Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.057exploits catalogados
36.288CVEs com exploração pública
24.695testados em laboratório
19.066 exploits
Exploit-DBVexDay Proof
Kaseya Virtual System Administrator (VSA) - Multiple Vulnerabilities (2)
CVE-2015-6589webappsasp29 set 2015
Directory traversal vulnerability in Kaseya Virtual System Administrator (VSA) 7.0.0.0 before 7.0.0.33, 8..0.0.0 before
28RISCO
abrir
Exploit-DBVexDay Proof
Kaseya Virtual System Administrator (VSA) - Multiple Vulnerabilities (2)
CVE-2015-6922webappsasp29 set 2015
Kaseya Virtual System Administrator (VSA) 7.x before 7.0.0.33, 8.x before 8.0.0.23, 9.0 before 9.0.0.19, and 9.1 before
60RISCO
abrir
Exploit-DBVexDay Proof
ManageEngine EventLog Analyzer - Remote Code Execution (Metasploit)
CVE-2015-7387remotewindows29 set 2015
ZOHO ManageEngine EventLog Analyzer 10.6 build 10060 and earlier allows remote attackers to bypass intended restrictions
60RISCO
abrir
Exploit-DBVexDay Proof
Watchguard XCS - Remote Command Execution (Metasploit)
CVE-2015-5452remotebsd28 set 2015
SQL injection vulnerability in Watchguard XCS 9.2 and 10.0 before build 150522 allows remote attackers to execute arbitr
23RISCO
abrir
Exploit-DBVexDay Proof
Watchguard XCS - Remote Command Execution (Metasploit)
CVE-2015-5453remotebsd28 set 2015
Watchguard XCS 9.2 and 10.0 before build 150522 allow remote authenticated users to execute arbitrary commands via shell
50RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'NtGdiBitBlt' Buffer Overflow (MS15-097)
CVE-2015-2512doswindows_x8624 set 2015
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Window
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Brush Object Use-After-Free (MS15-061)
CVE-2015-1724doswindows22 set 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'SURFOBJ' Null Pointer Dereference (MS15-061)
CVE-2015-1725doswindows_x8622 set 2015
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows S
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'NtGdiStretchBlt' Pool Buffer Overflow (MS15-097)
CVE-2015-2512doswindows_x8622 set 2015
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Window
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Use-After-Free with Cursor Object (MS15-097)
CVE-2015-2517doswindows_x8622 set 2015
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'bGetRealizedBrush' Use-After-Free (MS15-097)
CVE-2015-2518doswindows_x8622 set 2015
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'UserCommitDesktopMemory' Use-After-Free (MS15-073)
CVE-2015-2365doswindows_x8622 set 2015
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Use-After-Free with Printer Device Contexts (MS15-097)
CVE-2015-2507doswindows_x8622 set 2015
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Window
23RISCO
abrir
Exploit-DBVexDay Proof
Cisco AnyConnect Secure Mobility Client 3.1.08009 - Local Privilege Escalation
CVE-2015-6305localwindows22 set 2015
Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConne
23RISCO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Regex Engine (TRE) - Integer Signedness / Overflow
CVE-2015-3798dososx22 set 2015
The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'DeferWindowPos' Use-After-Free (MS15-073)
CVE-2015-2366doswindows_x8622 set 2015
win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, Wi
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Pool Buffer Overflow Drawing Caption Bar (MS15-061)
CVE-2015-1727doswindows_x8622 set 2015
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows S
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'HmgAllocateObjectAttr' Use-After-Free (MS15-061)
CVE-2015-1726doswindows_x8622 set 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'win32k!vSolidFillRect' Buffer Overflow (MS15-061)
CVE-2015-1725doswindows_x8622 set 2015
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows S
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Null Pointer Dereference with Window Station and Clipboard (MS15-061)
CVE-2015-1721doswindows_x8622 set 2015
The kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Bitmap Handling Use-After-Free (MS15-061) (1)
CVE-2015-1722doswindows_x8622 set 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - WindowStation Use-After-Free (MS15-061)
CVE-2015-1723doswindows_x8622 set 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISCO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX Regex Engine (TRE) - Stack Buffer Overflow (PoC)
CVE-2015-3796dososx22 set 2015
The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - 'FlashWindowEx​' Memory Corruption (MS15-097)
CVE-2015-2511doswindows_x8622 set 2015
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win
23RISCO
abrir
Exploit-DBVexDay Proof
Apple qlmanage - SceneKit::daeElement::setElementName Heap Overflow
CVE-2015-3783dososx22 set 2015
SceneKit in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (me
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Kernel - Bitmap Handling Use-After-Free (MS15-061) (2)
CVE-2015-1722doswindows_x8622 set 2015
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista S
23RISCO
abrir
Exploit-DBVexDay Proof
Konica Minolta FTP Utility 1.00 - (Authenticated) CWD Command Overflow (SEH) (Metasploit)
CVE-2015-7768remotewindows21 set 2015
Buffer overflow in Konica Minolta FTP Utility 1.0 allows remote attackers to execute arbitrary code via a long CWD comma
50RISCO
abrir
Exploit-DBVexDay Proof
ManageEngine OpManager - Remote Code Execution (Metasploit)
CVE-2015-7765remotejava17 set 2015
ZOHO ManageEngine OpManager 11.5 build 11600 and earlier uses a hardcoded password of "plugin" for the IntegrationUser a
50RISCO
abrir
Exploit-DBVexDay Proof
Google Android - libstagefright Integer Overflow Remote Code Execution
CVE-2015-3864remoteandroid17 set 2015
Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in A
60RISCO
abrir
Exploit-DBVexDay Proof
ManageEngine OpManager - Remote Code Execution (Metasploit)
CVE-2015-7766remotejava17 set 2015
PGSQL:SubmitQuery.do in ZOHO ManageEngine OpManager 11.6, 11.5, and earlier allows remote administrators to bypass SQL q
60RISCO
abrir
anteriorpágina 69 / 636próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.