Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.058exploits catalogados
35.300CVEs com exploração pública
24.695testados em laboratório
14.096 exploits
GitHub PoC9
Meatballs1/cve-2013-1300
CVE-2013-130009 set 2013
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W
43RISCO
abrir
GitHub PoC2
Do you own security hotfix with Deviare hooking
CVE-2010-397107 ago 2013
Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in msh
60RISCO
abrir
GitHub PoC5
CVE-2013-2596 exploit for android
CVE-2013-2596HIGHsob ataque16 jul 2013
Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain
71RISCO
abrir
GitHub PoC
tarunyadav/fix-cve-2013-2094
CVE-2013-2094HIGHsob ataque18 jun 2013
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data t
83RISCO
abrir
GitHub PoC4
CVE-2013-2094 Linux 2.6.32/2.6.37 - 3.8.10 PERF_EVENTS local root x86/x86_64
CVE-2013-2094HIGHsob ataque16 jun 2013
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data t
83RISCO
abrir
GitHub PoC
CVE-2011-1485 - Published: 2011-04-01 - PolicyKit:
CVE-2011-148516 jun 2013
Race condition in the pkexec utility and polkitd daemon in PolicyKit (aka polkit) 0.96 allows local users to gain privil
38RISCO
abrir
GitHub PoC12
CVE-2013-2597 exploit
CVE-2013-2597HIGHsob ataque11 jun 2013
Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6
71RISCO
abrir
GitHub PoC17
CVE-2013-2094 exploit for android
CVE-2013-2094HIGHsob ataque05 jun 2013
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data t
83RISCO
abrir
GitHub PoC2
Novell ZENworks Mobile Management - LFI RCE
CVE-2013-108131 mai 2013
Directory traversal vulnerability in MDM.php in Novell ZENworks Mobile Management (ZMM) 2.6.1 and 2.7.0 allows remote at
50RISCO
abrir
GitHub PoC30
For the analysis of CVE-2013-2028
CVE-2013-202821 mai 2013
The ngx_http_parse_chunked function in http/ngx_http_parse.c in nginx 1.3.9 through 1.4.0 allows remote attackers to cau
60RISCO
abrir
GitHub PoC91
original cve-2013-2094 exploit and a rewritten version for educational purposes
CVE-2013-2094HIGHsob ataque20 mai 2013
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data t
83RISCO
abrir
GitHub PoC10
feliam/CVE-2013-2730
CVE-2013-273015 mai 2013
Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attacke
60RISCO
abrir
GitHub PoC24
feliam/CVE-2013-2729
CVE-2013-2729HIGHsob ataque15 mai 2013
Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attack
83RISCO
abrir
GitHub PoC1
This is used to scan for CVE-2012-2122 vulnerable servers.
CVE-2012-212209 mai 2013
sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x befor
60RISCO
abrir
GitHub PoC1
Discover uPNP devices vulnerable to CVE-2013-0229 / CVE-2013-0230 / CVE-2012-5958 / CVE-2012-5959
CVE-2012-595814 abr 2013
Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable
60RISCO
abrir
GitHub PoC1
Discover uPNP devices vulnerable to CVE-2013-0229 / CVE-2013-0230 / CVE-2012-5958 / CVE-2012-5959
CVE-2013-022914 abr 2013
The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd before 1.4 allows remote attacke
60RISCO
abrir
GitHub PoC3
MySQL-Fu is a Ruby based MySQL Client Script I wrote. It does most of the stuff a normal MySQL client might do: SQL Shell, Update/Delete/Drop Database/Table, Add/Delete Users, Dump Database(s)/Table w/ option for gzip...... Plus a few extra options to make life a little easier for pentests. Includes Several builtin PHP Command Shell options as well as Pentestmonkey's PHP Reverse Shell, in addition to multiple options for file writing and reading (all files read logged locally for offline analysis later), also includes Ruby port of Kingcope's CVE-2012-5613 Linux MySQL Privilege Escalation Exploit.
CVE-2012-561309 fev 2013
MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and possibly other versions, when configured to assign the
50RISCO
abrir
GitHub PoC2
heroku/heroku-CVE-2013-0333
CVE-2013-033329 jan 2013
lib/active_support/json/backends/yaml.rb in Ruby on Rails 2.3.x before 2.3.16 and 3.0.x before 3.0.20 does not properly
60RISCO
abrir
GitHub PoC5
Bootstrapped Rails 3.2.10 to test the remote code exploit CVE-2013-0156
CVE-2013-015612 jan 2013
active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19, 3.1.x before 3.1.10, an
60RISCO
abrir
GitHub PoC
crack repo from jnunemaker but with version 0.1.8 and rails CVE-2013-0156 vulnerability fixed
CVE-2013-015611 jan 2013
active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19, 3.1.x before 3.1.10, an
60RISCO
abrir
GitHub PoC1
Inspect all of your heroku apps to see if they are running a vulnerable version of Rails
CVE-2013-015611 jan 2013
active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19, 3.1.x before 3.1.10, an
60RISCO
abrir
GitHub PoC
Silly Rails App to demonstrate vuln CVE-2013-0156
CVE-2013-015610 jan 2013
active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19, 3.1.x before 3.1.10, an
60RISCO
abrir
GitHub PoC1
Mempodipper, a linux local root exploit.
CVE-2012-005629 dez 2012
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when
28RISCO
abrir
GitHub PoC16
Python Apache Killer (Range Header DoS CVE-2011-3192)
CVE-2011-319226 out 2011
The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attac
60RISCO
abrir
GitHub PoC1
http://www.oracle.com/technetwork/topics/security/alert-cve-2010-4476-305811.html
CVE-2010-447610 fev 2011
The Double.parseDouble method in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and
28RISCO
abrir
GitHub PoC4
sample exploit of buffer overflow in libpng
CVE-2010-120514 set 2010
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might
35RISCO
abrir
anteriorpágina 470 / 470

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.