Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
78.258exploits catalogados
36.019CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.458Referência 22.697GitHub PoC 14.455VulnCheck XDB 8811Nuclei 4349Metasploit 3488✓ solo verificadosrecientespopularesriesgo
22.657 exploits
Referência
CVE-2019-25701
Easy Video to iPod Converter 1.6.20 Local Buffer Overflow SEH
41RIESGO
abrir ↗Referência
CVE-2019-25691
Faleemi Desktop Software 1.8 Local Buffer Overflow SEH DEP Bypass
41RIESGO
abrir ↗Referência
CVE-2026-6126
zhayujie chatgpt-on-wechat CowAgent Administrative HTTP Endpoint missing authentication
33RIESGO
abrir ↗Referência✓ VexDay Proof
Chaussette 080706 - '_BASE' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Chaussette 080706 and earlier allow remote attackers to execute ar
28RIESGO
abrir ↗Referência
CVE-2010-4273
SQL injection vulnerability in imoveis.php in DescargarVista ACC IMoveis 1.1 allows remote attackers to execute arbitrar
23RIESGO
abrir ↗Referência
CVE-2010-4273
SQL injection vulnerability in imoveis.php in DescargarVista ACC IMoveis 1.1 allows remote attackers to execute arbitrar
23RIESGO
abrir ↗Referência
CVE-2026-77148
Comfast CF-N1-S Web Management mbox-config sub_44B50C stack-based overflow
48RIESGO
abrir ↗Referência
CVE-2016-4793
The clientIp function in CakePHP 3.2.4 and earlier allows remote attackers to spoof their IP via the CLIENT-IP HTTP head
23RIESGO
abrir ↗Referência
CVE-2026-14236
Contact Form 7 – PayPal & Stripe Add-on < 2.5 - Open Redirect
33RIESGO
abrir ↗Referência
CVE-2026-14235
WordPress Download Manager < 3.3.62 - Unauthorized Protected File Download via Reusable Download Key
41RIESGO
abrir ↗Referência
CVE-2026-7510
OWAP DefectDojo Benchmark/Engagement/Product/Survey authorization
33RIESGO
abrir ↗Referência
CVE-2026-7505
nextlevelbuilder GoClaw/GoClaw Lite RPC improper authorization
33RIESGO
abrir ↗Referência
CVE-2026-7503
code-projects for Plugin cstecgi.cgi setWiFiMultipleConfig buffer overflow
41RIESGO
abrir ↗Referência
CVE-2026-7502
LinkStackOrg LinkStack Management Endpoint UserController.php saveLink authorization
33RIESGO
abrir ↗Referência
CVE-2026-7501
LinkStackOrg LinkStack UserController.php editPage cross site scripting
33RIESGO
abrir ↗Referência
CVE-2022-50992
Weaver E-cology 9.5 Unauthenticated Arbitrary File Read via XmlRpcServlet
41RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.