Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.056exploits catalogados
35.925CVEs com exploração pública
24.695testados em laboratório
22.640 exploits
Referência
CVE-2010-5021
SQL injection vulnerability in view_group.asp in Digital Interchange Document Library 5.8.5 allows remote attackers to e
23RISCO
abrir
Referência
CVE-2026-34100
Guardian Language-System SQL Injection via id Parameter in media.php
41RISCO
abrir
Referência
CVE-2026-58372
SeaweedFS < 4.34 - Cross-Bucket Object Deletion via DeleteObjects Request-Body Keys
41RISCO
abrir
Referência
CVE-2026-14695
SourceCodester Multi-Vendor Online Grocery Management System Registration Users.php save_client sql injection
33RISCO
abrir
Referência
CVE-2026-14694
SourceCodester Multi-Vendor Online Grocery Management System POST Parameter Master.php cancel_order sql injection
33RISCO
abrir
Referência
CVE-2026-14693
SourceCodester Multi-Vendor Online Grocery Management System Master.php cancel_order improper authorization
33RISCO
abrir
Referência
CVE-2026-14606
RT-Thread SWM341 CAN SWM341.h CAN_Receive stack-based overflow
41RISCO
abrir
Referência
CVE-2026-9302
546669204 vps-inventory-monitoring VpsTest Console VpsTest.php eval code injection
33RISCO
abrir
Referência
CVE-2026-9301
omec-project amf NGReset Message memory corruption
33RISCO
abrir
Referência
CVE-2026-9300
omec-project amf NGSetupRequest memory corruption
33RISCO
abrir
ReferênciaVexDay Proof
Texas Imperial Software WFTPD 3.23 - 'SIZE' Remote Buffer Overflow
CVE-2006-4318remotewindows
Buffer overflow in WFTPD Server 3.23 allows remote attackers to execute arbitrary code via long SIZE commands.
50RISCO
abrir
Referência
CVE-2026-13573
llvm llvm-project ValueSymbolTable ValueSymbolTable.cpp insert stack-based overflow
33RISCO
abrir
ReferênciaVexDay Proof
OpenSSL < 0.9.7l/0.9.8d - SSLv2 Client Crash
CVE-2006-4343dosmultiple
The get_server_hello function in the SSLv2 client code in OpenSSL 0.9.7 before 0.9.7l, 0.9.8 before 0.9.8d, and earlier
28RISCO
abrir
Referência
CVE-2014-3138
SQL injection vulnerability in Xerox DocuShare before 6.53 Patch 6 Hotfix 2, 6.6.1 Update 1 before Hotfix 24, and 6.6.1
23RISCO
abrir
Referência
CVE-2014-3138
SQL injection vulnerability in Xerox DocuShare before 6.53 Patch 6 Hotfix 2, 6.6.1 Update 1 before Hotfix 24, and 6.6.1
23RISCO
abrir
Referência
CVE-2014-3210
SQL injection vulnerability in dopbs-backend-forms.php in the Booking System (Booking Calendar) plugin before 1.3 for Wo
23RISCO
abrir
Referência
CVE-2026-13572
itsourcecode Hospital Management System insertbillingrecord.php sql injection
33RISCO
abrir
Referência
CVE-2010-5033
SQL injection vulnerability in ProductList.cfm in Fusebox 5.5.1 allows remote attackers to execute arbitrary SQL command
23RISCO
abrir
Referência
CVE-2014-3220
F5 BIG-IQ Cloud and Security 4.0.0 through 4.1.0 allows remote authenticated users to change the password of arbitrary u
28RISCO
abrir
Referência
CVE-2026-14761
radareorg radare2 str.c r_str_append integer overflow
33RISCO
abrir
Referência
CVE-2026-14734
SourceCodester Class and Exam Timetabling System edit_product.php sql injection
33RISCO
abrir
Referência
CVE-2026-14730
itsourcecode Hospital Management System patientprofile.php sql injection
33RISCO
abrir
Referência
CVE-2026-34109
Guardian Language-System Unauthenticated OS Command Injection via id Parameter in speech.php
48RISCO
abrir
Referência
CVE-2026-13562
Edimax EW-7478APC POST Request formiNICSiteSurvey buffer overflow
41RISCO
abrir
Referência
CVE-2026-13548
itsourcecode Hospital Management System doctortimings.php sql injection
33RISCO
abrir
Referência
CVE-2014-3434
Buffer overflow in the sysplant driver in Symantec Endpoint Protection (SEP) Client 11.x and 12.x before 12.1 RU4 MP1b,
23RISCO
abrir
Referência
CVE-2018-25328
VX Search 10.6.18 Local Buffer Overflow via Directory Field
41RISCO
abrir
Referência
CVE-2014-3544
Cross-site scripting (XSS) vulnerability in user/profile.php in Moodle through 2.3.11, 2.4.x before 2.4.11, 2.5.x before
23RISCO
abrir
ReferênciaVexDay Proof
Joomla! Component Kochsuite 0.9.4 - Remote File Inclusion
CVE-2006-4348webappsphp
PHP remote file inclusion vulnerability in config.kochsuite.php in the Kochsuite (com_kochsuite) 0.9.4 component for Mam
23RISCO
abrir
Referência
CVE-2014-3631
The assoc_array_gc function in the associative-array implementation in lib/assoc_array.c in the Linux kernel before 3.16
23RISCO
abrir
anteriorpágina 617 / 755próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.