Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
78.137 exploits
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque25 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
VulnCheck XDB
initial-access
CVE-2020-1472MEDIUMsob ataqueransomware25 jul 2021
Netlogon Elevation of Privilege Vulnerability
100RISCO
abrir
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque24 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC1
This Repo is PoC environment of CVE-2014-6271(https://nvd.nist.gov/vuln/detail/cve-2014-6271).
CVE-2014-6271CRITICALsob ataque24 jul 2021
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISCO
abrir
VulnCheck XDB
remote-with-credentials
CVE-2019-2093324 jul 2021
InfluxDB before 1.7.6 has an authentication bypass vulnerability in the authenticate function in services/httpd/handler.
50RISCO
abrir
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque24 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC3
C# PoC for CVE-2021-36934/HiveNightmare/SeriousSAM
CVE-2021-36934HIGHsob ataque24 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
VulnCheck XDB
remote-with-credentials
CVE-2018-7602CRITICALsob ataqueransomware24 jul 2021
Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-004
100RISCO
abrir
Exploit-DB
ElasticSearch 7.13.3 - Memory disclosure
CVE-2021-22145webappsmultiple23 jul 2021
A memory disclosure vulnerability was identified in Elasticsearch 7.10.0 to 7.13.3 error reporting. A user with the abil
60RISCO
abrir
Exploit-DB
Microsoft SharePoint Server 2019 - Remote Code Execution (2)
CVE-2020-1147HIGHsob ataquewebappsaspx23 jul 2021
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the softwar
100RISCO
abrir
GitHub PoC
Exploit Analysis of The WhatsApp Double-Free Vulnerability (CVE-2019-11932) Using the GEF-GDB Debugger
CVE-2019-1193223 jul 2021
A double free vulnerability in the DDGifSlurp function in decoding.c in the android-gif-drawable library before version
35RISCO
abrir
GitHub PoC
3t4n/samba-3.0.24-CVE-2007-2447-vunerable-
CVE-2007-244723 jul 2021
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RISCO
abrir
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
VulnCheck XDB
initial-access
CVE-2021-1675HIGHsob ataqueransomware22 jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISCO
abrir
VulnCheck XDB
local
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC3
magichk/cve-2021-22146
CVE-2021-2214622 jul 2021
All versions of Elastic Cloud Enterprise has the Elasticsearch “anonymous” user enabled by default in deployed clusters.
28RISCO
abrir
GitHub PoC35
PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version 1809 or newer
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC8
Small and dirty PoC for CVE-2021-36934
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC3
see https://github.com/cube0x0/CVE-2021-1675
CVE-2021-1675HIGHsob ataqueransomware22 jul 2021
Windows Print Spooler Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC1
CVE-2021-36934 PowerShell scripts
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC2
Windows Elevation of Privilege Vulnerability (SeriousSAM)
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC1
CVE-2021-36934 PowerShell Fix
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC1
A capability to identify and remediate CVE-2021-36934 (HiveNightmare)
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC9
HiveNightmare a.k.a. SeriousSam Local Privilege Escalation in Windows – CVE-2021-36934
CVE-2021-36934HIGHsob ataque22 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC1
idea-oss/laravel-CVE-2021-3129-EXP
CVE-2021-3129CRITICALsob ataqueransomware22 jul 2021
Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitra
100RISCO
abrir
GitHub PoC5
Detection and Mitigation script for CVE-2021-36934 (HiveNightmare aka. SeriousSam)
CVE-2021-36934HIGHsob ataque21 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
GitHub PoC9
Fix for the CVE-2021-36934
CVE-2021-36934HIGHsob ataque21 jul 2021
Windows Elevation of Privilege Vulnerability
98RISCO
abrir
anteriorpágina 670 / 2.605próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.