
CVE-2022-0847 POC and Docker and Analysis write up
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
babyshen/CVE-2019-13272
CVE-2019-13272HIGHbajo ataque10 mar 2022
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a proce
98RIESGO
abrir
GitHub PoC
CVE-2022-0847-DirtyPipe-Exploit
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
A root exploit for CVE-2022-0847 (Dirty Pipe)
CVE-2022-0847HIGHbajo ataque10 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC5
CVE-2022-22947 Exploit script
CVE-2022-22947CRITICALbajo ataque10 mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RIESGO
abrir
GitHub PoC
Dirty Pipe (CVE-2022-0847) PoC that hijacks a SUID binary to spawn. a root shell. (and attempts to restore the damaged binary as well)
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC6
Mustafa1986/CVE-2022-0847-DirtyPipe-Exploit
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC2
A “Dirty Pipe” vulnerability with CVE-2022-0847 and a CVSS score of 7.8 has been identified, affecting Linux Kernel 5.8 and higher. The vulnerability allows attackers to overwrite data in read-only files. Threat actors can exploit this vulnerability to privilege themselves with code injection.
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
Greetdawn/CVE-2022-0847-DirtyPipe
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC1
ThinkAdmin CVE-2020-25540 POC
CVE-2020-2554009 mar 2022
ThinkAdmin v6 is affected by a directory traversal vulnerability. An unauthorized attacker can read arbitrarily file on
60RIESGO
abrir
GitHub PoC91
CVE-2022-0847
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC3
Dirty Pipe POC
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
pentestblogin/pentestblog-CVE-2022-0847
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
AyoubNajim/cve-2022-0847dirtypipe-exploit
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC77
Container Excape PoC for CVE-2022-0847 "DirtyPipe"
CVE-2022-0847HIGHbajo ataque09 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
CVE-2022-0487
CVE-2022-0847HIGHbajo ataque08 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC70
Bash script to check for CVE-2022-0847 "Dirty Pipe"
CVE-2022-0847HIGHbajo ataque08 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC1
Docker exploit
CVE-2022-0847HIGHbajo ataque08 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
bohr777/cve-2022-0847dirtypipe-exploit
CVE-2022-0847HIGHbajo ataque08 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC1
lucksec/CVE-2022-0847
CVE-2022-0847HIGHbajo ataque08 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC7
CVE-2022-24112: Apache APISIX Remote Code Execution Vulnerability
CVE-2022-24112CRITICALbajo ataque08 mar 2022
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RIESGO
abrir
GitHub PoC58
Linux Kernel Local Privilege Escalation Vulnerability CVE-2022-0847.
CVE-2022-0847HIGHbajo ataque08 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
GitHub PoC
zhangweijie11/CVE-2020-17519
CVE-2020-17519CRITICALbajo ataque08 mar 2022
Apache Flink directory traversal attack: reading remote files through the REST API
100RIESGO
abrir
GitHub PoC1
ITMarcin2211/CVE-2022-0847-DirtyPipe-Exploit
CVE-2022-0847HIGHbajo ataque08 mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RIESGO
abrir
anteriorpágina 328 / 463siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.