Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

75.902exploits catalogados
34.597CVEs com exploração pública
24.695testados em laboratório
75.902 exploits
GitHub PoC
hklabCR/CVE-2011-2523
CVE-2011-252306 jul 2025
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISCO
abrir
VulnCheck XDB
remote-with-credentials
CVE-2024-55963MEDIUM06 jul 2025
An issue was discovered in Appsmith before 1.51. A user on Appsmith that doesn't have admin permissions can trigger the
38RISCO
abrir
GitHub PoC5
Proof of Concept for CVE-2025-32463 Local privilege escalation exploit targeting sudo -R on vulnerable Linux systems. For educational and authorized security testing only.
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC2
CitrixBleed-2 Checker & Poc automatic exploit and check token.
CVE-2025-5777CRITICALsob ataqueransomware06 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir
GitHub PoC9
A PoC exploit for CVE-2025-32463 - Sudo Privilege Escalation
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC1
Chocapikk/CVE-2025-32463-lab
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC2
CVE-2024-55963, allows unauthenticated remote code execution on Appsmith Enterprise platform due to a misconfigured PostgreSQL database included by default
CVE-2024-55963MEDIUM06 jul 2025
An issue was discovered in Appsmith before 1.51. A user on Appsmith that doesn't have admin permissions can trigger the
38RISCO
abrir
GitHub PoC
Citrix Bleed 2 PoC Scanner (CVE-2025-5777)
CVE-2025-5777CRITICALsob ataqueransomware06 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir
GitHub PoC3
ibrahmsql/CVE-2023-45131
CVE-2023-45131HIGH06 jul 2025
Unauthenticated access to new private chat messages in Discourse
41RISCO
abrir
GitHub PoC2
NoobCat2000/CVE-2022-37969
CVE-2022-37969HIGHsob ataque06 jul 2025
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISCO
abrir
VulnCheck XDB
initial-access
CVE-2021-2564606 jul 2025
Authenticated users can override system configurations in their requests which allows them to execute arbitrary code.
60RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-5777CRITICALsob ataqueransomware06 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir
VulnCheck XDB
local
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-29927CRITICAL06 jul 2025
Authorization Bypass in Next.js Middleware
85RISCO
abrir
VulnCheck XDB
local
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2025-5777CRITICALsob ataqueransomware06 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir
GitHub PoC1
An analysis and demonstration of the unauthenticated SQL Injection vulnerability (CVE-2022-3141) in ACS EDU 3rd Gen.
CVE-2022-314106 jul 2025
Translatepress Multilinugal < 2.3.3 - Admin+ SQLi
23RISCO
abrir
GitHub PoC216
PoC & Exploit for CVE-2025-32023 / PlaidCTF 2025 "Zerodeo"
CVE-2025-32023HIGH06 jul 2025
Redis allows out of bounds writes in hyperloglog commands leading to RCE
41RISCO
abrir
GitHub PoC
Royall-Researchers/CVE-2024-9264
CVE-2024-9264CRITICAL05 jul 2025
Grafana SQL Expressions allow for remote code execution
85RISCO
abrir
GitHub PoC
CitrixBleed2 poc
CVE-2025-5777CRITICALsob ataqueransomware05 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir
GitHub PoC
Grafana RCE
CVE-2024-9264CRITICAL05 jul 2025
Grafana SQL Expressions allow for remote code execution
85RISCO
abrir
GitHub PoC2
ibrahmsql/discourse-CVE-2021-41163
CVE-2021-41163CRITICAL05 jul 2025
RCE via malicious SNS subscription payload
53RISCO
abrir
GitHub PoC3
ibrahmsql/CVE-2021-41163
CVE-2021-41163CRITICAL05 jul 2025
RCE via malicious SNS subscription payload
53RISCO
abrir
GitHub PoC
Papercut Vulnerability, Affected Versions are PaperCut MF or NG version 8.0 or later (excluding patched versions) on all OS platforms.
CVE-2023-27350CRITICALsob ataqueransomware05 jul 2025
This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Bui
100RISCO
abrir
GitHub PoC
CVE-2025-32463
CVE-2025-32463CRITICALsob ataque05 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir
GitHub PoC3
cve-2025-32462' demo
CVE-2025-32462LOW05 jul 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo
28RISCO
abrir
GitHub PoC3
Memory disclosure vulnerability in Citrix NetScaler ADC and Gateway when configured as a Gateway (VPN virtual server, ICA proxy, CVPN, RDP Proxy).
CVE-2025-5777CRITICALsob ataqueransomware05 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2023-27350CRITICALsob ataqueransomware05 jul 2025
This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Bui
100RISCO
abrir
GitHub PoC1
Mezzanine CMS 6.1.0 XSS (CVE-2025-50481)
CVE-2025-50481MEDIUM05 jul 2025
A cross-site scripting (XSS) vulnerability in the component /blog/blogpost/add of Mezzanine CMS v6.1.0 allows attackers
33RISCO
abrir
GitHub PoC
Royall-Researchers/CVE-2025-24071
CVE-2025-24071MEDIUM05 jul 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISCO
abrir
anteriorpágina 239 / 2.531próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.