Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.056exploits catalogados
35.925CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
PHP-Nuke 6.x - 'Category' SQL Injection
CVE-2004-0269webappsphp23 dez 2003
SQL injection vulnerability in PHP-Nuke 6.9 and earlier, and possibly 7.x, allows remote attackers to inject arbitrary S
23RISCO
abrir
Exploit-DBVexDay Proof
phpBB 2.0.6 - 'search_id' SQL Injection / MD5 Hash
CVE-2003-1216webappsphp21 dez 2003
SQL injection vulnerability in search.php for phpBB 2.0.6 and earlier allows remote attackers to execute arbitrary SQL a
23RISCO
abrir
Exploit-DBVexDay Proof
Tcpdump 3.x - L2TP Parser Remote Denial of Service
CVE-2003-1029doslinux20 dez 2003
The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loo
23RISCO
abrir
Exploit-DBVexDay Proof
Eznet 3.5.0 - Remote Stack Overflow Universal
CVE-2003-1339remotewindows18 dez 2003
Stack-based buffer overflow in eZnet.exe, as used in eZ (a) eZphotoshare, (b) eZmeeting, (c) eZnetwork, and (d) eZshare
35RISCO
abrir
Exploit-DBVexDay Proof
osCommerce 2.2 - 'osCsid' Cross-Site Scripting
CVE-2003-1219webappsphp17 dez 2003
Cross-site scripting (XSS) vulnerability in the tep_href_link function in html_output.php for osCommerce before 2.2-MS3
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Messenger Service (French) - Remote (MS03-043)
CVE-2003-0717remotewindows16 dez 2003
The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allow
35RISCO
abrir
Exploit-DBVexDay Proof
DameWare Mini Remote Control Server 3.7x - Buffer Overflow (2)
CVE-2003-1030remotewindows16 dez 2003
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long
28RISCO
abrir
Exploit-DBVexDay Proof
DameWare Mini Remote Control Server 3.7x - Buffer Overflow (3)
CVE-2003-1030remotewindows16 dez 2003
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long
28RISCO
abrir
Exploit-DBVexDay Proof
DameWare Mini Remote Control Server 3.7x - Buffer Overflow (1)
CVE-2003-1030remotewindows16 dez 2003
Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long
28RISCO
abrir
Exploit-DBVexDay Proof
HP-UX B11.11 - '/usr/bin/ct' Format String Privilege Escalation
CVE-2003-0090localhp-ux16 dez 2003
20RISCO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX 10 - CD9660.Util Probe For Mounting Argument Local Buffer Overflow
CVE-2003-1006dososx15 dez 2003
Buffer overflow in cd9660.util in Apple Mac OS X 10.0 through 10.3.2 and Apple Mac OS X Server 10.0 through 10.3.2 may a
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5/6 / Mozilla 1.2.1 - URI Display Obfuscation (1)
CVE-2003-1025remotewindows09 dez 2003
Internet Explorer 5.01 through 6 SP1 allows remote attackers to spoof the domain of a URL via a "%01" character before a
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5/6 / Mozilla 1.2.1 - URI Display Obfuscation (2)
CVE-2003-1025remotewindows09 dez 2003
Internet Explorer 5.01 through 6 SP1 allows remote attackers to spoof the domain of a URL via a "%01" character before a
28RISCO
abrir
Exploit-DBVexDay Proof
LaGarde StoreFront 5.0 Shopping Cart - 'login.asp' SQL Injection
CVE-2003-0557webappsasp07 dez 2003
SQL injection vulnerability in login.asp for StoreFront 6.0, and possibly earlier versions, allows remote attackers to o
23RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.4.22 - 'do_brk()' Local Privilege Escalation (2)
CVE-2003-0961locallinux05 dez 2003
Integer overflow in the do_brk function for the brk system call in Linux kernel 2.4.22 and earlier allows local users to
23RISCO
abrir
Exploit-DBVexDay Proof
FVWM 2.4/2.5 - fvwm-menu-Directory Command Execution
CVE-2003-1308locallinux05 dez 2003
CRLF injection vulnerability in fvwm-menu-directory for fvwm 2.5.x before 2.5.10 and 2.4.x before 2.4.18 allows local us
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP - Workstation Service Remote (MS03-049)
CVE-2003-0812remotewindows04 dez 2003
Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers t
60RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.4.22 - 'do_brk()' Local Privilege Escalation (1)
CVE-2003-0961locallinux02 dez 2003
Integer overflow in the do_brk function for the brk system call in Linux kernel 2.4.22 and earlier allows local users to
23RISCO
abrir
Exploit-DBVexDay Proof
Applied Watch Command Center 1.0 - Authentication Bypass (2)
CVE-2003-0974remotemultiple28 nov 2003
Applied Watch Command Center allows remote attackers to conduct unauthorized activities without authentication, such as
23RISCO
abrir
Exploit-DBVexDay Proof
Applied Watch Command Center 1.0 - Authentication Bypass (1)
CVE-2003-0974remotemultiple28 nov 2003
Applied Watch Command Center allows remote attackers to conduct unauthorized activities without authentication, such as
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Outlook Express 6.0 - '.MHTML' Forced File Execution (1)
CVE-2004-0380remotewindows25 nov 2003
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RISCO
abrir
Exploit-DBVexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (2)
CVE-2000-0342remotewindows25 nov 2003
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Outlook Express 6.0 - MHTML Forced File Execution (2)
CVE-2004-0380remotewindows25 nov 2003
The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to
35RISCO
abrir
Exploit-DBVexDay Proof
Qualcomm Eudora 6.0.1/6.1.1 - Attachment LaunchProtect Warning Bypass (1)
CVE-2000-0342remotewindows25 nov 2003
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISCO
abrir
Exploit-DBVexDay Proof
Monit 1.4/2.x/3/4 - 'HTTP Request' Buffer Overrun
CVE-2003-1083remotelinux24 nov 2003
Stack-based buffer overflow in Monit 1.4 to 4.1 allows remote attackers to execute arbitrary code via a long HTTP reques
28RISCO
abrir
Exploit-DBVexDay Proof
Apache mod_gzip (with debug_mode) 1.2.26.1a - Remote Overflow
CVE-2003-0842remotelinux20 nov 2003
Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions,
23RISCO
abrir
Exploit-DBVexDay Proof
FreeRadius 0.x/1.1.x - Tag Field Heap Corruption
CVE-2003-0967doslinux20 nov 2003
rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADI
23RISCO
abrir
Exploit-DBVexDay Proof
IA WebMail Server 3.x - 'iaregdll.dll 1.0.0.5' Remote Overflow
CVE-2003-1192remotewindows19 nov 2003
Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET
50RISCO
abrir
Exploit-DBVexDay Proof
OpenBSD 2.x < 3.3 - 'exec_ibcs2_coff_prep_zmagic()' kernel stack overflow
CVE-2003-0955localbsd19 nov 2003
OpenBSD kernel 3.3 and 3.4 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - ListBox/ComboBox Control Local (MS03-045)
CVE-2003-0659localwindows14 nov 2003
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary co
35RISCO
abrir
anteriorpágina 719 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.