Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

75.902exploits catalogados
34.597CVEs com exploração pública
24.695testados em laboratório
13.727 exploits
GitHub PoC6
Proof-of-Concept for CVE-2023-38831 Zero-Day vulnerability in WinRAR
CVE-2023-38831HIGHsob ataqueransomware30 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC
winrar exploit 6.22 <=
CVE-2023-38831HIGHsob ataqueransomware30 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC1
Ben1B3astt/CVE-2023-38831_ReverseShell_Winrar
CVE-2023-38831HIGHsob ataqueransomware30 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC
winrar exploit 6.22 <=
CVE-2023-38831HIGHsob ataqueransomware30 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC24
PoC Script for CVE-2023-4596, unauthenticated Remote Command Execution through arbitrary file uploads.
CVE-2023-4596CRITICAL30 ago 2023
Forminator <= 1.24.6 - Unauthenticated Arbitrary File Upload
68RISCO
abrir
GitHub PoC
CVE-2022-46169
CVE-2022-46169CRITICALsob ataque30 ago 2023
Unauthenticated Command Injection
100RISCO
abrir
GitHub PoC5
A Nuclei template to detect ZeroQlik (CVE-2023-41265 and CVE-2023-41266)
CVE-2023-41265CRITICALsob ataqueransomware30 ago 2023
An HTTP Request Tunneling vulnerability found in Qlik Sense Enterprise for Windows for versions May 2023 Patch 3 and ear
100RISCO
abrir
GitHub PoC
hanmin0512/CVE-2014-6271_pwnable
CVE-2014-6271CRITICALsob ataque29 ago 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISCO
abrir
GitHub PoC5
Remote Code Execution on Junos OS CVE-2023-36846
CVE-2023-36846MEDIUMsob ataque29 ago 2023
Junos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload arbitrary files
85RISCO
abrir
GitHub PoC1
Proof of Concept (POC) for CVE-2023-38831 WinRAR
CVE-2023-38831HIGHsob ataqueransomware29 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC
This repository has both an attack detection tool and a Proof-of-Concept (PoC) Python script for the WinRAR CVE-2023-38831 vulnerability.
CVE-2023-38831HIGHsob ataqueransomware29 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC13
Adapted CVE-2020-0041 root exploit for Pixel 3
CVE-2020-0041HIGHsob ataque29 ago 2023
In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could
71RISCO
abrir
GitHub PoC40
Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC6
CloudPanel 2 Remote Code Execution Exploit
CVE-2023-35885CRITICAL28 ago 2023
CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication.
85RISCO
abrir
GitHub PoC22
Pasos necesarios para obtener una reverse shell explotando la vulnerabilidad de winrar CVE-2023-38831 en versiones anteriores a 6.23.
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC90
CVE-2023-38831 PoC (Proof Of Concept)
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC3
CVE-2023-38831 WinRAR
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC4
KQL Hunting for WinRAR CVE-2023-38831
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC11
CVE-2023-38831 winrar exploit generator and get reverse shell
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC
CVE-2023-28432检测工具
CVE-2023-28432HIGHsob ataque28 ago 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir
GitHub PoC1
POC for CVE-2023-24489 with bash.
CVE-2023-24489CRITICALsob ataque27 ago 2023
A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, coul
100RISCO
abrir
GitHub PoC7
PHPUnit RCE
CVE-2017-9841CRITICALsob ataque27 ago 2023
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers to execute arbitrary PHP c
100RISCO
abrir
GitHub PoC114
An easy to install and easy to run tool for generating exploit payloads for CVE-2023-38831, WinRAR RCE before versions 6.23
CVE-2023-38831HIGHsob ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC128
一款用于生成winrar程序RCE(即cve-2023-38831)的POC的工具。
CVE-2023-38831HIGHsob ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC2
IR-HuntGuardians/CVE-2023-38831-HUNT
CVE-2023-38831HIGHsob ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC1
Python implementation of CVE-2018-16858
CVE-2018-16858HIGH26 ago 2023
It was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attack which could
68RISCO
abrir
GitHub PoC115
watchtowrlabs/juniper-rce_cve-2023-36844
CVE-2023-36844MEDIUMsob ataque25 ago 2023
Junos OS: EX Series: A PHP vulnerability in J-Web allows an unauthenticated attacker to control important environment variables
100RISCO
abrir
GitHub PoC7
A PoC exploit for CVE-2021-42013 - Apache 2.4.49 & 2.4.50 Remote Code Execution
CVE-2021-42013CRITICALsob ataqueransomware25 ago 2023
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISCO
abrir
GitHub PoC
ptkhai15/OverlayFS---CVE-2021-3493
CVE-2021-3493HIGHsob ataque25 ago 2023
The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting o
98RISCO
abrir
GitHub PoC785
CVE-2023-38831 winrar exploit generator
CVE-2023-38831HIGHsob ataqueransomware25 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
anteriorpágina 261 / 458próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.