Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
71.886exploits catalogados
32.153CVEs com exploração pública
1.932testados em laboratório
TodosExploit-DB 22.786Referência 19.978GitHub PoC 13.282VulnCheck XDB 8.176Nuclei 4.202Metasploit 3.462✓ só verificadosrecentespopularesrisco
22.786 exploits
Exploit-DB
Lawyer Search Script 1.1 - 'lawyer-list?city' SQL Injection
Lawyer Search Script 1.1 has SQL Injection via the /lawyer-list city parameter.
23RISCO
abrir ↗Exploit-DB
Professional Service Script 1.0 - 'service-list?city' SQL Injection
Professional Service Script 1.0 has SQL Injection via the service-list city parameter.
23RISCO
abrir ↗Exploit-DB
Opensource Classified Ads Script 3.2 - SQL Injection
Opensource Classified Ads Script 3.2 has SQL Injection via the advance_result.php keyword parameter.
23RISCO
abrir ↗Exploit-DB
Advanced Real Estate Script 4.0.7 - SQL Injection
Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_
23RISCO
abrir ↗Exploit-DB
Food Order Script 1.0 - 'list?city' SQL Injection
Food Order Script 1.0 has SQL Injection via the /list city parameter.
23RISCO
abrir ↗Exploit-DB
Foodspotting Clone Script 1.0 - 'quicksearch.php?q' SQL Injection
Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter.
23RISCO
abrir ↗Exploit-DB
Kickstarter Clone Acript 2.0 - 'projid' SQL Injection
Kickstarter Clone Script 2.0 has SQL Injection via the investcalc.php projid parameter.
23RISCO
abrir ↗Exploit-DB
Apple macOS - 'getrusage' Stack Leak Through struct Padding
An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS b
23RISCO
abrir ↗Exploit-DB
Affiliate MLM Script 1.0 - 'product-category.php?key' SQL Injection
Affiliate MLM Script 1.0 has SQL Injection via the product-category.php key parameter.
23RISCO
abrir ↗Exploit-DB
FS Crowdfunding Script 1.0 - 'latest_news_details.php?id' SQL Injection
FS Crowdfunding Script 1.0 has SQL Injection via the latest_news_details.php id parameter.
23RISCO
abrir ↗Exploit-DB
FS Linkedin Clone 1.0 - 'grid' / 'fid' / 'id' SQL Injection
FS Linkedin Clone 1.0 has SQL Injection via the group.php grid parameter, profile.php fid parameter, or company_details.
23RISCO
abrir ↗Exploit-DB
FS Foodpanda Clone 1.0 - SQL Injection
FS Foodpanda Clone 1.0 has SQL Injection via the /food keywords parameter.
23RISCO
abrir ↗Exploit-DB
FS Grubhub Clone 1.0 - 'keywords' SQL Injection
FS Grubhub Clone 1.0 has SQL Injection via the /food keywords parameter.
23RISCO
abrir ↗Exploit-DB
FS Freelancer Clone 1.0 - 'profile.php?u' SQL Injection
FS Freelancer Clone 1.0 has SQL Injection via the profile.php u parameter.
23RISCO
abrir ↗Exploit-DB
FS Indiamart Clone 1.0 - 'token' / 'id' / 'c' SQL Injection
FS Indiamart Clone 1.0 has SQL Injection via the catcompany.php token parameter, buyleads-details.php id parameter, or c
23RISCO
abrir ↗Exploit-DB
FS Gigs Script 1.0 - 'cat' / 'sc' SQL Injection
FS Gigs Script 1.0 has SQL Injection via the browse-category.php cat parameter, browse-scategory.php sc parameter, or se
23RISCO
abrir ↗Exploit-DB
FS Trademe Clone 1.0 - 'search' / 'id' SQL Injection
FS Trademe Clone 1.0 has SQL Injection via the search_item.php search parameter or the general_item_details.php id param
23RISCO
abrir ↗Exploit-DB
FS IMDB Clone 1.0 - 'f' / 's' / 'id' SQL Injection
FS IMDB Clone 1.0 has SQL Injection via the movie.php f parameter, tvshow.php s parameter, or show_misc_video.php id par
23RISCO
abrir ↗Exploit-DB
Advance Online Learning Management Script 3.1 - 'subcatid' / 'popcourseid' SQL Injection
Advance Online Learning Management Script 3.1 has SQL Injection via the courselist.php subcatid or popcourseid parameter
23RISCO
abrir ↗Exploit-DB
Basic B2B Script 2.0.8 - 'product_details.php?id' SQL Injection
Basic B2B Script 2.0.8 has SQL Injection via the product_details.php id parameter.
23RISCO
abrir ↗Exploit-DB
Beauty Parlour Booking Script 1.0 - 'gender' / 'city' SQL Injection
Beauty Parlour Booking Script 1.0 has SQL Injection via the /list gender or city parameter.
23RISCO
abrir ↗Exploit-DB
FS Ebay Clone 1.0 - 'id' / 'sub_category_id' / 'category_id' SQL Injection
FS Ebay Clone 1.0 has SQL Injection via the product.php id parameter, or the search.php category_id or sub_category_id p
23RISCO
abrir ↗Exploit-DB
Advance B2B Script 2.1.3 - 'show_id' / 'pid' SQL Injection
Advance B2B Script 2.1.3 has SQL Injection via the tradeshow-list-detail.php show_id or view-product.php pid parameter.
23RISCO
abrir ↗Exploit-DB
FS Amazon Clone 1.0 - SQL Injection
FS Amazon Clone 1.0 has SQL Injection via the PATH_INFO to /VerAyari.
23RISCO
abrir ↗Exploit-DB
FS Care Clone 1.0 - 'jobFrequency' / 'jobType' SQL Injection
FS Care Clone 1.0 has SQL Injection via the searchJob.php jobType or jobFrequency parameter.
23RISCO
abrir ↗Exploit-DB
FS Groupon Clone 1.0 - 'id' SQL Injection
FS Groupon Clone 1.0 has SQL Injection via the item_details.php id parameter or the vendor_details.php id parameter.
23RISCO
abrir ↗Exploit-DB
FS Expedia Clone 1.0 - 'fl_orig' / 'fl_dest' / 'id' SQL Injection
FS Expedia Clone 1.0 has SQL Injection via the pages.php or content.php id parameter, or the show-flight-result.php fl_o
23RISCO
abrir ↗Exploit-DB
FS Monster Clone 1.0 - 'Employer_Details.php?id' SQL Injection
FS Monster Clone 1.0 has SQL Injection via the Employer_Details.php id parameter.
23RISCO
abrir ↗Exploit-DB
FS Quibids Clone 1.0 - SQL Injection
FS Quibids Clone 1.0 has SQL Injection via the itechd.php productid parameter.
23RISCO
abrir ↗Exploit-DB
CMS Auditor Website 1.0 - SQL Injection
CMS Auditor Website 1.0 has SQL Injection via the PATH_INFO to /news-detail.
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.