Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.020exploits catalogados
35.276CVEs com exploração pública
24.695testados em laboratório
77.020 exploits
GitHub PoC
bfengj/CVE-2024-32002-hook
CVE-2024-32002CRITICAL22 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC2
bfengj/CVE-2024-32002-Exploit
CVE-2024-32002CRITICAL22 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC
Repo for testing CVE-2024-32002
CVE-2024-32002CRITICAL22 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC
CVE-2024-32002-hook
CVE-2024-32002CRITICAL22 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC
This is the main repository for CVE 2024-32002, and requires recursive cloning because it contains the submodels necessary for execution.
CVE-2024-32002CRITICAL22 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC6
Este script demuestra cómo explotar la vulnerabilidad CVE-2024-32002 para obtener una reverse shell, proporcionando acceso remoto al sistema afectado. Úselo con precaución en entornos controlados y solo con fines educativos o de pruebas de seguridad.
CVE-2024-32002CRITICAL21 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC
Este script está creado para mostar usuarios de DVR, VULNERABILIDAD (CVE-2018-9995)
CVE-2018-999521 mai 2024
TBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR L
60RISCO
abrir
Metasploit600
Atlassian Confluence Administrator Code Macro Remote Code Execution
CVE-2024-21683HIGH21 mai 2024
This High severity RCE (Remote Code Execution) vulnerability was introduced in version 5.2 of Confluence Data Center and
78RISCO
abrir
GitHub PoC
CVE-2024-32002 hook POC
CVE-2024-32002CRITICAL21 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-27130HIGH21 mai 2024
QTS, QuTS hero
53RISCO
abrir
VulnCheck XDB
local
CVE-2023-2640HIGH21 mai 2024
On Ubuntu kernels carrying both c914c0e27eb0 and "UBUNTU: SAUCE: overlayfs: Skip permission checking for trusted.overlay
61RISCO
abrir
VulnCheck XDB
initial-access
CVE-2018-999521 mai 2024
TBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR L
60RISCO
abrir
GitHub PoC2
CVE-2019-3396 Memshell for Behinder
CVE-2019-3396CRITICALsob ataqueransomware21 mai 2024
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from vers
100RISCO
abrir
GitHub PoC
CVE-2024-32002 POC
CVE-2024-32002CRITICAL21 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC3
Patch your D-Link device affected by CVE-2024-3272
CVE-2024-3272CRITICALsob ataque21 mai 2024
D-Link DNS-320L/DNS-325/DNS-327L/DNS-340L HTTP GET Request nas_sharing.cgi hard-coded credentials
100RISCO
abrir
GitHub PoC
This script checks if a target host is vulnerable to CVE-2023-34992 by sending a crafted payload to the FortiSIEM appliance. It then analyzes the response to determine if the host is vulnerable.
CVE-2023-34992CRITICAL21 mai 2024
A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet
85RISCO
abrir
GitHub PoC
Securenetology/CVE-2013-3900
CVE-2013-3900MEDIUMsob ataque21 mai 2024
WinVerifyTrust Signature Validation Vulnerability
75RISCO
abrir
GitHub PoC1
Critical heap buffer overflow vulnerability in the handle_trace_request and parse_trace_request functions of the Fluent Bit HTTP server.
CVE-2024-4323CRITICAL21 mai 2024
Fluent Bit Memory Corruption Vulnerability
53RISCO
abrir
GitHub PoC1
CVE-2024-32002-hook
CVE-2024-32002CRITICAL20 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC15
This proof-of-concept script demonstrates how to exploit CVE-2024-4323, a memory corruption vulnerability in Fluent Bit, enabling remote code execution.
CVE-2024-4323CRITICAL20 mai 2024
Fluent Bit Memory Corruption Vulnerability
53RISCO
abrir
GitHub PoC3
jweny/CVE-2024-32002_HOOK
CVE-2024-32002CRITICAL20 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
GitHub PoC3
jweny/CVE-2024-32002_EXP
CVE-2024-32002CRITICAL20 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-22120CRITICAL20 mai 2024
Time Based SQL Injection in Zabbix Server Audit Log
70RISCO
abrir
GitHub PoC1
CrackerCat/CVE-2024-32002_EXP
CVE-2024-32002CRITICAL20 mai 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISCO
abrir
VulnCheck XDB
initial-access
CVE-2024-23108CRITICAL20 mai 2024
An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet
85RISCO
abrir
GitHub PoC
fabdotnet/CVE-2023-27100
CVE-2023-27100CRITICAL20 mai 2024
Improper restriction of excessive authentication attempts in the SSHGuard component of Netgate pfSense Plus software v22
48RISCO
abrir
VulnCheck XDB
local
CVE-2019-2215HIGHsob ataque20 mai 2024
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
98RISCO
abrir
GitHub PoC203
CVE-2024-4367 & CVE-2024-34342 Proof of Concept
CVE-2024-4367MEDIUM20 mai 2024
A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js c
55RISCO
abrir
GitHub PoC11
Unlock your Huawei device with ADB (CVE-2019-2215)
CVE-2019-2215HIGHsob ataque20 mai 2024
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
98RISCO
abrir
GitHub PoC140
Time Based SQL Injection in Zabbix Server Audit Log --> RCE
CVE-2024-22120CRITICAL20 mai 2024
Time Based SQL Injection in Zabbix Server Audit Log
70RISCO
abrir
anteriorpágina 396 / 2.568próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.