Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
77.900exploits catalogados
35.840CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.600GitHub PoC 14.323VulnCheck XDB 8.722Nuclei 4.320Metasploit 3.477✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
Exim 4.41 - 'dns_build_reverse' Local Buffer Overflow
Multiple buffer overflows in Exim before 4.43 may allow attackers to execute arbitrary code via (1) an IPv6 address with
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Breed patch #1 - Zero-Length Remote Crash
Breed patch 1 and earlier allows remote attackers to cause a denial of service (application crash) via an empty UDP pack
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - Improper Token Validation Privilege Escalation
LSASS (Local Security Authority Subsystem Service) of Windows 2000 Server and Windows Server 2003 does not properly vali
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Veritas Backup Exec Agent 8.x/9.x - Browser Overflow
Stack-based buffer overflow in the Agent Browser in Veritas Backup Exec 8.x before 8.60.3878 Hotfix 68, and 9.x before 9
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4.29-rc2 - 'uselib()' Local Privilege Escalation (1)
Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.4
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
QwikiWiki - Directory Traversal
Directory traversal vulnerability in index.php in QwikiWiki allows remote attackers to read arbitrary files via a .. (do
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SOLDNER Secret Wars 30830 - Denial of Service
Format string vulnerability in Soldner Secret Wars 30830 and earlier allows remote attackers to cause a denial of servic
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - WINS Remote Code Execution
The Windows Internet Naming Service (WINS) in Windows NT Server 4.0 SP 6a, NT Terminal Server 4.0 SP 6, Windows 2000 Ser
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - NetDDE Remote Buffer Overflow (MS04-031)
Network Dynamic Data Exchange (NetDDE) services for Microsoft Windows 98, Windows NT 4.0, Windows 2000, Windows XP, and
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHP 4.3.7 - 'openlog()' Remote Buffer Overflow
Buffer overflow in openlog function for PHP 4.3.1 on Windows operating system, and possibly other OSes, allows remote at
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Netcat 1.1 - '-e' Switch Remote Buffer Overflow
Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attack
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Kernel - '.ANI' File Parsing Crash
The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Window
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer (Windows XP SP2) - HTML Help Control Local Zone Bypass
Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to execute arbitrary code by using the "Related Topics"
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 7/8/9 CDE LibDTHelp - Local Buffer Overflow (1)
Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARC
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 8/9 passwd - 'circ()' Local Privilege Escalation
Unknown vulnerability in passwd(1) in Solaris 8.0 and 9.0 allows local users to gain privileges via unknown attack vecto
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel < 2.6.7-rc3 (Slackware 9.1 / Debian 3.0) - 'sys_chown()' Group Ownership Alteration Privilege Escalation
Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported fi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.6/7/8/9 (SPARC) - 'ld.so.1' Local Privilege Escalation
Stack-based buffer overflow in the runtime linker, ld.so.1, on Solaris 2.6 through 9 allows local users to gain root pri
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 7/8/9 CDE LibDTHelp - Local Buffer Overflow (2)
Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARC
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.5.1/2.6/7/8 rlogin (SPARC) - '/bin/login' Remote Buffer Overflow
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary comman
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/2003 - 'winhlp32' Phrase Integer Overflow
Heap-based buffer overflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SHOUTcast DNAS/Linux 1.9.4 - Format String Remote Overflow
Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash)
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Wirtualna Polska WPKontakt 3.0.1 - Remote Script Execution
Cross-site scripting (XSS) vulnerability in WPKontakt 3.0.1 and earlier allows remote attackers to inject arbitrary web
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Seattle Lab Mail (SLmail) 5.5 - POP3 'PASS' Remote Buffer Overflow (3)
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO arg
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Snort 2.1/2.2 - DecodeTCPOptions Remote Denial of Service (1)
The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbo
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Snort 2.1/2.2 - DecodeTCPOptions Remote Denial of Service (2)
The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbo
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
phpMyChat 0.14.5 - Remote Improper File Permissions
PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive in
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
2BGal 2.5.1 - SQL Injection
SQL injection vulnerability in (1) disp_album.php and possibly (2) disp_img.php in 2Bgal 2.4 and 2.5.1 allows remote att
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
AIX 4.3/5.1 < 5.3 - 'lsmcode' Execution Privilege Escalation
Untrusted execution path vulnerability in invscout in IBM AIX 5.1.0, 5.2.0, and 5.3.0 allows local users to gain privile
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Seattle Lab Mail (SLmail) 5.5 - POP3 'PASS' Remote Buffer Overflow (2)
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO arg
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IBM AIX 5.x - 'Diag' Local Privilege Escalation
Untrusted execution path vulnerability in the diag commands (1) lsmcode, (2) diag_exec, (3) invscout, and (4) invscoutd
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.