Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

77.058exploits catalogados
35.300CVEs con explotación pública
24.695probados en laboratorio
14.096 exploits
GitHub PoC14
cve-2017-5638 Vulnerable site sample
CVE-2017-5638CRITICALbajo ataqueransomware15 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC1
CVE-2014-0050 Vulnerable site sample
CVE-2014-005015 mar 2017
MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products,
60RIESGO
abrir
GitHub PoC83
MS16-032(CVE-2016-0099) for SERVICE ONLY
CVE-2016-0099HIGHbajo ataqueransomware15 mar 2017
The Secondary Logon Service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
98RIESGO
abrir
GitHub PoC3
CVE-2016-4657 for NintendoSwitch rwx
CVE-2016-4657HIGHbajo ataque13 mar 2017
WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory
98RIESGO
abrir
GitHub PoC1
Example PHP Exploiter for CVE-2017-5638
CVE-2017-5638CRITICALbajo ataqueransomware13 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC442
An exploit for Apache Struts CVE-2017-5638
CVE-2017-5638CRITICALbajo ataqueransomware12 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC16
These are just some script which you can use to detect and exploit the Apache Struts Vulnerability (CVE-2017-5638)
CVE-2017-5638CRITICALbajo ataqueransomware12 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC2
A php based exploiter for CVE-2017-5638.
CVE-2017-5638CRITICALbajo ataqueransomware12 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC1
This is Valve for Tomcat7 to block Struts 2 Remote Code Execution vulnerability (CVE-2017-5638)
CVE-2017-5638CRITICALbajo ataqueransomware11 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC
CVE: 2017-5638 in different formats
CVE-2017-5638CRITICALbajo ataqueransomware11 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC8
detection for Apache Struts recon and compromise
CVE-2017-5638CRITICALbajo ataqueransomware11 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC2
Tweaking original PoC (https://github.com/rapid7/metasploit-framework/issues/8064) to work on self-signed certificates
CVE-2017-5638CRITICALbajo ataqueransomware11 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC
test struts2 vulnerability CVE-2017-5638 in Mac OS X
CVE-2017-5638CRITICALbajo ataqueransomware11 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC
jrrombaldo/CVE-2017-5638
CVE-2017-5638CRITICALbajo ataqueransomware11 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC35
Demo Application and Exploit
CVE-2017-5638CRITICALbajo ataqueransomware10 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC
Telegram Bot to manage botnets created with struts vulnerability(CVE-2017-5638)
CVE-2017-5638CRITICALbajo ataqueransomware10 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC21
Example PoC Code for CVE-2017-5638 | Apache Struts Exploit
CVE-2017-5638CRITICALbajo ataqueransomware10 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC25
S2-045 漏洞 POC-TOOLS CVE-2017-5638
CVE-2017-5638CRITICALbajo ataqueransomware09 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC
bongbongco/cve-2017-5638
CVE-2017-5638CRITICALbajo ataqueransomware08 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC23
Struts2 S2-045(CVE-2017-5638)Vulnerability environment - http://www.mottoin.com/97954.html
CVE-2017-5638CRITICALbajo ataqueransomware07 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC61
Struts2 S2-045(CVE-2017-5638)Exp with GUI
CVE-2017-5638CRITICALbajo ataqueransomware07 mar 2017
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RIESGO
abrir
GitHub PoC81
An exploit for CVE-2016-7255 on Windows 7/8/8.1/10(pre-anniversary) 64 bit
CVE-2016-7255HIGHbajo ataque02 mar 2017
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,
93RIESGO
abrir
GitHub PoC1
A brief report on CVE-2016-4117 (A vulnerability in Adobe Flash)
CVE-2016-4117HIGHbajo ataque23 feb 2017
Adobe Flash Player 21.0.0.226 and earlier allows remote attackers to execute arbitrary code via unspecified vectors, as
100RIESGO
abrir
GitHub PoC
不完美的利用代码,只能用于学习:)
CVE-2016-466921 feb 2017
An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS b
38RIESGO
abrir
GitHub PoC
Proof of concept exploit for CVE-2012-1723
CVE-2012-1723CRITICALbajo ataqueransomware20 feb 2017
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 up
100RIESGO
abrir
GitHub PoC1
CVE-2017-2370
CVE-2017-237013 feb 2017
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. macOS before 10.12.3 is affected. tvOS
28RIESGO
abrir
GitHub PoC
CVE-2013-1775 Exploit written in Perl
CVE-2013-177511 feb 2017
sudo 1.6.0 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p6 allows local users or physically proximate attackers to bypas
38RIESGO
abrir
GitHub PoC30
This is a tool for exploiting Ticketbleed (CVE-2016-9244) vulnerability.
CVE-2016-924410 feb 2017
A BIG-IP virtual server configured with a Client SSL profile that has the non-default Session Tickets option enabled may
45RIESGO
abrir
GitHub PoC
Minion plugin for checking Ticketbleed (CVE-2016-9244)
CVE-2016-924410 feb 2017
A BIG-IP virtual server configured with a Client SSL profile that has the non-default Session Tickets option enabled may
45RIESGO
abrir
GitHub PoC1
CVE-2016-9079 exploit code as it appeared on https://lists.torproject.org/pipermail/tor-talk/2016-November/042639.html
CVE-2016-9079HIGHbajo ataque08 feb 2017
A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been dis
100RIESGO
abrir
anteriorpágina 458 / 470siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.