Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

76.542exploits catalogados
34.971CVEs com exploração pública
24.695testados em laboratório
13.947 exploits
GitHub PoC6
CVE-2020-3452 - Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) traversal
CVE-2020-3452HIGHsob ataque03 fev 2021
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability
100RISCO
abrir
GitHub PoC
cdeletre/Serpentiel-CVE-2021-3156
CVE-2021-3156HIGHsob ataque03 fev 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC5
CVE-2021-3156 Vagrant Lab
CVE-2021-3156HIGHsob ataque03 fev 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC158
Root shell PoC for CVE-2021-3156
CVE-2021-3156HIGHsob ataque03 fev 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC
CTF for HDE 64 students at See Security College. Exploit a JWT (web part) & CVE-2021-3156 (LPE part).
CVE-2021-3156HIGHsob ataque03 fev 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC24
Exploit of CVE-2019-8942 and CVE-2019-8943
CVE-2019-894301 fev 2021
WordPress through 5.0.3 allows Path Traversal in wp_crop_image(). An attacker (who has privileges to crop an image) can
60RISCO
abrir
GitHub PoC
Patch Script for CVE-2021-3156 Heap Overflow
CVE-2021-3156HIGHsob ataque01 fev 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC
Modified version of auxiliary/admin/http/tomcat_ghostcat, it can Read any file
CVE-2020-1938CRITICALsob ataque01 fev 2021
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISCO
abrir
GitHub PoC1
SantiagoSerrao/ScannerCVE-2021-3156
CVE-2021-3156HIGHsob ataque01 fev 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC3
0xNinjaCyclone/cve-2019-3396
CVE-2019-3396CRITICALsob ataqueransomware01 fev 2021
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from vers
100RISCO
abrir
GitHub PoC3
Description Sudo before 1.9.5p2 has a Heap-based Buffer Overflow, allowing privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.
CVE-2021-3156HIGHsob ataque31 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC7
A docker environment to research CVE-2021-3156
CVE-2021-3156HIGHsob ataque31 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC7
teamtopkarl/CVE-2021-3156
CVE-2021-3156HIGHsob ataque31 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC2
复现别人家的CVEs系列
CVE-2021-3156HIGHsob ataque31 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC1.018
blasty/CVE-2021-3156
CVE-2021-3156HIGHsob ataque30 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC22
CVE-2021-3378 | FortiLogger - Unauthenticated Arbitrary File Upload (Metasploit)
CVE-2021-337830 jan 2021
FortiLogger 4.4.2.2 is affected by Arbitrary File Upload by sending a "Content-Type: image/png" header to Config/SaveUpl
60RISCO
abrir
GitHub PoC429
PoC for CVE-2021-3156 (sudo heap overflow)
CVE-2021-3156HIGHsob ataque30 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC1
checking CVE-2021-3156 vulnerability & patch script
CVE-2021-3156HIGHsob ataque30 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC
freeFV/CVE-2021-3156
CVE-2021-3156HIGHsob ataque29 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC39
Notes regarding CVE-2021-3156: Heap-Based Buffer Overflow in Sudo
CVE-2021-3156HIGHsob ataque29 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC116
This python file will decrypt the configurationFile used by hikvision cameras vulnerable to CVE-2017-7921.
CVE-2017-7921CRITICALsob ataque29 jan 2021
An Improper Authentication issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 16
100RISCO
abrir
GitHub PoC1
binw2018/CVE-2021-3156-SCRIPT
CVE-2021-3156HIGHsob ataque29 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC
pwn3z/CVE-2020-14882-WebLogic
CVE-2020-14882CRITICALsob ataque29 jan 2021
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions
100RISCO
abrir
GitHub PoC2
👻CVE-2017-16995
CVE-2017-1699528 jan 2021
The check_alu_op function in kernel/bpf/verifier.c in the Linux kernel through 4.4 allows local users to cause a denial
50RISCO
abrir
GitHub PoC4
baka9moe/CVE-2021-3156-Exp
CVE-2021-3156HIGHsob ataque28 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC3
CVE-2021-3156
CVE-2021-3156HIGHsob ataque28 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC18
1day research effort
CVE-2021-3156HIGHsob ataque28 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC5
cve-2021-3156;sudo堆溢出漏洞;漏洞检测
CVE-2021-3156HIGHsob ataque28 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC
CVE-2021-3156
CVE-2021-3156HIGHsob ataque27 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
GitHub PoC3
This simple bash script will patch the recently discovered sudo heap overflow vulnerability.
CVE-2021-3156HIGHsob ataque27 jan 2021
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISCO
abrir
anteriorpágina 380 / 465próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.