Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
77.900exploits catalogados
35.840CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.600GitHub PoC 14.323VulnCheck XDB 8.722Nuclei 4.320Metasploit 3.477✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
LHA 1.x - Remote Buffer Overflow / Directory Traversal
Buffer overflow in McAfee Scan Engine 4320 with DAT version before 4357 allows remote attackers to execute arbitrary cod
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Coppermine Photo Gallery 1.2.2b - 'menu.inc.php' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in menu.inc.php in Coppermine Photo Gallery 1.2.2b allows remote attackers to i
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Coppermine Photo Gallery 1.2.0 RC4 - 'init.inc.php' Remote File Inclusion
PHP remote file inclusion vulnerability in init.inc.php in Coppermine Photo Gallery 1.2.0 RC4 allows remote attackers to
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SquirrelMail 1.4.x - Folder Name Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary sc
43RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Moodle 1.1/1.2 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HT
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Coppermine Photo Gallery 1.2.2b - 'theme.php' Remote File Inclusion
PHP remote file inclusion vulnerability in theme.php in Coppermine Photo Gallery 1.2.2b allows remote attackers to execu
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Coppermine Photo Gallery 1.2.0 RC4 - 'startdir' Traversal Arbitrary File Access
Directory traversal vulnerability in modules.php in Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attacker
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 6 - Meta Data Foreign Domain Spoofing
Mozilla Firefox 0.9.1 and 0.9.2 allows remote web sites to spoof certificates of trusted web sites via redirects and Jav
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000 - 'Lsasrv.dll' Remote Universal (MS04-011)
Stack-based buffer overflow in certain Active Directory service functions in LSASRV.DLL of the Local Security Authority
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Siemens S55 - Cellular Telephone Sms Confirmation Message Bypass
GUI overlay vulnerability in the Java API in Siemens S55 cellular phones allows remote attackers to send unauthorized SM
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
DiGi WWW Server 1 - Remote Denial of Service
DiGi Web Server allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request that cont
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'member.php?redirect' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote atta
38RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'board.php?FID' SQL Injection
Multiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execu
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'index.php?redirect' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote atta
38RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - Private Message Disclosure
The readmsg action in myhome.php in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to read arbit
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'search.php?q' SQL Injection
Multiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execu
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'member.php' Multiple SQL Injections
Multiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execu
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'post.php' Multiple SQL Injections
Multiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execu
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'myhome.php?to' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote atta
38RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHP-Nuke 7.2 Multiple Video Gallery Module - SQL Injection
SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execut
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBB 1.0.x - 'post.php?TID' Cross-Site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote atta
38RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - Shell Long Share Name Buffer Overrun
Buffer overflow in Microsoft Internet Explorer and Explorer on Windows XP SP1, WIndows 2000, Windows 98, and Windows Me
35RISCO
abrir ↗Exploit-DB
OpenBB < 1.0.6 - Multiple Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote atta
38RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'Lsasrv.dll' RPC Remote Buffer Overflow (MS04-011)
Stack-based buffer overflow in certain Active Directory service functions in LSASRV.DLL of the Local Security Authority
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHProfession 2.5 - 'upload.php' Direct Request Full Path Disclosure
phProfession 2.5 allows remote attackers to gain sensitive information via a direct HTTP request to upload.php, which re
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Protector System 1.15 b1 - 'index.php' SQL Injection
SQL injection vulnerability in index.php in Protector System 1.15b1 allows remote attackers to bypass SQL injection filt
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Omnicron OmniHTTPd 2.x/3.0 - GET Buffer Overflow
Buffer overflow in Omnicron OmniHTTPd 3.0a and earlier allows remote attackers to execute arbitrary code via an HTTP GET
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Advanced Guestbook 2.2 - 'Password' SQL Injection
SQL injection vulnerability in Advanced Guestbook 2.2 allows remote attackers to execute arbitrary SQL commands and gain
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
TCP Connection Reset - Remote Denial of Service
TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial o
45RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHProfession 2.5 - 'modules.php?offset' SQL Injection
SQL injection vulnerability in modules.php in phProfession 2.5 allows remote attackers to execute arbitrary SQL code via
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.