Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
79.386exploits catalogados
36.533CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.466Referência 23.104GitHub PoC 15.075VulnCheck XDB 8.883Nuclei 4.365Metasploit 3.493✓ só verificadosrecentespopularesrisco
24.695 exploits
Exploit-DB✓ VexDay Proof
OroHYIP - SQL Injection
SQL injection vulnerability in withdraw_money.php in Toma Cero OroHYIP allows remote attackers to execute arbitrary SQL
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Overstock Script - SQL Injection
SQL injection vulnerability in storecat.php in JCE-Tech Overstock 1 allows remote attackers to execute arbitrary SQL com
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
iBoutique - 'page' SQL Injection / Cross-Site Scripting
SQL injection vulnerability in index.php in NetArt Media iBoutique 4.0 allows remote attackers to execute arbitrary SQL
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
iBoutique - 'page' SQL Injection / Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.php in iBoutique 4.0 allows remote attackers to inject arbitrary web s
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Shareasale Script - SQL Injection
SQL injection vulnerability in merchant_product_list.php in JCE-Tech Shareasale Script (SASS) 1 allows remote attackers
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
MoreAmp - '.maf' Local Stack Buffer Overflow (SEH)
Stack-based buffer overflow in MoreAmp allows remote attackers to execute arbitrary code via a long line in a song list
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Orbital Viewer 1.04 - '.ov' Local Universal Stack Overflow (SEH)
Stack-based buffer overflow in Orbital Viewer 1.04 allows user-assisted remote attackers to execute arbitrary code via a
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Elite Gaming Ladders 3.5 - 'ladder[id]' SQL Injection
SQL injection vulnerability in standings.php in Elite Gaming Ladders 3.5 allows remote attackers to execute arbitrary SQ
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Joomla! Component RSComments 1.0.0 - Persistent Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in the RSComments (com_rscomments) component 1.0.0 Rev 2 for Joomla!
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
MoreAmp - '.maf' Buffer Overflow (PoC)
Stack-based buffer overflow in MoreAmp allows remote attackers to execute arbitrary code via a long line in a song list
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Spring Framework - Arbitrary code Execution
SpringSource Spring Framework 2.5.x before 2.5.6.SEC02, 2.5.7 before 2.5.7.SR01, and 3.0.x before 3.0.3 allows remote at
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
H264WebCam - Boundary Condition Error
H264WebCam 3.7 allows remote attackers to cause a denial of service (crash) via a long URI in a GET request, which trigg
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PowerZip 7.21 (Build 4010) - Stack Buffer Overflow
Stack-based buffer overflow in the UpdateFrameTitleForDocument method in the CFrameWnd class in mfc42.dll in the Microso
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
(Gabriel's FTP Server) Open & Compact FTP Server 1.2 - Full System Access
Open&Compact FTP Server (Open-FTPD) 1.2 and earlier allows remote attackers to bypass authentication by sending (1) LIST
43RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Banner Management Script - SQL Injection
SQL injection vulnerability in trackads.php in YourFreeWorld Banner Management allows remote attackers to execute arbitr
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
File Sharing Wizard 1.5.0 - Remote Overflow (SEH)
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to execute arbitrary code via a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Batch Audio Converter Lite Edition 1.0.0.0 - Local Stack Buffer Overflow (SEH)
Stack-based buffer overflow in Batch Audio Converter Lite Edition 1.0.0.0 and earlier allows remote attackers to execute
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
BlazeDVD 5.1 (Windows 7) - '.plf' File Stack Buffer Overflow (ASLR + DEP Bypass)
Stack-based buffer overflow in BlazeVideo BlazeDVD Standard and Professional 5.0, and possibly earlier, allows remote at
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Netware - SMB Remote Stack Overflow (PoC)
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remo
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.8 (BSD x86) - 'trans2open' Remote Overflow (Metasploit)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
2DayBiz ybiz Network Community Script - SQL Injection / Cross-Site Scripting
SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arb
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Rosoft Audio Converter 4.4.4 - Local Buffer Overflow
Buffer overflow in Rosoft Audio Converter 4.4.4 allows remote attackers to execute arbitrary code via a long playlist en
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in products/classified/headersearch.php in 2daybiz Online Classified Script all
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
2DayBiz Online Classified System - SQL Injection / Cross-Site Scripting
SQL injection vulnerability in view_photo.php in 2daybiz Online Classified Script allows remote attackers to execute arb
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Borland Interbase - 'Create-Request' Remote Buffer Overflow (Metasploit)
Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before SP2 allows remote at
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Borland CaliberRM - StarTeam Multicast Service Buffer Overflow (Metasploit)
Stack-based buffer overflow in the PGMWebHandler::parse_request function in the StarTeam Multicast Service component (ST
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
EnjoySAP SAP GUI - ActiveX Control Buffer Overflow (Metasploit)
Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEnd\SapGui\kwedit.dll in the EnjoySAP
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Ipswitch IMail Server - IMAP SEARCH Buffer Overflow (Metasploit)
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote au
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Tumbleweed SecureTransport FileTransfer - 'vcst_eu.dll' ActiveX Control Buffer Overflow (Metasploit)
Stack-based buffer overflow in the IActiveXTransfer.FileTransfer method in the SecureTransport FileTransfer ActiveX cont
50RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.