Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
77.533exploits catalogados
35.607CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.455Referência 22.407GitHub PoC 14.247VulnCheck XDB 8.663Nuclei 4.287Metasploit 3.474✓ só verificadosrecentespopularesrisco
24.455 exploits
Exploit-DB✓ VexDay Proof
WoltLab Burning Book 1.1.2 - SQL Injection
Eval injection vulnerability in addentry.php in WoltLab Burning Book 1.1.2 allows remote attackers to execute arbitrary
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
WoltLab Burning Book 1.1.2 - SQL Injection
Multiple SQL injection vulnerabilities in addentry.php in WoltLab Burning Book 1.1.2 allow remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
KMail 1.x - HTML Element Handling Denial of Service
Kmail 1.9.1 on KDE 3.5.2, with "Prefer HTML to Plain Text" enabled, allows remote attackers to cause a denial of service
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Comdev One Admin 4.1 - 'Adminfoot.php' Remote Code Execution
Multiple PHP remote file inclusion vulnerabilities in Comdev One Admin Pro 4.1 allow remote attackers to execute arbitra
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Nvidia Graphics Driver 8774 - Local Buffer Overflow
The accelerated rendering functionality of NVIDIA Binary Graphics Driver (binary blob driver) For Linux v8774 and v8762,
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Internet Security Systems 3.6 - 'ZWDeleteFile()' Arbitrary File Deletion
ISS BlackICE PC Protection 3.6 cpj and cpu, and possibly earlier versions, allows local users to bypass the protection s
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Maintain 3.0.0-RC2 - 'Example6.php' Remote File Inclusion
PHP remote file inclusion vulnerability in lib/php/phphtmllib-2.5.4/examples/example6.php for maintain 3.0.0-RC2 allows
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Class Package Export Tool 5.0.2752 - 'Clspack.exe' Local Buffer Overflow (PoC)
Buffer overflow in Microsoft Class Package Export Tool (aka clspack.exe) allows context-dependent attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
CampSite 2.6.1 - 'g_documentRoot' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 20061110 allow remote attackers to execut
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Bloq 0.5.4 - '/files/mainfile.php?page[path]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Bloq 0.5.4 allow remote attackers to execute arbitrary PHP code vi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeBSD 6.1-RELEASE-p10 - 'scheduler' Local Denial of Service
p1003_1b.c in FreeBSD 6.1 allows local users to cause an unspecified denial of service by setting a scheduler policy, wh
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeBSD 6.1-RELEASE-p10 - 'ftruncate' Local Denial of Service
ufs_vnops.c in FreeBSD 6.1 allows local users to cause an unspecified denial of service by calling the ftruncate functio
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Bloq 0.5.4 - 'admin.php?page[path]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Bloq 0.5.4 allow remote attackers to execute arbitrary PHP code vi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
phpBB Add Name Module - 'Not_Mem.php' Remote File Inclusion
PHP remote file inclusion vulnerability in includes/not_mem.php in the Add Name module for PHP allows remote attackers t
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
phpBB Amazonia Mod - 'zufallscodepart.php' Remote File Inclusion
PHP remote file inclusion vulnerability in zufallscodepart.php in AMAZONIA MOD for phpBB allows remote attackers to exec
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Sun Solaris Netscape Portable Runtime API 4.6.1 - Local Privilege Escalation (1)
The Netscape Portable Runtime (NSPR) API 4.6.1 and 4.6.2, as used in Sun Solaris 10, trusts user-specified environment v
38RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 10 libnspr - 'LD_PRELOAD' Arbitrary File Creation Privilege Escalation (1)
The Netscape Portable Runtime (NSPR) API 4.6.1 and 4.6.2, as used in Sun Solaris 10, trusts user-specified environment v
38RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Bloq 0.5.4 - 'index.php?page[path]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Bloq 0.5.4 allow remote attackers to execute arbitrary PHP code vi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Bloq 0.5.4 - 'rdf.php?page[path]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Bloq 0.5.4 allow remote attackers to execute arbitrary PHP code vi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Bloq 0.5.4 - 'rss.php?page[path]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Bloq 0.5.4 allow remote attackers to execute arbitrary PHP code vi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Bloq 0.5.4 - 'rss2.php?page[path]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Bloq 0.5.4 allow remote attackers to execute arbitrary PHP code vi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
YaPiG 0.9x - 'Thanks_comment.php' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in template/default/thanks_comment.php in Yet Another PHP Image Gallery (YaPIG)
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
maluinfo 206.2.38 - 'bb_usage_stats.php' Remote File Inclusion
PHP remote file inclusion vulnerability in includes/bb_usage_stats.php in maluinfo 206.2.38 for Brazilian PHPBB allows r
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
MamboLaiThai ExtCalThai 0.9.1 - 'admin_events.php?CONFIG_EXT[LANGUAGES_DIR]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in the ExtCalThai (com_extcalendar) 0.9.1 and earlier component for M
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
MamboLaiThai ExtCalThai 0.9.1 - 'mail.inc.php?CONFIG_EXT[LIB_DIR]' Remote File Inclusion
Multiple PHP remote file inclusion vulnerabilities in the ExtCalThai (com_extcalendar) 0.9.1 and earlier component for M
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHP TopSites FREE 1.022b - 'config.php' Remote File Inclusion
PHP remote file inclusion vulnerability in config.php in phpht Topsites FREE 1.022b allows remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeBSD 5.4/6.0 - 'ptrace PT_LWPINFO' Local Denial of Service
Integer signedness error in FreeBSD 6.0-RELEASE allows local users to cause a denial of service (memory corruption and k
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Download-Engine 1.4.2 - 'spaw' Remote File Inclusion
PHP remote file inclusion vulnerability in admin/editeur/spaw_control.class.php in Web Provence SL_Site 1.0 and earlier
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeWPS 2.11 - 'upload.php' Remote Command Execution
Unrestricted file upload vulnerability in upload.php for Free Web Publishing System (FreeWPS), possibly 2.11 and earlier
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
phpList 2.x - Public Pages MultipleCross-Site Scripting Vulnerabilities
Cross-site scripting (XSS) vulnerability in index.php in phplist before 2.10.3 allows remote attackers to inject arbitra
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.