Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
71.886exploits catalogados
32.153CVEs com exploração pública
1.932testados em laboratório
TodosExploit-DB 22.786Referência 19.978GitHub PoC 13.282VulnCheck XDB 8.176Nuclei 4.202Metasploit 3.462✓ só verificadosrecentespopularesrisco
3.462 exploits
Metasploit500
MS03-026 Microsoft RPC DCOM Interface Overflow
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote
60RISCO
abrir ↗Metasploit400
MS03-022 Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability
60RISCO
abrir ↗Metasploit200
Alt-N WebAdmin USER Buffer Overflow
Buffer overflow in WebAdmin.exe for WebAdmin allows remote attackers to execute arbitrary code via an HTTP request to We
50RISCO
abrir ↗Metasploit300
Sambar 6 Search Results Buffer Overflow
Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote attackers t
60RISCO
abrir ↗Metasploit300
LeapWare LeapFTP v2.7.3.600 PASV Reply Client Overflow
Buffer overflow in LeapFTP 2.7.3.600 allows remote FTP servers to execute arbitrary code via a long IP address response
50RISCO
abrir ↗Metasploit300
MS03-020 Microsoft Internet Explorer Object Type
Buffer overflow in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code via
60RISCO
abrir ↗Metasploit500
MS03-007 Microsoft IIS 5.0 WebDAV ntdll.dll Path Overflow
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISCO
abrir ↗Metasploit500
Seattle Lab Mail 5.5 POP3 Buffer Overflow
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO arg
60RISCO
abrir ↗Metasploit200
Kerio Firewall 2.1.4 Authentication Packet Overflow
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows r
50RISCO
abrir ↗Metasploit500
BadBlue 2.5 EXT.dll Buffer Overflow
Buffer overflow in ext.dll in BadBlue 2.55 allows remote attackers to execute arbitrary code via a long mfcisapicommand
50RISCO
abrir ↗Metasploit500
Poptop Negative Read Overflow
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (Linux x86)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit200
Samba 2.2.2 - 2.2.6 nttrans Buffer Overflow
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute a
30RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (Solaris SPARC)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (Mac OS X PPC)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit500
Samba trans2open Overflow (*BSD x86)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Metasploit600
QuickTime Streaming Server parse_xml.cgi Remote Execution
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote a
50RISCO
abrir ↗Metasploit300
Solaris KCMS + TTDB Arbitrary File Read
Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allow
23RISCO
abrir ↗Metasploit500
RealServer Describe Buffer Overflow
Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbit
60RISCO
abrir ↗Metasploit300
PuTTY Buffer Overflow
Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers
60RISCO
abrir ↗Metasploit200
Webster HTTP Server GET Buffer Overflow
Buffer overflow in Webster HTTP Server allows remote attackers to execute arbitrary code via a long URL.
50RISCO
abrir ↗Metasploit200
TFTPD32 Long Filename Buffer Overflow
Buffer overflow in tftpd of TFTP32 2.21 and earlier allows remote attackers to execute arbitrary code via a long filenam
50RISCO
abrir ↗Metasploit300
MS02-065 Microsoft IIS MDAC msadcs.dll RDS DataStub Content-Type Overflow
Heap-based buffer overflow in the Remote Data Services (RDS) component of Microsoft Data Access Components (MDAC) 2.1 th
60RISCO
abrir ↗Metasploit300
MS02-063 PPTP Malformed Control Data Kernel Denial of Service
Buffer overflow in Microsoft PPTP Service on Windows XP and Windows 2000 allows remote attackers to cause a denial of se
30RISCO
abrir ↗Metasploit500
Savant 3.1 Web Server Overflow
Buffer overflow in Savant Web Server 3.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP G
50RISCO
abrir ↗Metasploit600
HP-UX LPD Command Execution
Multiple buffer overflows in lp subsystem for HP-UX 10.20 through 11.11 (11i) allow local users to cause a denial of ser
38RISCO
abrir ↗Metasploit400
MS02-056 Microsoft SQL Server Hello Overflow
Buffer overflow in the authentication function for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 al
60RISCO
abrir ↗Metasploit400
MS02-039 Microsoft SQL Server Resolution Overflow
Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSD
60RISCO
abrir ↗Metasploit200
SecureCRT SSH1 Buffer Overflow
Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execut
50RISCO
abrir ↗Metasploit500
Solaris dtspcd Heap Overflow
Buffer overflow in the client connection routine of libDtSvc.so.1 in CDE Subprocess Control Service (dtspcd) allows remo
60RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.