Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.058exploits catalogados
35.300CVEs com exploração pública
24.695testados em laboratório
14.096 exploits
GitHub PoC5
LakshmiDesai/CVE-2016-8655
CVE-2016-865508 dez 2016
Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cau
43RISCO
abrir
GitHub PoC
Inspec profile for detecting CVE-2016-5195 aka Dirty COW
CVE-2016-5195HIGHsob ataque08 dez 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC
PoC for CVE-2016-8655 that causes a kernel panic
CVE-2016-865507 dez 2016
Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cau
43RISCO
abrir
GitHub PoC231
Shellshock exploit + vulnerable environment
CVE-2014-6271CRITICALsob ataque07 dez 2016
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISCO
abrir
GitHub PoC
翻译文章,CVE-2015-0057漏洞在32位和64位系统上的利用。Exploiting the win32k!xxxEnableWndSBArrows use-after-free (CVE 2015-0057) bug on both 32-bit and 64-bit(Aaron Adams of NCC )
CVE-2015-005705 dez 2016
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 a
28RISCO
abrir
GitHub PoC151
Full exploit of CVE-2016-6754(BadKernel) and slide of SyScan360 2016
CVE-2016-675428 nov 2016
A remote code execution vulnerability in Webview in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-
23RISCO
abrir
GitHub PoC2
shekkbuilder/CVE-2016-7434
CVE-2016-743427 nov 2016
The read_mru_list function in NTP before 4.2.8p9 allows remote attackers to cause a denial of service (crash) via a craf
35RISCO
abrir
GitHub PoC2
Information about my advisory on CVE-2006-3747 (Apache mod_rewrite LDAP off-by-one buffer overflow).. At the time, it was the first public working exploit :)
CVE-2006-374726 nov 2016
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and o
60RISCO
abrir
GitHub PoC937
Dirty Cow exploit - CVE-2016-5195
CVE-2016-5195HIGHsob ataque25 nov 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC25
NTPD remote DOS exploit and vulnerable container
CVE-2016-743422 nov 2016
The read_mru_list function in NTP before 4.2.8p9 allows remote attackers to cause a denial of service (crash) via a craf
35RISCO
abrir
GitHub PoC10
这里保留着部分脏牛漏洞的利用代码
CVE-2016-5195HIGHsob ataque17 nov 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC7
Exploit for Joomla 3.4.4 - 3.6.4 (CVE-2016-8869 and CVE-2016-8870)
CVE-2016-886910 nov 2016
The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before
60RISCO
abrir
GitHub PoC
bluebluelan/CVE-2015-7547-proj-master
CVE-2015-754710 nov 2016
Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C
45RISCO
abrir
GitHub PoC
Recent Linux privilege escalation exploit
CVE-2016-5195HIGHsob ataque06 nov 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC
Source code: https://github.com/XiphosResearch/exploits/tree/master/Joomraa
CVE-2016-886902 nov 2016
The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before
60RISCO
abrir
GitHub PoC5
firebroo/CVE-2016-6663
CVE-2016-666302 nov 2016
Race condition in Oracle MySQL before 5.5.52, 5.6.x before 5.6.33, 5.7.x before 5.7.15, and 8.x before 8.0.1; MariaDB be
23RISCO
abrir
GitHub PoC
hittlle/CVE-2011-1974-PoC
CVE-2011-197401 nov 2016
NDISTAPI.sys in the NDISTAPI driver in Remote Access Service (RAS) in Microsoft Windows XP SP2 and SP3 and Windows Serve
23RISCO
abrir
GitHub PoC16
Scan vuls kernel CVE-2016-5195 - DirtyCow
CVE-2016-5195HIGHsob ataque29 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC6
oleg-fiksel/ansible_CVE-2016-5195_check
CVE-2016-5195HIGHsob ataque29 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC
Check the Browser's FlashPlayer version to check if it is vulnerable to exploit CVE-2016-7855
CVE-2016-7855HIGHsob ataque26 out 2016
Use-after-free vulnerability in Adobe Flash Player before 23.0.0.205 on Windows and OS X and before 11.2.202.643 on Linu
76RISCO
abrir
GitHub PoC32
Universal Android root tool based on CVE-2016-5195. Watch this space.
CVE-2016-5195HIGHsob ataque24 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC341
A CVE-2016-5195 exploit example.
CVE-2016-5195HIGHsob ataque23 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC10
Mitigates CVE-2016-5195 aka DirtyCOW
CVE-2016-5195HIGHsob ataque22 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC7
Dirty COW (CVE-2016-5195) vulnerability testing utility for Linux-based systems.
CVE-2016-5195HIGHsob ataque22 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC513
PoC for Dirty COW (CVE-2016-5195)
CVE-2016-5195HIGHsob ataque22 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC13
CVE-2016-5195 exploit written in Crystal
CVE-2016-5195HIGHsob ataque21 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC
Dirty Cow
CVE-2016-5195HIGHsob ataque21 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC1
ASRTeam/CVE-2016-5195
CVE-2016-5195HIGHsob ataque21 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC
Ansible playbook to mitigate CVE-2016-5195 on CentOS
CVE-2016-5195HIGHsob ataque21 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
GitHub PoC1.008
CVE-2016-5195 (dirtycow/dirtyc0w) proof of concept for Android
CVE-2016-5195HIGHsob ataque21 out 2016
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISCO
abrir
anteriorpágina 460 / 470próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.