Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
79.039exploits catalogados
36.284CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.460Referência 22.909GitHub PoC 14.994VulnCheck XDB 8829Nuclei 4358Metasploit 3489✓ solo verificadosrecientespopularesriesgo
3477 exploits
Metasploit300
DLL Side Loading Vulnerability in VMware Host Guest Client Redirector
Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 t
43RIESGO
abrir ↗Metasploit600
NUUO NVRmini 2 / NETGEAR ReadyNAS Surveillance Unauthenticated Remote Code Execution
__debugging_center_utils___.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.7.5 through 3.0.0, and NETGEAR Rea
60RIESGO
abrir ↗Metasploit300
NUUO NVRmini 2 / NETGEAR ReadyNAS Surveillance Default Configuration Load and Administrator Password Reset
cgi-bin/cgi_system in NUUO NVRmini 2 1.7.5 through 2.x, NUUO NVRsolo 1.7.5 through 2.x, and NETGEAR ReadyNAS Surveillanc
50RIESGO
abrir ↗Metasploit600
NUUO NVRmini 2 / Crystal / NETGEAR ReadyNAS Surveillance Authenticated Remote Code Execution
handle_daylightsaving.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.0.0 through 3.0.0, NUUO Crystal 2.2.1 th
60RIESGO
abrir ↗Metasploit600
SonicWall Global Management System XMLRPC set_time_zone Unauth RCE
The ViewPoint web application in Dell SonicWALL Global Management System (GMS) before 7.2 SP2, SonicWALL Analyzer before
23RIESGO
abrir ↗Metasploit0
Oracle Weblogic Server Deserialization RCE - MarshalledObject
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.3.0, and 12
40RIESGO
abrir ↗Metasploit600
Tiki Wiki Unauthenticated File Upload Vulnerability
Tiki Wiki <= 15.1 ELFinder Unauthenticated File Upload RCE
63RIESGO
abrir ↗Metasploit500
NetBSD mail.local Privilege Escalation
mail.local in NetBSD versions 6.0 through 6.0.6, 6.1 through 6.1.5, and 7.0 allows local users to change ownership of or
38RIESGO
abrir ↗Metasploit300
WebNMS Framework Server Credential Disclosure
Directory traversal vulnerability in the file download functionality in ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows rem
60RIESGO
abrir ↗Metasploit600
WebNMS Framework Server Arbitrary File Upload
Directory traversal vulnerability in the file upload functionality in ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows remot
60RIESGO
abrir ↗Metasploit300
WebNMS Framework Server Arbitrary Text File Download
Directory traversal vulnerability in the file download functionality in ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows rem
60RIESGO
abrir ↗Metasploit300
WebNMS Framework Server Credential Disclosure
ZOHO WebNMS Framework 5.2 and 5.2 SP1 use a weak obfuscation algorithm to store passwords, which allows context-dependen
50RIESGO
abrir ↗Metasploit600
Panda Security PSEvents Privilege Escalation
Panda Security PSEvents.exe Insecure DLL Loading Privilege Escalation
36RIESGO
abrir ↗Metasploit600
Riverbed SteelCentral NetProfiler/NetExpress Remote Code Execution
Riverbed SteelCentral NetProfiler / NetExpress 10.8.7 RCE
63RIESGO
abrir ↗Metasploit600
phpMyAdmin Authenticated Remote Code Execution
phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not properly choose delimiters to
60RIESGO
abrir ↗Metasploit600
SugarCRM REST Unserialize PHP Code Execution
SugarCRM PHP Deserialization RCE
63RIESGO
abrir ↗Metasploit300
NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and
30RIESGO
abrir ↗Metasploit300
NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and
40RIESGO
abrir ↗Metasploit600
Apache Shiro v1.2.4 Cookie RememberME Deserial RCE
Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attack
100RIESGO
abrir ↗Metasploit600
Tiki-Wiki CMS Calendar Command Execution
Tiki Wiki CMS Authenticated Command Injection in Calendar Module
36RIESGO
abrir ↗Metasploit400
Linux Kernel 4.6.3 Netfilter Privilege Escalation
The IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel before 4.6 allows local
18RIESGO
abrir ↗Metasploit400
Linux Kernel 4.6.3 Netfilter Privilege Escalation
The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux
38RIESGO
abrir ↗Metasploit600
Apache Struts REST Plugin With Dynamic Method Invocation Remote Code Execution
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, a
60RIESGO
abrir ↗Metasploit600
ActiveMQ web shell upload
The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitr
100RIESGO
abrir ↗Metasploit600
WordPress WP Mobile Detector 3.5 Shell Upload
WP Mobile Detector <= 3.5 - Arbitrary File Upload
48RIESGO
abrir ↗Metasploit600
Magento 2.0.6 Unserialize Remote Code Execution
Magento CE and EE before 2.0.6 allows remote attackers to conduct PHP objection injection attacks and execute arbitrary
60RIESGO
abrir ↗Metasploit300
Internet Explorer 11 VBScript Engine Memory Corruption
The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other
100RIESGO
abrir ↗Metasploit600
WordPress Ninja Forms Unauthenticated File Upload
The Ninja Forms plugin before 2.9.42.1 for WordPress allows remote attackers to conduct PHP object injection attacks via
50RIESGO
abrir ↗Metasploit400
Linux BPF doubleput UAF Privilege Escalation
The replace_map_fd_with_map_ptr function in kernel/bpf/verifier.c in the Linux kernel before 4.5.5 does not properly mai
43RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.