Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.302exploits catalogados
35.469CVEs com exploração pública
24.695testados em laboratório
77.284 exploits
VulnCheck XDB
initial-access
CVE-2023-36846MEDIUMsob ataque29 ago 2023
Junos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload arbitrary files
85RISCO
abrir
GitHub PoC13
Adapted CVE-2020-0041 root exploit for Pixel 3
CVE-2020-0041HIGHsob ataque29 ago 2023
In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could
71RISCO
abrir
Metasploit600
VMWare Aria Operations for Networks (vRealize Network Insight) SSH Private Key Exposure
CVE-2023-34039CRITICAL29 ago 2023
Aria Operations for Networks contains an Authentication Bypass vulnerability due to a lack of unique cryptographic key g
75RISCO
abrir
VulnCheck XDB
infoleak
CVE-2024-27564MEDIUM29 ago 2023
pictureproxy.php in the dirk1983 mm1.ltd source code f9f4bbc allows SSRF via the url parameter. NOTE: the references sec
60RISCO
abrir
VulnCheck XDB
client-side
CVE-2023-38831HIGHsob ataqueransomware29 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2023-27163MEDIUM29 ago 2023
request-baskets up to v1.2.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/baske
48RISCO
abrir
GitHub PoC
This repository has both an attack detection tool and a Proof-of-Concept (PoC) Python script for the WinRAR CVE-2023-38831 vulnerability.
CVE-2023-38831HIGHsob ataqueransomware29 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC5
Remote Code Execution on Junos OS CVE-2023-36846
CVE-2023-36846MEDIUMsob ataque29 ago 2023
Junos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload arbitrary files
85RISCO
abrir
GitHub PoC
hanmin0512/CVE-2014-6271_pwnable
CVE-2014-6271CRITICALsob ataque29 ago 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISCO
abrir
GitHub PoC1
Proof of Concept (POC) for CVE-2023-38831 WinRAR
CVE-2023-38831HIGHsob ataqueransomware29 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC40
Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC22
Pasos necesarios para obtener una reverse shell explotando la vulnerabilidad de winrar CVE-2023-38831 en versiones anteriores a 6.23.
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC4
KQL Hunting for WinRAR CVE-2023-38831
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC3
CVE-2023-38831 WinRAR
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC6
CloudPanel 2 Remote Code Execution Exploit
CVE-2023-35885CRITICAL28 ago 2023
CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication.
85RISCO
abrir
GitHub PoC
CVE-2023-28432检测工具
CVE-2023-28432HIGHsob ataque28 ago 2023
Minio Information Disclosure in Cluster Deployment
100RISCO
abrir
GitHub PoC90
CVE-2023-38831 PoC (Proof Of Concept)
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
GitHub PoC11
CVE-2023-38831 winrar exploit generator and get reverse shell
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2023-3519CRITICALsob ataqueransomware28 ago 2023
Unauthenticated remote code execution
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2023-27163MEDIUM28 ago 2023
request-baskets up to v1.2.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/baske
48RISCO
abrir
VulnCheck XDB
infoleak
CVE-2023-26256HIGH28 ago 2023
An unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2
61RISCO
abrir
VulnCheck XDB
initial-access
CVE-2022-3998628 ago 2023
A Command injection vulnerability in RaspAP 2.8.0 thru 2.8.7 allows unauthenticated attackers to execute arbitrary comma
60RISCO
abrir
VulnCheck XDB
client-side
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
VulnCheck XDB
client-side
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2023-35885CRITICAL28 ago 2023
CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication.
85RISCO
abrir
VulnCheck XDB
client-side
CVE-2023-38831HIGHsob ataqueransomware28 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
VulnCheck XDB
client-side
CVE-2023-38831HIGHsob ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
VulnCheck XDB
client-side
CVE-2023-38831HIGHsob ataqueransomware27 ago 2023
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2017-7921CRITICALsob ataque27 ago 2023
An Improper Authentication issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 16
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2023-24489CRITICALsob ataque27 ago 2023
A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, coul
100RISCO
abrir
anteriorpágina 470 / 2.577próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.