Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

75.589exploits catalogados
34.508CVEs com exploração pública
24.695testados em laboratório
24.443 exploits
Exploit-DBVexDay Proof
Microsoft Office 2007 - 'mso.dll' Arbitrary Free (MS15-081)
CVE-2015-2468doswindows21 ago 2015
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office for Mac 2011, Office fo
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'win32k.sys' TTF Font Processing win32k!fsc_BLTHoriz Out-of-Bounds Pool Write
CVE-2015-2464doswindows21 ago 2015
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'win32k.sys' TTF Font Processing win32k!scl_ApplyTranslation Pool-Based Buffer Overflow
CVE-2015-2456doswindows21 ago 2015
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - 'OGL.dll' DpOutputSpanStretch::OutputSpan Out of Bounds Write (MS15-080)
CVE-2015-2431doswindows21 ago 2015
Microsoft Office 2007 SP3 and 2010 SP2, Live Meeting 2007 Console, Lync 2010, Lync 2010 Attendee, Lync 2013 SP1, and Lyn
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - 'mso.dll' Use-After-Free (MS15-081)
CVE-2015-2467doswindows21 ago 2015
Microsoft Office 2007 SP3 allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Offic
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'win32k.sys' TTF Font Processing win32k!fsc_RemoveDups Out-of-Bounds Pool Memory Access
CVE-2015-2463doswindows21 ago 2015
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'ATMFD.DLL' Write to Uninitialized Address Due to Malformed CFF Table
CVE-2015-2432doswindows21 ago 2015
ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1,
35RISCO
abrir
Exploit-DB
Netsweeper 4.0.8 - SQL Injection / Authentication Bypass
CVE-2014-9605webappsphp21 ago 2015
WebUpgrade in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass aut
23RISCO
abrir
Exploit-DB
Netsweeper 4.0.8 - Authentication Bypass (via Disabling of IP Quarantine)
CVE-2014-9610webappsphp21 ago 2015
Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication an
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Office 2007 - 'wwlib.dll' Type Confusion (MS15-081)
CVE-2015-2469doswindows21 ago 2015
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, and Office for Mac 2011 allow remote attackers to execute arbit
28RISCO
abrir
Exploit-DBVexDay Proof
Konica Minolta FTP Utility 1.0 - Remote Denial of Service (PoC)
CVE-2015-7767doswindows21 ago 2015
Buffer overflow in Konica Minolta FTP Utility 1.0 allows remote attackers to execute arbitrary code or cause a denial of
23RISCO
abrir
Exploit-DBVexDay Proof
Mozilla - Maintenance Service Log File Overwrite Privilege Escalation
CVE-2015-4481localwindows21 ago 2015
Race condition in the Mozilla Maintenance Service in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 on Win
23RISCO
abrir
Exploit-DB
WordPress Plugin MDC Private Message 1.0.0 - Persistent Cross-Site Scripting
CVE-2015-6805webappsphp21 ago 2015
Cross-site scripting (XSS) vulnerability in the MDC Private Message plugin 1.0.0 for WordPress allows remote authenticat
23RISCO
abrir
Exploit-DB
Aruba Mobility Controller 6.4.2.8 - Multiple Vulnerabilities
CVE-2015-5437webappsxml20 ago 2015
20RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - XMLSocket Destructor Not Cleared Before Setting User Data in connect
CVE-2015-5554doslinux_x86-6419 ago 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash AS2 - textfield.filters Use-After-Free (2)
CVE-2015-3118doswindows19 ago 2015
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - '.SWF' Out-of-Bounds Memory Read (2)
CVE-2015-5132doswindows19 ago 2015
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - '.SWF' Out-of-Bounds Memory Read (1)
CVE-2015-5131doswindows19 ago 2015
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR
35RISCO
abrir
Exploit-DBVexDay Proof
Flash - Issues in DefineBitsLossless and DefineBitsLossless2 Leads to Using Uninitialized Memory
CVE-2015-3093doswindows19 ago 2015
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - Pointer Crash in Drawing and Bitmap Handling
CVE-2015-5544doslinux19 ago 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - Pointer Crash After Continuing Slow Script
CVE-2015-5545doslinux19 ago 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash (Linux x64) - Bad Dereference at 0x23c
CVE-2015-5546doslinux_x86-6419 ago 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISCO
abrir
Exploit-DBVexDay Proof
Flash Boundless Tunes - Universal SOP Bypass Through ActionSctipt's Sound Object
CVE-2015-5116remotemultiple19 ago 2015
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481
28RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - Pointer Crash in Button Handling
CVE-2015-5547doslinux19 ago 2015
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - Heap Buffer Overflow Due to Indexing Error When Loading FLV File
CVE-2015-5118doslinux_x86-6419 ago 2015
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows an
28RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - Setting Value Use-After-Free
CVE-2015-5539dosmultiple19 ago 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash AS2 - textfield.filters Use-After-Free (1)
CVE-2015-3106doswindows19 ago 2015
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - swapDepths Use-After-Free
CVE-2015-5550dosmultiple19 ago 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - attachMovie Use-After-Free
CVE-2015-5551dosmultiple19 ago 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISCO
abrir
Exploit-DBVexDay Proof
Adobe Flash - createTextField Use-After-Free
CVE-2015-5556dosmultiple19 ago 2015
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linu
35RISCO
abrir
anteriorpágina 186 / 815próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.