Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

77.900exploits catalogados
35.840CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
TIPS MailPost 5.1.1 - Error Message Cross-Site Scripting
CVE-2004-1101webappscgi03 nov 2004
mailpost.exe in MailPost 5.1.1sv, and possibly earlier versions, allows remote attackers to cause a denial of service (s
23RISCO
abrir
Exploit-DBVexDay Proof
TIPS MailPost 5.1.1 - Remote File Enumeration
CVE-2004-1102webappscgi03 nov 2004
MailPost 5.1.1sv, and possibly earlier versions, displays a different error message depending on whether the requested f
23RISCO
abrir
Exploit-DBVexDay Proof
Goolery 0.3 - 'viewpic.php?conversation_id' Cross-Site Scripting
CVE-2004-2246webappsphp02 nov 2004
Cross-site scripting (XSS) vulnerability in Goollery before 0.04b allows remote attackers to inject arbitrary HTML or we
23RISCO
abrir
Exploit-DBVexDay Proof
WebHost Automation Helm Control Panel 3.1.x - Multiple Input Validation Vulnerabilities
CVE-2004-1499webappsasp02 nov 2004
Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - IFRAME Tag Buffer Overflow
CVE-2004-1050remotewindows02 nov 2004
Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or
35RISCO
abrir
Exploit-DBVexDay Proof
Goolery 0.3 - 'viewalbum.php?page' Cross-Site Scripting
CVE-2004-2245webappsphp02 nov 2004
Cross-site scripting (XSS) vulnerability in Goollery 0.03 allows remote attackers to inject arbitrary HTML or web script
23RISCO
abrir
Exploit-DBVexDay Proof
Apple Safari 1.2 Web Browser - TABLE Status Bar URI Obfuscation
CVE-2004-1121remoteosx01 nov 2004
Apple Safari 1.0 through 1.2.3 allows remote attackers to spoof the URL displayed in the status bar via TABLE tags.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 6 - HTML Form Tags URI Obfuscation
CVE-2004-1104remotewindows30 out 2004
Microsoft Internet Explorer 6.0 SP2 allows remote attackers to spoof a legitimate URL in the status bar and conduct a ph
35RISCO
abrir
Exploit-DBVexDay Proof
zgv 5.5 - Multiple Arbitrary Code Executions
CVE-2004-1095remotelinux28 out 2004
Multiple integer overflows in (1) readbmp.c, (2) readgif.c, (3) readgif.c, (4) readmrf.c, (5) readpcx.c, (6) readpng.c,(
23RISCO
abrir
Exploit-DBVexDay Proof
WvTFTPd 0.9 - Remote Heap Overflow
CVE-2004-1636remotelinux28 out 2004
Heap-based buffer overflow in the WvTFTPServer::new_connection function in wvtftpserver.cc for WvTftp 0.9 allows remote
23RISCO
abrir
Exploit-DBVexDay Proof
PHP 4.x/5 - cURL 'open_basedir' Restriction Bypass
CVE-2004-1392remotephp28 out 2004
PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a fi
28RISCO
abrir
Exploit-DBVexDay Proof
Master of Orion III 1.2.5 - Denial of Service
CVE-2004-1493doswindows27 out 2004
Master of Orion III 1.2.5 and earlier allows remote attackers to cause a denial of service (server crash) via multiple c
23RISCO
abrir
Exploit-DBVexDay Proof
ID Software Quake II Server 3.2 - Multiple Vulnerabilities
CVE-2004-2592dosmultiple27 out 2004
Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (applica
23RISCO
abrir
Exploit-DBVexDay Proof
SCO OpenServer 5.0.7 - MMDF deliver Privilege Escalation
CVE-2004-0510localsco26 out 2004
Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attacke
23RISCO
abrir
Exploit-DBVexDay Proof
GD Graphics Library - Local Heap Overflow
CVE-2004-0990locallinux26 out 2004
Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to c
28RISCO
abrir
Exploit-DBVexDay Proof
Libxml2 - Multiple Remote Stack Buffer Overflow Vulnerabilities
CVE-2004-0989remotelinux26 out 2004
Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers
28RISCO
abrir
Exploit-DBVexDay Proof
libxml 2.6.12 nanoftp - Local Buffer Overflow
CVE-2004-0110locallinux26 out 2004
Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remot
28RISCO
abrir
Exploit-DBVexDay Proof
TABS MailCarrier 2.51 - SMTP 'EHLO' / 'HELO' Remote Buffer Overflow
CVE-2004-1638remotewindows26 out 2004
Buffer overflow in MailCarrier 2.51 allows remote attackers to execute arbitrary code via a long (1) EHLO and possibly (
50RISCO
abrir
Exploit-DBVexDay Proof
LinuxStat 2.x - Directory Traversal
CVE-2004-2640webappscgi25 out 2004
Directory traversal vulnerability in lstat.cgi in LinuxStat before 2.3.1 allows remote attackers to read arbitrary files
23RISCO
abrir
Exploit-DBVexDay Proof
Quick 'n EasY 2.4 FTP Server - Remote Denial of Service
CVE-2006-2027doswindows24 out 2004
Buffer overflow in Unicode processing in the logging functionality in Pablo Software Solutions Quick 'n Easy FTP Server
23RISCO
abrir
Exploit-DBVexDay Proof
Ability Server 2.34 - 'APPE' Remote Buffer Overflow
CVE-2004-1627remotewindows23 out 2004
Buffer overflow in Ability Server 2.25, 2.32, 2.34, and possibly other versions, allows remote attackers to execute arbi
28RISCO
abrir
Exploit-DBVexDay Proof
Socat 1.4.0.2 - Not SETUID Local Format String
CVE-2004-1484locallinux23 out 2004
Format string vulnerability in the _msg function in error.c in socat 1.4.0.3 and earlier, when used as an HTTP proxy cli
23RISCO
abrir
Exploit-DBVexDay Proof
Netbilling NBMEMBER Script - Information Disclosure
CVE-2004-2732webappscgi22 out 2004
nbmember.cgi in Netbilling 2.0 allows remote attackers to obtain sensitive information via the cmd=test option, which ca
23RISCO
abrir
Exploit-DBVexDay Proof
Multiple Browsers - Tabbed Browsing
CVE-2004-1380remotewindows22 out 2004
Firefox before 1.0 and Mozilla before 1.7.5 allows inactive (background) tabs to launch dialog boxes, which can allow re
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP - '.WAV' File Handler Denial of Service
CVE-2004-1623doswindows22 out 2004
The WAV file property handler in Windows XP SP1 allows remote attackers to cause a denial of service (infinite loop in E
28RISCO
abrir
Exploit-DBVexDay Proof
ShixxNOTE 6.net - Remote Buffer Overflow
CVE-2004-1595remotewindows22 out 2004
Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field.
50RISCO
abrir
Exploit-DBVexDay Proof
Multiple Browsers - Tabbed Browsing
CVE-2004-1381remotewindows22 out 2004
Firefox before 1.0 and Mozilla before 1.7.5 allow inactive (background) tabs to focus on input being entered in the acti
23RISCO
abrir
Exploit-DBVexDay Proof
UBBCentral UBB.Threads 3.4/3.5 - 'Dosearch.php' SQL Injection
CVE-2004-1622webappsphp21 out 2004
SQL injection vulnerability in dosearch.php in UBB.threads 3.4.x allows remote attackers to execute arbitrary SQL statem
23RISCO
abrir
Exploit-DBVexDay Proof
Ability Server 2.34 - FTP 'STOR' Remote Buffer Overflow
CVE-2004-1626remotewindows21 out 2004
Buffer overflow in Ability Server 2.34, and possibly other versions, allows remote attackers to execute arbitrary code v
50RISCO
abrir
Exploit-DBVexDay Proof
Veritas NetBackup - Remote Command Execution (Metasploit)
CVE-2004-1389remotemultiple21 out 2004
Unknown vulnerability in the Veritas NetBackup Administrative Assistant interface for NetBackup BusinesServer 3.4, 3.4.1
38RISCO
abrir
anteriorpágina 690 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.