Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
76.313exploits catalogados
34.834CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.443Referência 21.797GitHub PoC 13.885VulnCheck XDB 8.484Nuclei 4.237Metasploit 3.467✓ só verificadosrecentespopularesrisco
13.812 exploits
GitHub PoC★ 4
A "Creation of Temporary Files in Directory with Insecure Permissions" vulnerability in PrintixService.exe, in Printix's "Printix Secure Cloud Print Management", Version 1.3.1106.0 and below allows any logged in user to elevate any executable or file to the SYSTEM context. This is achieved by exploiting race conditions in the Installer.
Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure
28RISCO
abrir ↗GitHub PoC★ 223
CVE-2022-22947
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISCO
abrir ↗GitHub PoC
Tools for get offsets and adding patch for support i386
In glibc 2.26 and earlier there is confusion in the usage of getcwd() by realpath() which can be used to write before th
43RISCO
abrir ↗GitHub PoC★ 15
Zabbix - SAML SSO Authentication Bypass
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 1
Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
98RISCO
abrir ↗GitHub PoC★ 47
Test whether a container environment is vulnerable to container escapes via CVE-2022-0492
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. Th
86RISCO
abrir ↗GitHub PoC
CVE-2022-24086 RCE
Adobe Commerce checkout improper input validation leads to remote code execution
100RISCO
abrir ↗GitHub PoC
This script is intended to validate Apache Struts 2 vulnerability (CVE-2017-5638), AKA Struts-Shock.
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISCO
abrir ↗GitHub PoC
skentagon/CVE-2021-41773
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISCO
abrir ↗GitHub PoC★ 1
Fa1c0n35/zabbix-cve-2022-23131
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 303
PoC for CVE-2022-21971 "Windows Runtime Remote Code Execution Vulnerability"
Windows Runtime Remote Code Execution Vulnerability
83RISCO
abrir ↗GitHub PoC★ 8
Apache APISIX batch-requests RCE(CVE-2022-24112)
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISCO
abrir ↗GitHub PoC★ 1
Script to demonstrate the Grafana directory traversal exploit (CVE-2021-43798).
Grafana path traversal
100RISCO
abrir ↗GitHub PoC★ 8
POC for CVE-2022-24124
The query API in Casdoor before 1.13.1 has a SQL injection vulnerability related to the field and value parameters, as d
50RISCO
abrir ↗GitHub PoC★ 2
pykiller/CVE-2022-23131
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 1
trganda/CVE-2022-23131
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 8
Zabbix SSO Bypass
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 2
mxypoo/CVE-2016-3116-DropbearSSH
CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-c
28RISCO
abrir ↗GitHub PoC★ 29
cve-2022-23131
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 1
TheJoyOfHacking/dirkjanm-CVE-2020-1472
Netlogon Elevation of Privilege Vulnerability
100RISCO
abrir ↗GitHub PoC
TheJoyOfHacking/SecuraBV-CVE-2020-1472
Netlogon Elevation of Privilege Vulnerability
100RISCO
abrir ↗GitHub PoC★ 43
CVE-2022-24112:Apache APISIX apisix/batch-requests RCE
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISCO
abrir ↗GitHub PoC
Apache APISIX apisix/batch-requests RCE
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISCO
abrir ↗GitHub PoC
CVE-2019-15107 Webmin 1.920 RCE
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISCO
abrir ↗GitHub PoC★ 1
poc
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 35
CVE-2022-24086 about Magento RCE
Adobe Commerce checkout improper input validation leads to remote code execution
100RISCO
abrir ↗GitHub PoC★ 3
An exploit for CVE-2020-6418 implementing a SHELF Loader. Published as part of Tmp.0ut volume 2
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corru
100RISCO
abrir ↗GitHub PoC★ 3
1mxml/CVE-2022-23131
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC
qq1549176285/CVE-2022-23131
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗GitHub PoC★ 95
cve-2022-23131 exp
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.