Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
78.056exploits catalogados
35.925CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.640GitHub PoC 14.392VulnCheck XDB 8.755Nuclei 4.333Metasploit 3.478✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
Symantec Norton AntiVirus 2002/2003 - Device Driver Memory Overwrite
The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local user
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
WU-FTPD 2.6.2 - 'realpath()' Off-by-One Buffer Overflow
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to exe
45RISCO
abrir ↗Exploit-DB✓ VexDay Proof
CDRTools 2.0 - RSCSI Debug File Arbitrary Local File Manipulation
rscsi in cdrtools 2.01 and earlier allows local users to overwrite arbitrary files and gain root privileges by specifyin
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
xtokkaetama 1.0b (RedHat 9.0) - Local Game
Multiple buffer overflows in xtokkaetama 1.0 allow local users to gain privileges via a long (1) -display command line a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Trillian 0.74 - Remote Denial of Service
The IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service (crash) by
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeBSD 4.8 - 'realpath()' Off-by-One Buffer Overflow
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to exe
45RISCO
abrir ↗Exploit-DB✓ VexDay Proof
XGalaga 2.0.34 (RedHat 9.0) - Local Game
Multiple buffer overflows in xgalaga 2.0.34 and earlier allow local users to gain privileges via a long HOME environment
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Remote (2)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Remote (1)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4.20 - 'decode_fh' Denial of Service
Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ManDB Utility 2.3/2.4 - Local Buffer Overflow
Multiple buffer overflows in man-db 2.4.1 and earlier, when installed setuid, allow local users to gain privileges via (
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Apache 1.3.x mod_mylo - Remote Code Execution
Buffer overflow in the mylo_log logging function for mod_mylo 0.2.1 and earlier allows remote attackers to execute arbit
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco Aironet AP1x00 - GET Denial of Service
The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attack
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Gallery 1.2/1.3.x - Search Engine Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in search.php of Gallery 1.1 through 1.3.4 allows remote attackers to insert ar
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000 - 'RPC DCOM' Remote (MS03-026)
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows SQL Server - Remote Denial of Service (MS03-031)
Microsoft SQL Server 7, 2000, and MSDE allows local users to execute arbitrary code via a certain request to the Local P
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows - 'RPC DCOM' Remote Buffer Overflow
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
xfstt 1.2/1.4 - Memory Disclosure
Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malform
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Novell Netware Enterprise Web Server 5.1/6.0 - 'CGI2Perl.NLM' Buffer Overflow (PoC)
Buffer overflow in the CGI2PERL.NLM PERL handler in Novell Netware 5.1 and 6.0 allows remote attackers to cause a denial
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 7.0/2000 / MSDE - Named Pipe Denial of Service (MS03-031)
Microsoft SQL Server 7, 2000, and MSDE allows local or remote authenticated users to cause a denial of service (crash or
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco IOS - using hping Remote Denial of Service
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco IOS - 'cisco-bug-44020.c' IPv4 Packet Denial of Service
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - RPC DCOM Interface Denial of Service
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and loc
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
XPCD 2.0.8 - 'HOME Environment' Local Buffer Overflow
Buffer overflow in xpcd-svga for xpcd 2.08 and earlier allows local users to execute arbitrary code via a long HOME envi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Witango Server 5.0.1.061 - Remote Cookie Buffer Overflow
Buffer overflow in WiTango Application Server and Tango 2000 allows remote attackers to execute arbitrary code via a lon
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco IOS - IPv4 Packets Denial of Service
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a p
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
eStore 1.0.1/1.0.2 - 'Settings.inc.php' Full Path Disclosure
Brooky eStore 1.0.1 through 1.0.2b allows remote attackers to obtain sensitive path information via a direct HTTP reques
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft ISA Server 2000 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PHP 4.3.x - Undefined Safe_Mode_Include_Dir Safemode Bypass
The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IBM UniVerse 10.0.0.9 - 'uvadmsh' Local Privilege Escalation
uvadmsh in IBM U2 UniVerse 10.0.0.9 and earlier trusts the user-supplied -uv.install command line option to find and exe
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.