Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
77.401exploits catalogados
35.511CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.451Referência 22.332GitHub PoC 14.209VulnCheck XDB 8.646Nuclei 4.289Metasploit 3.474✓ só verificadosrecentespopularesrisco
24.451 exploits
Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'image.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'IPAccess.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'issue.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'ShortURL.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - '/implementation/Management/db_connect.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'IssuePublish.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Language.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IncrediMail IMMenuShellExt - ActiveX Control Buffer Overflow
Stack-based buffer overflow in the DoWebMenuAction function in the IncrediMail IMMenuShellExt ActiveX control (ImShExt.d
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Section.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Publication.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'LocalizerConfig.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'LocalizerLanguage.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'Log.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'LoginAttempts.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Campsite 2.6.1 - 'TimeUnit.php?g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OTRS 2.0.4 - index.pl Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.pl in Open Ticket Request System (OTRS) 2.0.x allows remote attackers
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SunShop Shopping Cart 4.0 - 'index.php' Multiple SQL Injections
SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 allows remote attackers to execute
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Versalsoft HTTP File Uploader - ActiveX 6.36 AddFile Remote Denial of Service
Buffer overflow in the AddFile function in VersalSoft HTTP File Upload ActiveX control (UFileUploaderD.dll) allows remot
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ELinks Relative 0.10.6/011.1 - Path Arbitrary Code Execution
Untrusted search path vulnerability in the add_filename_to_string function in intl/gettext/loadmsgcat.c for Elinks 0.11.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FipsCMS 2.1 - 'pid' SQL Injection
SQL injection vulnerability in index.asp in fipsCMS 2.1 allows remote attackers to execute arbitrary SQL commands via th
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Trend Micro ServerProtect 5.58 - 'SpntSvc.exe' Remote Stack Buffer Overflow
Multiple stack-based buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2 Build 1174 allow remote
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHP PEAR 1.5.3 - INSTALL-AS Attribute Arbitrary File Overwrite
Directory traversal vulnerability in the installer in PEAR 1.0 through 1.5.3 allows user-assisted remote attackers to ov
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SunShop Shopping Cart 4.0 - 'index.php?l' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 allows remote attacke
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Net Portal Dynamic System (NPDS) 5.10 - Remote Code Execution (2)
Multiple SQL injection vulnerabilities in mainfile.php in NPDS 5.10 and earlier allow remote authenticated users to exec
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Apple 2.0.4 - Safari Local Cross-Site Scripting
Unspecified vulnerability in Apple Safari allows local users to obtain sensitive information (saved keychain passwords)
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft SharePoint Server 3.0 - Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Microsoft Windows SharePoint Services 3.0 for Windows Server 2003
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ActSoft DVD-Tools - 'dvdtools.ocx 3.8.5.0' Remote Stack Overflow
Buffer overflow in the ActSoft DVD-Tools ActiveX control (dvdtools.ocx) allows remote attackers to execute arbitrary cod
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ZOO - '.ZOO' Decompression Infinite Loop Denial of Service (PoC)
zoo decoder 2.10 (zoo-2.10), as used in multiple products including (1) Barracuda Spam Firewall 3.4 and later with virus
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Zoo 2.10 - .ZOO Compression Algorithm Remote Denial of Service
PicoZip allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Office Viewer OCX 3.2.0.5 - Multiple Denial of Service Vulnerabilities
Multiple buffer overflows in the Office Viewer OCX ActiveX control (oa.ocx) 3.2 allow remote attackers to cause a denial
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.