Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

76.559exploits catalogados
34.978CVEs com exploração pública
24.695testados em laboratório
24.443 exploits
Exploit-DBVexDay Proof
File Sharing Wizard 1.5.0 - Buffer Overflow (PoC)
CVE-2010-2330doswindows15 jun 2010
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to cause a denial of service (c
28RISCO
abrir
Exploit-DBVexDay Proof
CA BrightStor ARCserve Backup - 'AddColumn()' ActiveX Buffer Overflow (Metasploit)
CVE-2008-1472remotewindows15 jun 2010
Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including Br
50RISCO
abrir
Exploit-DBVexDay Proof
RealPlayer - 'rmoc3260.dll' ActiveX Control Heap Corruption (Metasploit)
CVE-2008-1309remotewindows15 jun 2010
The RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll in RealNetworks RealPlayer Enterprise, RealPlayer 10, Rea
50RISCO
abrir
Exploit-DBVexDay Proof
FlipViewer FViewerLoading - ActiveX Control Buffer Overflow (Metasploit)
CVE-2007-2919remotewindows15 jun 2010
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipView
50RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch IMail Server - IMAP SEARCH Buffer Overflow (Metasploit)
CVE-2007-3925remotewindows15 jun 2010
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote au
60RISCO
abrir
Exploit-DBVexDay Proof
SIPfoundry sipXezPhone 0.35a - CSeq Field Overflow (Metasploit)
CVE-2006-3524remotewindows15 jun 2010
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RISCO
abrir
Exploit-DBVexDay Proof
SIPfoundry sipXphone 2.6.0.27 - CSeq Buffer Overflow (Metasploit)
CVE-2006-3524remotewindows15 jun 2010
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RISCO
abrir
Exploit-DBVexDay Proof
PuTTy.exe 0.53 - Remote Buffer Overflow (Metasploit)
CVE-2002-1359remotewindows15 jun 2010
Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers
60RISCO
abrir
Exploit-DBVexDay Proof
Mercury/32 < 4.01b - PH Server Module Buffer Overflow (Metasploit)
CVE-2005-4411remotewindows15 jun 2010
Buffer overflow in Mercury Mail Transport System 4.01b allows remote attackers to execute arbitrary code via a long requ
50RISCO
abrir
Exploit-DBVexDay Proof
AIM Triton 1.0.4 - CSeq Buffer Overflow (Metasploit)
CVE-2006-3524remotewindows15 jun 2010
Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a
50RISCO
abrir
Exploit-DBVexDay Proof
SasCam 2.6.5 - Remote HTTP Server Crash
CVE-2010-2505doswindows15 jun 2010
Soft SaschArt SasCAM Webcam Server 2.6.5, 2.7, and earlier allows remote attackers to cause a denial of service (crash)
23RISCO
abrir
Exploit-DBVexDay Proof
Adobe - JBIG2Decode Memory Corruption (Metasploit) (1)
CVE-2009-0658localwindows15 jun 2010
Buffer overflow in Adobe Reader 9.0 and earlier, and Acrobat 9.0 and earlier, allows remote attackers to execute arbitra
60RISCO
abrir
Exploit-DBVexDay Proof
Python 3.2 - 'audioop' Module Memory Corruption
CVE-2010-2089dosunix14 jun 2010
The audioop module in Python 2.7 and 3.2 does not verify the relationships between size arguments and byte string length
28RISCO
abrir
Exploit-DBVexDay Proof
VideoWhisper PHP 2 Way Video Chat - 'r' Cross-Site Scripting
CVE-2010-4971webappsphp14 jun 2010
Cross-site scripting (XSS) vulnerability in VideoWhisper PHP 2 Way Video Chat component for Joomla! allows remote attack
23RISCO
abrir
Exploit-DBVexDay Proof
LibTIFF 3.9.4 - Unknown Tag Second Pass Processing Remote Denial of Service
CVE-2010-2631doslinux14 jun 2010
LibTIFF 3.9.0 ignores tags in certain situations during the first stage of TIFF file processing and does not properly ha
23RISCO
abrir
Exploit-DBVexDay Proof
XnView 1.97.4 - '.MBM' File Remote Heap Buffer Overflow
CVE-2010-1932remotewindows14 jun 2010
Heap-based buffer overflow in XnView 1.97.4 and possibly earlier allows remote attackers to execute arbitrary code via a
28RISCO
abrir
Exploit-DB
iOS Impact PDF Reader 2.0 - POST Method Remote Denial of Service
CVE-2010-2332dosios14 jun 2010
Impact Financials, Inc. Impact PDF Reader 2.0, 1.2, and other versions for iPhone and iPod touch allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
UnrealIRCd 3.2.8.1 - Remote Downloader/Execute
CVE-2010-2075remotelinux13 jun 2010
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally
60RISCO
abrir
Exploit-DBVexDay Proof
Litespeed Technologies - Web Server Remote Poison Null Byte
CVE-2010-2333remotemultiple13 jun 2010
LiteSpeed Technologies LiteSpeed Web Server 4.0.x before 4.0.15 allows remote attackers to read the source code of scrip
50RISCO
abrir
Exploit-DBVexDay Proof
Digital Interchange Calendar - SQL Injection
CVE-2010-5023webappsasp13 jun 2010
SQL injection vulnerability in index.asp in Digital Interchange Calendar 5.8.5 allows remote attackers to execute arbitr
23RISCO
abrir
Exploit-DBVexDay Proof
UTStats - Cross-Site Scripting / SQL Injection / Full Path Disclosure
CVE-2010-5007webappsphp13 jun 2010
Cross-site scripting (XSS) vulnerability in pages/match_report.php in UTStats Beta 4 and earlier allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
Yamamah Photo Gallery 1.00 - 'calbums' SQL Injection
CVE-2010-1300webappsphp13 jun 2010
SQL injection vulnerability in index.php in Yamamah (aka Dove Photo Album) 1.00 allows remote attackers to execute arbit
23RISCO
abrir
Exploit-DBVexDay Proof
Digital Interchange Document Library - SQL Injection
CVE-2010-5021webappsasp13 jun 2010
SQL injection vulnerability in view_group.asp in Digital Interchange Document Library 5.8.5 allows remote attackers to e
23RISCO
abrir
Exploit-DBVexDay Proof
Yamamah Photo Gallery 1.00 - 'download.php' Local File Disclosure
CVE-2010-2334webappsphp13 jun 2010
Directory traversal vulnerability in themes/default/download.php in Yamamah Photo Gallery 1.00, as distributed before 20
23RISCO
abrir
Exploit-DBVexDay Proof
UTStats - Cross-Site Scripting / SQL Injection / Full Path Disclosure
CVE-2010-5009webappsphp13 jun 2010
SQL injection vulnerability in index.php in UTStats Beta 4 and earlier allows remote attackers to execute arbitrary SQL
23RISCO
abrir
Exploit-DBVexDay Proof
Yamamah 1.0 - SQL Injection
CVE-2010-1300webappsphp12 jun 2010
SQL injection vulnerability in index.php in Yamamah (aka Dove Photo Album) 1.00 allows remote attackers to execute arbit
23RISCO
abrir
Exploit-DB
Yamamah - 'news' SQL Injection / Source Code Disclosure
CVE-2010-2336webappsphp12 jun 2010
index.php in Yamamah Photo Gallery 1.00 allows remote attackers to obtain the source code of executable files within the
23RISCO
abrir
Exploit-DB
Yamamah - 'news' SQL Injection / Source Code Disclosure
CVE-2010-2335webappsphp12 jun 2010
SQL injection vulnerability in index.php in Yamamah Photo Gallery 1.00, as distributed before 20100618, allows remote at
23RISCO
abrir
Exploit-DBVexDay Proof
VU Web Visitor Analyst - Authentication Bypass
CVE-2010-2338webappsasp12 jun 2010
Multiple SQL injection vulnerabilities in redir.asp in VU Web Visitor Analyst allow remote attackers to execute arbitrar
23RISCO
abrir
Exploit-DBVexDay Proof
BrightSuite Groupware - SQL Injection
CVE-2010-5008webappsasp12 jun 2010
SQL injection vulnerability in pages/contact_list_mail_form.asp in BrightSuite Groupware 5.4 allows remote attackers to
23RISCO
abrir
anteriorpágina 371 / 815próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.