Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.386exploits catalogados
36.533CVEs com exploração pública
24.695testados em laboratório
19.066 exploits
Exploit-DBVexDay Proof
SHTTPD 1.34 (Windows x86) - URI-Encoded POST Request Overflow (Metasploit)
CVE-2006-5216remotewindows_x8609 mai 2010
Stack-based buffer overflow in Sergey Lyubka Simple HTTPD (shttpd) 1.34 allows remote attackers to execute arbitrary cod
50RISCO
abrir
Exploit-DBVexDay Proof
CA BrightStor ARCserve - Tape Engine Buffer Overflow (Metasploit)
CVE-2006-6076remotewindows09 mai 2010
Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 an
60RISCO
abrir
Exploit-DBVexDay Proof
SoftArtisans XFile FileManager - ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-1682remotewindows09 mai 2010
Multiple stack-based buffer overflows in the FileManager ActiveX control in SAFmgPws.dll in SoftArtisans XFile before 2.
43RISCO
abrir
Exploit-DBVexDay Proof
Trend Micro OfficeScan - Remote Stack Buffer Overflow (Metasploit)
CVE-2008-1365remotewindows09 mai 2010
Stack-based buffer overflow in Trend Micro OfficeScan Corporate Edition 8.0 Patch 2 build 1189 and earlier, and 7.3 Patc
50RISCO
abrir
Exploit-DBVexDay Proof
TrackerCam - PHP Argument Buffer Overflow (Metasploit)
CVE-2005-0478remotewindows09 mai 2010
Multiple buffer overflows in TrackerCam 5.12 and earlier allow remote attackers to cause a denial of service and possibl
50RISCO
abrir
Exploit-DBVexDay Proof
DATAC RealWin SCADA Server - Remote Buffer Overflow (Metasploit)
CVE-2008-4322remotewindows09 mai 2010
Stack-based buffer overflow in RealFlex Technologies Ltd. RealWin Server 2.0, as distributed by DATAC, allows remote att
50RISCO
abrir
Exploit-DBVexDay Proof
eFront 3.x - 'ask_chat.php' SQL Injection
CVE-2010-1918webappsphp09 mai 2010
SQL injection vulnerability in ask_chat.php in eFront 3.6.2 and earlier allows remote attackers to execute arbitrary SQL
23RISCO
abrir
Exploit-DBVexDay Proof
Symantec Norton Internet Security 2004 - ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-1689remotewindows09 mai 2010
Buffer overflow in the ISAlertDataCOM ActiveX control in ISLALERT.DLL for Norton Personal Firewall 2004 and Internet Sec
50RISCO
abrir
Exploit-DBVexDay Proof
Persits XUpload - ActiveX AddFile Buffer Overflow (Metasploit)
CVE-2008-0492remotewindows09 mai 2010
Stack-based buffer overflow in the Persits.XUpload.2 ActiveX control in XUpload.ocx 3.0.0.4 and earlier in Persits XUplo
43RISCO
abrir
Exploit-DBVexDay Proof
FutureSoft TFTP Server 2000 - Transfer-Mode Overflow (Metasploit)
CVE-2005-1812remotewindows09 mai 2010
Multiple stack-based buffer overflows in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allow remote attackers to exe
50RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 Mail Server 4.01a - IMAP RENAME Buffer Overflow (Metasploit)
CVE-2004-1211remotewindows09 mai 2010
Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of
60RISCO
abrir
Exploit-DBVexDay Proof
SapLPD 6.28 - Remote Buffer Overflow (Metasploit)
CVE-2008-0621remotewindows09 mai 2010
Buffer overflow in SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to
60RISCO
abrir
Exploit-DBVexDay Proof
RealPlayer - 'ierpplug.dll' ActiveX Control Playlist Name Buffer Overflow (Metasploit)
CVE-2007-5601remotewindows09 mai 2010
Stack-based buffer overflow in the Database Component in MPAMedia.dll in RealNetworks RealPlayer 10.5 and 11 beta, and e
50RISCO
abrir
Exploit-DBVexDay Proof
IBM Tivoli Storage Manager Express CAD Service - Remote Buffer Overflow (Metasploit) (2)
CVE-2007-4880remotewindows09 mai 2010
Buffer overflow in the Client Acceptor Daemon (CAD), dsmcad.exe, in certain IBM Tivoli Storage Manager (TSM) clients 5.1
60RISCO
abrir
Exploit-DBVexDay Proof
XMPlay 3.3.0.4 - '.ASX' Filename Buffer Overflow (Metasploit)
CVE-2006-6063localwindows09 mai 2010
Stack-based buffer overflow in Un4seen XMPlay 3.3.0.5 and earlier allows remote attackers to execute arbitrary code via
50RISCO
abrir
Exploit-DBVexDay Proof
Yahoo! Messenger - 'YVerInfo.dll' ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-4515remotewindows09 mai 2010
Buffer overflow in a certain ActiveX control in YVerInfo.dll before 2007.8.27.1 in the Yahoo! services suite for Yahoo!
50RISCO
abrir
Exploit-DBVexDay Proof
SonicWALL SSL-VPN - NetExtender ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-5603remotewindows09 mai 2010
Stack-based buffer overflow in the SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX control before 2.1.0.51, and 2.5.x
50RISCO
abrir
Exploit-DBVexDay Proof
EMC AlphaStor Agent - Remote Buffer Overflow (Metasploit)
CVE-2008-2158remotewindows09 mai 2010
Multiple stack-based buffer overflows in the Command Line Interface process in the Server Agent in EMC AlphaStor 3.1 SP1
50RISCO
abrir
Exploit-DBVexDay Proof
WinDVD7 - 'IASystemInfo.dll' ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-0348remotewindows09 mai 2010
Stack-based buffer overflow in the IASystemInfo.dll ActiveX control in (1) InterActual Player 2.60.12.0717, (2) Roxio Ci
50RISCO
abrir
Exploit-DBVexDay Proof
MiniShare 1.4.1 - Remote Buffer Overflow (Metasploit)
CVE-2004-2271remotewindows09 mai 2010
Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET req
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Outlook Express - NNTP Response Parsing Buffer Overflow (MS05-030) (Metasploit)
CVE-2005-1213remotewindows09 mai 2010
Stack-based buffer overflow in the news reader for Microsoft Outlook Express (MSOE.DLL) 5.5 SP2, 6, and 6 SP1 allows rem
60RISCO
abrir
Exploit-DBVexDay Proof
Novell NetMail 3.52d - IMAP APPEND Buffer Overflow (Metasploit)
CVE-2006-6425remotewindows09 mai 2010
Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated u
50RISCO
abrir
Exploit-DBVexDay Proof
BigAnt Server 2.2 - Remote Buffer Overflow (Metasploit)
CVE-2008-1914remotewindows09 mai 2010
Stack-based buffer overflow in the AntServer module (AntServer.exe) in BigAnt IM Server in BigAnt Messenger 2.2 allows r
60RISCO
abrir
Exploit-DBVexDay Proof
mIRC - IRC URL Buffer Overflow (Metasploit)
CVE-2003-1336remotewindows09 mai 2010
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.
50RISCO
abrir
Exploit-DBVexDay Proof
3Com TFTP Service (3CTftpSvc) - 'Mode' Remote Buffer Overflow (Metasploit)
CVE-2006-6183remotewindows09 mai 2010
Multiple stack-based buffer overflows in 3Com 3CTftpSvc 2.0.1, and possibly earlier, allow remote attackers to cause a d
60RISCO
abrir
Exploit-DBVexDay Proof
IBM Tivoli Storage Manager Express RCA Service - Remote Buffer Overflow (Metasploit)
CVE-2008-4828remotewindows09 mai 2010
Multiple stack-based buffer overflows in dsmagent.exe in the Remote Agent Service in the IBM Tivoli Storage Manager (TSM
60RISCO
abrir
Exploit-DBVexDay Proof
Novell NetMail 3.52d - NMAP STOR Buffer Overflow (Metasploit)
CVE-2006-6424remotewindows09 mai 2010
Multiple buffer overflows in Novell NetMail before 3.52e FTF2 allow remote attackers to execute arbitrary code (1) by ap
50RISCO
abrir
Exploit-DBVexDay Proof
Oracle Secure Backup - NDMP_CONNECT_CLIENT_AUTH Buffer Overflow (Metasploit)
CVE-2008-5444remotewindows09 mai 2010
Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.2 allows remote attackers
50RISCO
abrir
Exploit-DBVexDay Proof
LANDesk Management Suite 8.7 - Alert Service Buffer Overflow (Metasploit)
CVE-2007-1674remotewindows09 mai 2010
Stack-based buffer overflow in the Alert Service (aolnsrvr.exe) in LANDesk Management Suite 8.7 allows remote attackers
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer - isComponentInstalled Overflow (Metasploit)
CVE-2006-1016remotewindows09 mai 2010
Buffer overflow in the IsComponentInstalled method in Internet Explorer 6.0, when used on Windows 2000 before SP4 or Win
50RISCO
abrir
anteriorpágina 203 / 636próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.