Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

71.836exploits catalogados
32.133CVEs con explotación pública
1932probados en laboratorio
3462 exploits
Metasploit300
Foxit Reader Authorization Bypass
CVE-2009-083609 mar 2009
Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmatio
30RIESGO
abrir
Metasploit400
eZip Wizard 3.0 Stack Buffer Overflow
CVE-2009-102809 mar 2009
Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .z
50RIESGO
abrir
Metasploit400
Foxit Reader 3.0 Open Execute Action Stack Based Buffer Overflow
CVE-2009-083709 mar 2009
Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote attackers to e
60RIESGO
abrir
Metasploit200
Belkin Bulldog Plus Web Service Buffer Overflow
CVE-2009-20009CRITICAL08 mar 2009
Belkin Bulldog Plus Web Service Buffer Overflow
63RIESGO
abrir
Metasploit600
Dogfood CRM spell.php Remote Command Execution
CVE-2009-20010CRITICAL03 mar 2009
Dogfood CRM spell.php RCE
63RIESGO
abrir
Metasploit300
POP Peeper v3.4 DATE Buffer Overflow
CVE-2009-102927 feb 2009
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RIESGO
abrir
Metasploit300
POP Peeper v3.4 UIDL Buffer Overflow
CVE-2009-102927 feb 2009
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a
50RIESGO
abrir
Metasploit600
ContentKeeper Web Remote Command Execution
CVE-2009-20011CRITICAL25 feb 2009
ContentKeeper Web Appliance < 125.10 RCE via mimencode
63RIESGO
abrir
Metasploit400
Adobe JBIG2Decode Memory Corruption
CVE-2009-065819 feb 2009
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RIESGO
abrir
Metasploit400
Adobe JBIG2Decode Heap Corruption
CVE-2009-065819 feb 2009
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RIESGO
abrir
Metasploit300
Typo3 sa-2009-002 File Disclosure
CVE-2009-081510 feb 2009
The jumpUrl mechanism in class.tslib_fe.php in TYPO3 3.3.x through 3.8.x, 4.0 before 4.0.12, 4.1 before 4.1.10, 4.2 befo
50RIESGO
abrir
Metasploit300
MS09-002 Microsoft Internet Explorer 7 CFunctionPointer Uninitialized Memory Corruption
CVE-2009-007510 feb 2009
Microsoft Internet Explorer 7 does not properly handle errors during attempted access to deleted objects, which allows r
60RIESGO
abrir
Metasploit500
FeedDemon Stack Buffer Overflow
CVE-2009-054609 feb 2009
Stack-based buffer overflow in NewsGator FeedDemon 2.7 and earlier allows user-assisted remote attackers to execute arbi
50RIESGO
abrir
Metasploit300
Orbit Downloader Connecting Log Creation Buffer Overflow
CVE-2009-018703 feb 2009
Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote
50RIESGO
abrir
Metasploit400
Free Download Manager Torrent Parsing Buffer Overflow
CVE-2009-018402 feb 2009
Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Bui
43RIESGO
abrir
Metasploit500
Free Download Manager Remote Control Server Buffer Overflow
CVE-2009-018302 feb 2009
Stack-based buffer overflow in Remote Control Server in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allo
50RIESGO
abrir
Metasploit300
Amaya Browser v11.0 'bdo' Tag Overflow
CVE-2009-032328 ene 2009
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary
50RIESGO
abrir
Metasploit300
HP OpenView Network Node Manager Toolbar.exe CGI Cookie Handling Buffer Overflow
CVE-2009-092021 ene 2009
Stack-based buffer overflow in OvCgi/Toolbar.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow
60RIESGO
abrir
Metasploit300
TYPO3 sa-2009-001 Weak Encryption Key File Disclosure
CVE-2009-025520 ene 2009
The System extension Install tool in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 creates the
18RIESGO
abrir
Metasploit400
HTML Help Workshop 4.74 (hhp Project File) Buffer Overflow
CVE-2009-013317 ene 2009
Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary
50RIESGO
abrir
Metasploit600
Symantec AppStream LaunchObj ActiveX Control Arbitrary File Download and Execute
CVE-2008-438815 ene 2009
The LaunchObj ActiveX control before 5.2.2.865 in launcher.dll in Symantec AppStream Client 5.2.x before 5.2.2 SP3 MP1 d
50RIESGO
abrir
Metasploit400
Oracle Secure Backup NDMP_CONNECT_CLIENT_AUTH Buffer Overflow
CVE-2008-544414 ene 2009
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
50RIESGO
abrir
Metasploit300
Oracle Secure Backup exec_qr() Command Injection Vulnerability
CVE-2008-544814 ene 2009
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
30RIESGO
abrir
Metasploit300
Oracle DB SQL Injection in MDSYS.SDO_TOPO_DROP_FTBL Trigger
CVE-2008-397913 ene 2009
Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.2 allows remote authent
50RIESGO
abrir
Metasploit400
BEA WebLogic JSESSIONID Cookie Value Overflow
CVE-2008-545713 ene 2009
Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA
50RIESGO
abrir
Metasploit300
TrendMicro Data Loss Prevention 5.5 Directory Traversal
CVE-2008-293809 ene 2009
Directory traversal vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16,
60RIESGO
abrir
Metasploit300
Tomcat UTF-8 Directory Traversal Vulnerability
CVE-2008-293809 ene 2009
Directory traversal vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16,
60RIESGO
abrir
Metasploit500
HP OpenView Network Node Manager Toolbar.exe CGI Buffer Overflow
CVE-2008-006707 ene 2009
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote att
50RIESGO
abrir
Metasploit400
Destiny Media Player 1.61 PLS M3U Buffer Overflow
CVE-2009-342903 ene 2009
Stack-based buffer overflow in Pirate Radio Destiny Media Player 1.61 allows remote attackers to execute arbitrary code
50RIESGO
abrir
Metasploit100
SasCam Webcam Server v.2.6.5 Get() Method Buffer Overflow
CVE-2008-689829 dic 2008
Buffer overflow in the XHTTP Module 4.1.0.0 in the ActiveX control for SaschArt SasCam Webcam Server 2.6.5 allows remote
50RIESGO
abrir

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.