Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

71.886exploits catalogados
32.153CVEs com exploração pública
1.932testados em laboratório
3.462 exploits
Metasploit300
3Com SuperStack Switch Denial of Service
CVE-2004-269124 jun 2004
Unspecified vulnerability in 3Com SuperStack 3 4400 switches with firmware version before 3.31 allows remote attackers t
30RISCO
abrir
Metasploit400
Unreal Tournament 2004 "secure" Overflow (Win32)
CVE-2004-060818 jun 2004
The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier,
60RISCO
abrir
Metasploit400
Unreal Tournament 2004 "secure" Overflow (Linux)
CVE-2004-060818 jun 2004
The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier,
60RISCO
abrir
Metasploit500
Squid NTLM Authenticate Overflow
CVE-2004-054108 jun 2004
Buffer overflow in the ntlm_check_auth (NTLM authentication) function for Squid Web Proxy Cache 2.5.x and 3.x, when comp
60RISCO
abrir
Metasploit200
Subversion Date Svnserve
CVE-2004-039719 mai 2004
Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attacker
60RISCO
abrir
Metasploit200
AppleFileServer LoginExt PathName Overflow
CVE-2004-043003 mai 2004
Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitr
50RISCO
abrir
Metasploit200
MS04-011 Microsoft Private Communications Transport Overflow
CVE-2003-071913 abr 2004
Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library, as u
60RISCO
abrir
Metasploit400
MS04-011 Microsoft LSASS Service DsRolerUpgradeDownlevelServer Overflow
CVE-2003-053313 abr 2004
Stack-based buffer overflow in certain Active Directory service functions in LSASRV.DLL of the Local Security Authority
60RISCO
abrir
Metasploit300
Norton AntiSpam 2004 SymSpamHelper ActiveX Control Buffer Overflow
CVE-2004-036319 mar 2004
Stack-based buffer overflow in the SymSpamHelper ActiveX component (symspam.dll) in Norton AntiSpam 2004, as used in Nor
50RISCO
abrir
Metasploit500
ISS PAM.dll ICQ Parser Buffer Overflow
CVE-2004-036218 mar 2004
Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, a
60RISCO
abrir
Metasploit300
IBM DB2 db2rcmd.exe Command Execution Vulnerability
CVE-2004-079504 mar 2004
DB2 8.1 remote command server (DB2RCMD.EXE) executes the db2rcmdc.exe program as the db2admin administrator, which allow
18RISCO
abrir
Metasploit400
BolinTech Dream FTP Server 1.02 Format String
CVE-2004-207403 mar 2004
Format string vulnerability in Dream FTP 1.02 allows local users to cause a denial of service (crash) via format string
50RISCO
abrir
Metasploit400
Serv-U FTPD MDTM Overflow
CVE-2004-033026 fev 2004
Buffer overflow in Serv-U ftp before 5.0.0.4 allows remote authenticated users to execute arbitrary code via a long time
60RISCO
abrir
Metasploit300
Dell OpenManage POST Request Heap Overflow (win32)
CVE-2004-033126 fev 2004
Heap-based buffer overflow in Dell OpenManage Web Server 3.4.0 allows remote attackers to cause a denial of service (cra
23RISCO
abrir
Metasploit500
Proxy-Pro Professional GateKeeper 4.7 GET Request Overflow
CVE-2004-032623 fev 2004
Buffer overflow in the web proxy for GateKeeper Pro 4.7 allows remote attackers to execute arbitrary code via a long GET
50RISCO
abrir
Metasploit200
PSO Proxy v0.91 Stack Buffer Overflow
CVE-2004-031320 fev 2004
Buffer overflow in PSOProxy 0.91 allows remote attackers to cause a denial of service and possibly execute arbitrary cod
50RISCO
abrir
Metasploit200
IMail LDAP Service Buffer Overflow
CVE-2004-029717 fev 2004
Buffer overflow in the Lightweight Directory Access Protocol (LDAP) daemon (iLDAP.exe 3.9.15.10) in Ipswitch IMail Serve
50RISCO
abrir
Metasploit100
MS04-007 Microsoft ASN.1 Library Bitstring Heap Overflow
CVE-2003-081810 fev 2004
Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microso
60RISCO
abrir
Metasploit500
MDaemon WorldClient form2raw.cgi Stack Buffer Overflow
CVE-2003-120029 dez 2003
Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbi
50RISCO
abrir
Metasploit400
MS03-049 Microsoft Workstation Service NetAddAlternateComputerName Overflow
CVE-2003-081211 nov 2003
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers t
60RISCO
abrir
Metasploit400
MS03-051 Microsoft IIS ISAPI FrontPage fp30reg.dll Chunked Overflow
CVE-2003-082211 nov 2003
Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002
60RISCO
abrir
Metasploit400
NIPrint LPD Request Overflow
CVE-2003-114105 nov 2003
Buffer overflow in NIPrint 4.10 allows remote attackers to execute arbitrary code via a long string to TCP port 515.
50RISCO
abrir
Metasploit200
IA WebMail 3.x Buffer Overflow
CVE-2003-119203 nov 2003
Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET
50RISCO
abrir
Metasploit400
MS03-046 Exchange 2000 XEXCH50 Heap Overflow
CVE-2003-071415 out 2003
The Internet Mail Service in Exchange Server 5.5 and Exchange 2000 allows remote attackers to cause a denial of service
60RISCO
abrir
Metasploit300
mIRC IRC URL Buffer Overflow
CVE-2003-133613 out 2003
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.
50RISCO
abrir
Metasploit300
Sendmail SMTP Address prescan Memory Corruption
CVE-2003-069417 set 2003
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, a
30RISCO
abrir
Metasploit600
Solaris sadmind Command Execution
CVE-2003-072213 set 2003
The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attack
60RISCO
abrir
Metasploit500
Oracle 9i XDB HTTP PASS Overflow (win32)
CVE-2003-072718 ago 2003
Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to
50RISCO
abrir
Metasploit500
Oracle 9i XDB FTP PASS Overflow (win32)
CVE-2003-072718 ago 2003
Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to
50RISCO
abrir
Metasploit500
Oracle 9i XDB FTP UNLOCK Overflow (win32)
CVE-2003-072718 ago 2003
Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to
50RISCO
abrir
anteriorpágina 104 / 116próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.