Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.697exploits catalogados
36.715CVEs com exploração pública
24.695testados em laboratório
5.629 exploits
ReferênciaVexDay Proof
Pathos CMS 0.92-2 - 'warn.php' Remote File Inclusion
CVE-2007-1907webappsphp
PHP remote file inclusion vulnerability in warn.php in Pathos Content Management System (CMS) 0.92-2 allows remote attac
23RISCO
abrir
ReferênciaVexDay Proof
PHP121 Instant Messenger 2.2 - Local File Inclusion
CVE-2007-1908webappsphp
PHP file inclusion vulnerability in php121db.php in PHP121 Instant Messenger 2.2 allows remote attackers to execute arbi
23RISCO
abrir
ReferênciaVexDay Proof
Microsoft Word 2007 - Multiple Vulnerabilities
CVE-2007-1910doswindows
Buffer overflow in wwlib.dll in Microsoft Word 2007 allows remote attackers to cause a denial of service (application cr
28RISCO
abrir
ReferênciaVexDay Proof
Microsoft Windows - '.hlp' Local HEAP Overflow (PoC)
CVE-2007-1912doswindows
Heap-based buffer overflow in Microsoft Windows allows user-assisted remote attackers to have an unknown impact via a cr
28RISCO
abrir
ReferênciaVexDay Proof
Beryo 2.0 - 'downloadpic.php?chemin' Remote File Disclosure
CVE-2007-1929webappsphp
Directory traversal vulnerability in downloadpic.php in Beryo 2.0, and possibly other versions including 2.4, allows rem
23RISCO
abrir
ReferênciaVexDay Proof
SmodCMS 2.10 - Slownik ssid SQL Injection
CVE-2007-1931webappsphp
SQL injection vulnerability in index.php in the slownik module in SmodCMS 2.10 and earlier allows remote attackers to ex
23RISCO
abrir
ReferênciaVexDay Proof
PcP-Guestbook 3.0 - 'lang' Local File Inclusion
CVE-2007-1933webappsphp
Multiple directory traversal vulnerabilities in PcP-Guestbook (PcP-Book) 3.0 allow remote attackers to include and execu
23RISCO
abrir
ReferênciaVexDay Proof
PHP-Nuke Module eBoard 1.0.7 - GLOBALS[name] Local File Inclusion
CVE-2007-1934webappsphp
Directory traversal vulnerability in member.php in the eBoard 1.0.7 module for PHP-Nuke allows remote attackers to inclu
23RISCO
abrir
ReferênciaVexDay Proof
AirMore 1.6.1 - Denial of Service (PoC)
CVE-2019-9831dosandroid
The AirMore application through 1.6.1 for Android allows remote attackers to cause a denial of service (system hang) via
23RISCO
abrir
ReferênciaVexDay Proof
MyBulletinBoard (MyBB) 1.2.5 - 'calendar.php' Blind SQL Injection
CVE-2007-2211webappsphp
SQL injection vulnerability in calendar.php in MyBB (aka MyBulletinBoard) 1.2.5 and earlier allows remote attackers to e
23RISCO
abrir
ReferênciaVexDay Proof
Kodak Image Viewer - TIF/TIFF Code Execution (MS07-055)
CVE-2007-2217localwindows
Kodak Image Viewer in Microsoft Windows 2000 SP4, and in some cases XP SP2 and Server 2003 SP1 and SP2, allows remote at
35RISCO
abrir
ReferênciaVexDay Proof
Microsoft Windows - GDI+ '.ICO' File Remote Denial of Service
CVE-2007-2237doswindows
Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) allows context-dependent attackers to cause a denial of
28RISCO
abrir
ReferênciaVexDay Proof
Adobe Photoshop CS2 / CS3 - '.bmp' Local Buffer Overflow
CVE-2007-2244localwindows
Multiple buffer overflows in Adobe Photoshop CS2 and CS3, Illustrator CS3, and GoLive 9 allow user-assisted remote attac
35RISCO
abrir
ReferênciaVexDay Proof
Quick and Dirty Blog (qdblog) 0.4 - SQL Injection / Local File Inclusion
CVE-2007-2304webappsphp
Multiple directory traversal vulnerabilities in Quick and Dirty Blog (QDBlog) 0.4, and possibly earlier, allow remote at
23RISCO
abrir
ReferênciaVexDay Proof
mxBB Module MX Shotcast 1.0 RC2 - 'getinfo1.php' Remote File Inclusion
CVE-2007-2313webappsphp
PHP remote file inclusion vulnerability in getinfo1.php in the Shotcast 1.0 RC2 module for mxBB allows remote attackers
23RISCO
abrir
ReferênciaVexDay Proof
Papoo 3.02 - kontakt menuid SQL Injection
CVE-2007-2320webappsphp
SQL injection vulnerability in kontakt.php in Papoo 3.02 and earlier allows remote attackers to execute arbitrary SQL co
23RISCO
abrir
ReferênciaVexDay Proof
JulmaCMS 1.4 - 'file.php' Remote File Disclosure
CVE-2007-2324webappsphp
Directory traversal vulnerability in file.php in JulmaCMS 1.4 allows remote attackers to read arbitrary files via a .. (
23RISCO
abrir
ReferênciaVexDay Proof
Pixaria Gallery 1.x - 'class.Smarty.php' Remote File Inclusion
CVE-2007-2458webappsphp
Multiple PHP remote file inclusion vulnerabilities in Pixaria Gallery before 1.4.3 allow remote attackers to execute arb
28RISCO
abrir
ReferênciaVexDay Proof
Sendcard 3.4.1 - 'sendcard.php?form' Local File Inclusion
CVE-2007-2471webappsphp
Directory traversal vulnerability in sendcard.php in Sendcard 3.4.1 and earlier allows remote attackers to read arbitrar
23RISCO
abrir
anteriorpágina 188 / 188

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.