Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
78.056exploits catalogados
35.925CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.640GitHub PoC 14.392VulnCheck XDB 8.755Nuclei 4.333Metasploit 3.478✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
Tolis Group BRU 17.0 - Local Privilege Escalation (2)
Format string vulnerability in Backup and Restore Utility for Unix (BRU) 17.0 and earlier, when running setuid, allows l
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft ISA Server 2000 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Splatt Forum 3/4 - Post Icon HTML Injection
Cross-site scripting (XSS) vulnerability in Splatt Forum allows remote attackers to insert arbitrary HTML and web script
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Media Services - 'nsiislog.dll' Remote Overflow
The logging capability for unicast and multicast transmissions in the ISAPI extension for Microsoft Windows Media Servic
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.2.8 - Brute Force Method Remote Command Execution
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x vers
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
LeapWare LeapFTP 2.7.x - Remote Buffer Overflow
Buffer overflow in LeapFTP 2.7.3.600 allows remote FTP servers to execute arbitrary code via a long IP address response
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
University of Minnesota Gopherd 2.0.x/2.3/3.0.x - GSisText Buffer Overflow
Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
University of Minnesota Gopherd 2.0.x/2.3/3.0.x - FTP Gateway Buffer Overflow
Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Virtual Programming VP-ASP 5.00 - 'shopexd.asp' SQL Injection (2)
SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the i
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IglooFTP 0.6.1 - Banner Parsing Buffer Overflow
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP bann
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Virtual Programming VP-ASP 5.00 - 'shopexd.asp' SQL Injection (1)
SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the i
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - CreateFile API Named Pipe Privilege Escalation (2)
Microsoft SQL Server before Windows 2000 SP4 allows local users to gain privileges as the SQL Server user by calling the
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - WebDAV Remote Code Execution (3) (xwdav)
Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Wind
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Server 2000 - CreateFile API Named Pipe Privilege Escalation (1)
Microsoft SQL Server before Windows 2000 SP4 allows local users to gain privileges as the SQL Server user by calling the
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
CPanel 5.0/5.3/6.x - Admin Interface HTML Injection
Cross-site scripting (XSS) vulnerability in cPanel 6.4.2 allows remote attackers to insert arbitrary HTML and possibly g
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Twilight WebServer 1.3.3.0 - 'GET' Remote Denial of Service
Twilight Webserver 1.3.3.0 allows remote attackers to cause a denial of service (application crash) via a GET request fo
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IglooFTP PRO 3.8 - Multiple Buffer Overflow Vulnerabilities (2)
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP bann
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IglooFTP PRO 3.8 - Multiple Buffer Overflow Vulnerabilities (1)
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP bann
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ProductCart 1.5/1.6/2.0 - 'MSG.asp' Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in msg.asp for certain versions of ProductCart allow remote attackers to execut
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ProductCart 1.5/1.6/2.0 - File Disclosure
EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, wh
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Essentia Web Server 2.1 - 'URL' Remote Buffer Overflow
Buffer overflow in Essentia Web Server 2.1 allows remote attackers to cause a denial of service, and possibly execute ar
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Essentia Web Server 2.1 - 'URL' Remote Buffer Overflow
Stack-based buffer overflow in Essentia Web Server 2.15 for Windows allows remote attackers to execute arbitrary code vi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
eXtremail 1.5.x (Linux) - Remote Format Strings
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privile
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Media Services - Remote (MS03-022)
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Adobe Unix Acrobat Reader 4.0/5.0 - WWWLaunchNetscape Buffer Overflow
Buffer overflow in the WWWLaunchNetscape function of Adobe Acrobat Reader (acroread) 5.0.7 and earlier allows remote att
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ezbounce 1.0/1.5 - Format String
Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sess
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
InterSystems Cache 4.1.15/5.0.x - Insecure Default Permissions
Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privil
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
methane IRCd 0.1.1 - Remote Format String
Format string vulnerability in (1) Bahamut IRCd 1.4.35 and earlier, and other IRC daemons based on Bahamut including (2)
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Kerio MailServer 5.6.3 - Remote Buffer Overflow
Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and po
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FoxWeb 2.5 - PATH_INFO Remote Buffer Overrun
Buffer overflow in (1) foxweb.dll and (2) foxweb.exe of Foxweb 2.5 allows remote attackers to execute arbitrary code via
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.