Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.724exploits catalogados
35.724CVEs com exploração pública
24.695testados em laboratório
77.724 exploits
GitHub PoC
Picking up processes that have triggered ASR related to CVE-2022-30190
CVE-2022-30190HIGHsob ataqueransomware31 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC1
Aka Follina = benign POC.
CVE-2022-30190HIGHsob ataqueransomware31 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC3
Python script to exploit CVE-2022-29303
CVE-2022-29303CRITICALsob ataque31 mai 2022
SolarView Compact ver.6.00 was discovered to contain a command injection vulnerability via conf_mail.php.
100RISCO
abrir
GitHub PoC38
This Repository Talks about the Follina MSDT from Defender Perspective
CVE-2022-30190HIGHsob ataqueransomware31 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC60
Microsoft Office Word Rce 复现(CVE-2022-30190)
CVE-2022-30190HIGHsob ataqueransomware31 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC1
tuannq2299/CVE-2019-8942
CVE-2019-894231 mai 2022
WordPress before 4.9.9 and 5.x before 5.0.1 allows remote code execution because an _wp_attached_file Post Meta entry ca
60RISCO
abrir
GitHub PoC105
CVE-2022-30190 Follina POC
CVE-2022-30190HIGHsob ataqueransomware31 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
VulnCheck XDB
client-side
CVE-2022-30190HIGHsob ataqueransomware31 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
Exploit for Apache 2.4.50 (CVE-2021-42013)
CVE-2021-42013CRITICALsob ataqueransomware31 mai 2022
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISCO
abrir
GitHub PoC1.251
【懒人神器】一款图形化、批量采集url、批量对采集的url进行各种nday检测的工具。可用于src挖掘、cnvd挖掘、0day利用、打造自己的武器库等场景。可以批量利用Actively Exploited Atlassian Confluence 0Day CVE-2022-26134和DedeCMS v5.7.87 SQL注入 CVE-2022-23337。
CVE-2022-26134CRITICALsob ataqueransomware31 mai 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISCO
abrir
GitHub PoC26
Exploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.
CVE-2018-1676331 mai 2022
FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This ca
60RISCO
abrir
VulnCheck XDB
initial-access
CVE-2021-4638131 mai 2022
Local File Inclusion due to path traversal in D-Link DAP-1620 leads to unauthorized internal files reading [/etc/passwd]
50RISCO
abrir
VulnCheck XDB
initial-access
CVE-2021-42013CRITICALsob ataqueransomware31 mai 2022
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2022-22965CRITICALsob ataque31 mai 2022
A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data b
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2022-26134CRITICALsob ataqueransomware31 mai 2022
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an un
100RISCO
abrir
GitHub PoC5
CVE-2022-1292 OpenSSL c_rehash Vulnerability
CVE-2022-1292CRITICAL30 mai 2022
The c_rehash script allows command injection
70RISCO
abrir
VulnCheck XDB
client-side
CVE-2022-30190HIGHsob ataqueransomware30 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC157
POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina
CVE-2022-30190HIGHsob ataqueransomware30 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC28
CVE-2022-1292 OpenSSL c_rehash Vulnerability - POC
CVE-2022-1292CRITICAL30 mai 2022
The c_rehash script allows command injection
70RISCO
abrir
Metasploit600
Microsoft Office Word MSDTJS
CVE-2022-30190HIGHsob ataqueransomware29 mai 2022
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC1
SambaCry exploit (CVE-2017-7494)
CVE-2017-7494CRITICALsob ataqueransomware29 mai 2022
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISCO
abrir
GitHub PoC1
Wrong-pixel/CVE-2022-22947-exp
CVE-2022-22947CRITICALsob ataque29 mai 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2017-7494CRITICALsob ataqueransomware29 mai 2022
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISCO
abrir
VulnCheck XDB
initial-access
CVE-2022-1388CRITICALsob ataqueransomware28 mai 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13
100RISCO
abrir
GitHub PoC2
FreePascal implementation of the UnrealIRCD CVE-2010-2075
CVE-2010-207528 mai 2022
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally
60RISCO
abrir
VulnCheck XDB
initial-access
CVE-2021-22986CRITICALsob ataqueransomware28 mai 2022
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
100RISCO
abrir
VulnCheck XDB
infoleak
CVE-2020-5902CRITICALsob ataqueransomware28 mai 2022
In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic
100RISCO
abrir
GitHub PoC10
CVE-2020-5902 CVE-2021-22986 CVE-2022-1388 POC集合
CVE-2021-22986CRITICALsob ataqueransomware28 mai 2022
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
100RISCO
abrir
GitHub PoC14
Wordpress 5.8.2 CVE-2022-21661 Vuln enviroment POC exploit
CVE-2022-21661HIGH28 mai 2022
SQL injection in WordPress
78RISCO
abrir
VulnCheck XDB
infoleak
CVE-2022-21661HIGH28 mai 2022
SQL injection in WordPress
78RISCO
abrir
anteriorpágina 575 / 2.591próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.