Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.309exploits catalogados
36.467CVEs com exploração pública
24.695testados em laboratório
24.695 exploits
Exploit-DBVexDay Proof
Seagull 0.6.7 - SQL Injection
CVE-2010-3212webappsphp29 ago 2010
SQL injection vulnerability in index.php in Seagull 0.6.7 and earlier allows remote attackers to execute arbitrary SQL c
23RISCO
abrir
Exploit-DBVexDay Proof
GaleriaSHQIP 1.0 - SQL Injection
CVE-2010-3207webappsphp28 ago 2010
SQL injection vulnerability in index.php in GaleriaSHQIP 1.0, when magic_quotes_gpc is disabled, allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
XOOPS 2.0.14 - 'article.php' SQL Injection
CVE-2008-2094webappsphp28 ago 2010
SQL injection vulnerability in article.php in the Article module for XOOPS allows remote attackers to execute arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
iGaming CMS - Multiple SQL Injections
CVE-2008-5841webappsphp27 ago 2010
Multiple SQL injection vulnerabilities in iGaming 1.5 and earlier allow remote attackers to execute arbitrary SQL comman
23RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel < 2.6.36-rc1 (Ubuntu 10.04 / 2.6.32) - 'CAN BCM' Local Privilege Escalation
CVE-2010-2959locallinux27 ago 2010
Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.
23RISCO
abrir
Exploit-DBVexDay Proof
kontakt formular 1.1 - Remote File Inclusion
CVE-2010-4878webappsphp26 ago 2010
PHP remote file inclusion vulnerability in formmailer.php in Kontakt Formular 1.1 allows remote attackers to execute arb
23RISCO
abrir
Exploit-DBVexDay Proof
EncFS 1.6.0 - Flawed CBC/CFB Cryptography Implementation
CVE-2010-3073locallinux26 ago 2010
SSL_Cipher.cpp in EncFS before 1.7.0 does not properly handle integer data sizes when constructing headers intended for
23RISCO
abrir
Exploit-DBVexDay Proof
Gaestebuch 1.2 - Remote File Inclusion
CVE-2010-4884webappsphp26 ago 2010
PHP remote file inclusion vulnerability in guestbook/gbook.php in Gaestebuch 1.2 allows remote attackers to execute arbi
23RISCO
abrir
Exploit-DBVexDay Proof
Eureka Email Client 2.2q - ERR Remote Buffer Overflow (Metasploit) (2)
CVE-2009-3837remotewindows25 ago 2010
Stack-based buffer overflow in Eureka Email 2.2q allows remote POP3 servers to execute arbitrary code via a long error m
50RISCO
abrir
Exploit-DBVexDay Proof
Skype 4.2.0.169 - 'wab32.dll' DLL Hijacking
CVE-2010-3136localwindows25 ago 2010
Untrusted search path vulnerability in Skype 4.2.0.169 and earlier allows local users, and possibly remote attackers, to
23RISCO
abrir
Exploit-DBVexDay Proof
TechSmith Snagit 10 (Build 788) - 'dwmapi.dll' DLL Hijacking
CVE-2010-3130localwindows25 ago 2010
Untrusted search path vulnerability in TechSmith Snagit all versions 10.x and 11.x allows local users, and possibly remo
23RISCO
abrir
Exploit-DBVexDay Proof
NTP daemon readvar - Remote Buffer Overflow (Metasploit)
CVE-2001-0414remotelinux25 ago 2010
Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial o
60RISCO
abrir
Exploit-DBVexDay Proof
Xitami Web Server 2.5c2 - If-Modified-Since Overflow (Metasploit)
CVE-2007-5067remotewindows25 ago 2010
Multiple buffer overflows in iMatix Xitami Web Server 2.5c2 allow remote attackers to execute arbitrary code via a long
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Internet Communication Settings - 'schannel.dll' DLL Hijacking
CVE-2010-3140localwindows25 ago 2010
Untrusted search path vulnerability in Microsoft Windows Internet Communication Settings on Windows XP SP3 allows local
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Services - 'nwapi32.dll' (MS06-066) (Metasploit)
CVE-2006-4688remotewindows25 ago 2010
Buffer overflow in Client Service for NetWare (CSNW) in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 al
60RISCO
abrir
Exploit-DBVexDay Proof
Corel PHOTO-PAINT X3 13.0.0.576 - 'crlrib.dll' DLL Hijacking
CVE-2010-5240localwindows25 ago 2010
Multiple untrusted search path vulnerabilities in Corel PHOTO-PAINT and CorelDRAW X5 15.1.0.588 allow local users to gai
23RISCO
abrir
Exploit-DBVexDay Proof
httpdx - 'tolog()' Format String (Metasploit) (1)
CVE-2009-4769remotewindows25 ago 2010
Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remo
50RISCO
abrir
Exploit-DBVexDay Proof
httpdx - 'tolog()' Format String (Metasploit) (2)
CVE-2009-4769remotewindows25 ago 2010
Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remo
50RISCO
abrir
Exploit-DBVexDay Proof
Corel PHOTO-PAINT X3 13.0.0.576 - 'crlrib.dll' DLL Hijacking
CVE-2014-8393localwindows25 ago 2010
DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel
23RISCO
abrir
Exploit-DBVexDay Proof
Adobe ExtendedScript Toolkit CS5 3.5.0.52 - 'dwmapi.dll' DLL Hijacking
CVE-2010-3155localwindows25 ago 2010
Untrusted search path vulnerability in Adobe ExtendScript Toolkit (ESTK) CS5 3.5.0.52 allows local users, and possibly r
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - Contacts 'wab32res.dll' DLL Hijacking
CVE-2010-3143localwindows25 ago 2010
Untrusted search path vulnerability in Microsoft Windows Contacts allows local users, and possibly remote attackers, to
28RISCO
abrir
Exploit-DBVexDay Proof
CorelDRAW X3 13.0.0.576 - 'crlrib.dll' DLL Hijacking
CVE-2010-5240localwindows25 ago 2010
Multiple untrusted search path vulnerabilities in Corel PHOTO-PAINT and CorelDRAW X5 15.1.0.588 allow local users to gai
23RISCO
abrir
Exploit-DBVexDay Proof
μTorrent (uTorrent) 2.0.3 - DLL Hijacking
CVE-2010-3129localwindows25 ago 2010
Untrusted search path vulnerability in uTorrent 2.0.3 and earlier allows local users, and possibly remote attackers, to
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Address Book 6.00.2900.5512 - 'wab32res.dll' DLL Hijacking
CVE-2010-3147localwindows25 ago 2010
Untrusted search path vulnerability in wab.exe 6.00.2900.5512 in Windows Address Book in Microsoft Windows XP SP2 and SP
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer - Object Type (MS03-020) (Metasploit)
CVE-2003-0344remotewindows25 ago 2010
Buffer overflow in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code via
60RISCO
abrir
Exploit-DBVexDay Proof
CorelDRAW X3 13.0.0.576 - 'crlrib.dll' DLL Hijacking
CVE-2014-8393localwindows25 ago 2010
DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Group Convertor - 'imm.dll' DLL Hijacking
CVE-2010-3139localwindows25 ago 2010
Untrusted search path vulnerability in Microsoft Windows Progman Group Converter (grpconv.exe) allows local users, and p
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Connection Signup Wizard - 'smmscrpt.dll' DLL Hijacking
CVE-2010-3144localwindows25 ago 2010
Untrusted search path vulnerability in the Internet Connection Signup Wizard in Microsoft Windows XP SP2 and SP3 and Ser
28RISCO
abrir
Exploit-DBVexDay Proof
Mercur Messaging 2005 - IMAP Login Buffer Overflow (Metasploit)
CVE-2006-1255remotewindows25 ago 2010
Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause
50RISCO
abrir
Exploit-DBVexDay Proof
Media Player Classic 6.4.9.1 - 'iacenc.dll' DLL Hijacking
CVE-2010-3138localwindows25 ago 2010
Untrusted search path vulnerability in the Indeo Codec in iac25_32.ax in Microsoft Windows XP SP3 allows local users to
28RISCO
abrir
anteriorpágina 184 / 824próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.