Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.056exploits catalogados
35.925CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Vignette 4.x/5.0 - Memory Disclosure
CVE-2003-0400remoteunix26 mai 2003
Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to r
23RISCO
abrir
Exploit-DBVexDay Proof
Vignette 4/5 - Cross-Site Scripting
CVE-2003-0404remoteunix26 mai 2003
Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow rem
23RISCO
abrir
Exploit-DBVexDay Proof
Batalla Naval 1.0 4 - Remote Buffer Overflow (2)
CVE-2003-0407remotelinux26 mai 2003
Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long
28RISCO
abrir
Exploit-DBVexDay Proof
Batalla Naval 1.0 4 - Remote Buffer Overflow (1)
CVE-2003-0407remotelinux26 mai 2003
Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long
28RISCO
abrir
Exploit-DBVexDay Proof
Ultimate PHP Board 1.9 - 'admin_iplog.php' Arbitrary PHP Execution
CVE-2003-0395webappsphp24 mai 2003
Ultimate PHP Board (UPB) 1.9 allows remote attackers to execute arbitrary PHP code with UPB administrator privileges via
23RISCO
abrir
Exploit-DBVexDay Proof
BLNews 2.1.3 - Remote File Inclusion
CVE-2003-0394webappsphp24 mai 2003
objects.inc.php4 in BLNews 2.1.3 allows remote attackers to execute arbitrary PHP code via a Server[path] parameter that
23RISCO
abrir
Exploit-DBVexDay Proof
IISProtect 2.1/2.2 - Web Administration Interface SQL Injection
CVE-2003-0377webappsasp23 mai 2003
SQL injection vulnerability in the web-based administration interface for iisPROTECT 2.2-r4, and possibly earlier versio
23RISCO
abrir
Exploit-DBVexDay Proof
AIX 4.3/5.1 - diagrpt Arbitrary Privileged Program Execution
CVE-2001-1080localaix23 mai 2003
diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allow
23RISCO
abrir
Exploit-DBVexDay Proof
Prishtina FTP Client 1.x - Remote Denial of Service
CVE-2003-0371doswindows23 mai 2003
Buffer overflow in Prishtina FTP client 1.x allows remote FTP servers to cause a denial of service (crash) and possibly
23RISCO
abrir
Exploit-DBVexDay Proof
UML_NET - Integer Mismanagement Code Execution
CVE-2003-0019locallinux23 mai 2003
uml_net in the kernel-utils package for Red Hat Linux 8.0 has incorrect setuid root privileges, which allows local users
23RISCO
abrir
Exploit-DBVexDay Proof
Maelstrom Server 3.0.x - Argument Buffer Overflow (2)
CVE-2003-0325localfreebsd23 mai 2003
Buffer overflow in Maelstrom 3.0.6, 3.0.5, and earlier allows local users to execute arbitrary code via a long -server c
23RISCO
abrir
Exploit-DBVexDay Proof
WsMp3d 0.x - Remote Heap Overflow
CVE-2003-0339remotelinux22 mai 2003
Multiple heap-based buffer overflows in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allow remote attackers to execute arbit
23RISCO
abrir
Exploit-DBVexDay Proof
Nessus 2.0.x - LibNASL Arbitrary Code Execution
CVE-2003-0372dosmultiple22 mai 2003
Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause
23RISCO
abrir
Exploit-DBVexDay Proof
Qualcomm Eudora 5.2.1/6.0 - File Attachment Spoofing Variant
CVE-2000-0342remotewindows22 mai 2003
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISCO
abrir
Exploit-DBVexDay Proof
IISProtect 2.1/2.2 - Authentication Bypass
CVE-2003-0317remotewindows22 mai 2003
iisPROTECT 2.1 and 2.2 allows remote attackers to bypass authentication via an HTTP request containing URL-encoded chara
23RISCO
abrir
Exploit-DBVexDay Proof
Apple QuickTime/Darwin Streaming MP3Broadcaster - ID3 Tag Handling
CVE-2003-1091remoteosx22 mai 2003
Integer overflow in MP3Broadcaster for Apple QuickTime/Darwin Streaming Server 4.1.3 allows remote attackers to cause a
23RISCO
abrir
Exploit-DBVexDay Proof
WSMP3 0.0.x - Remote Command Execution
CVE-2003-0338remotelinux21 mai 2003
Directory traversal vulnerability in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allows remote attackers to read and execut
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP - 'explorer.exe' Local Buffer Overflow
CVE-2003-0306localwindows21 mai 2003
Buffer overflow in EXPLORER.EXE on Windows XP allows attackers to execute arbitrary code as the XP user via a desktop.in
23RISCO
abrir
Exploit-DBVexDay Proof
Maelstrom Server 3.0.x - Argument Buffer Overflow (3)
CVE-2003-0325localfreebsd20 mai 2003
Buffer overflow in Maelstrom 3.0.6, 3.0.5, and earlier allows local users to execute arbitrary code via a long -server c
23RISCO
abrir
Exploit-DBVexDay Proof
Working Resources BadBlue 1.7.x/2.x - Unauthorized HTS Access
CVE-2003-0332remotewindows20 mai 2003
The ISAPI extension in BadBlue 1.7 through 2.2, and possibly earlier versions, modifies the first two letters of a filen
23RISCO
abrir
Exploit-DBVexDay Proof
CUPS 1.1.x - Cupsd Request Method Denial of Service
CVE-2003-0195doslinux20 mai 2003
CUPS before 1.1.19 allows remote attackers to cause a denial of service via a partial printing request to the IPP port (
28RISCO
abrir
Exploit-DBVexDay Proof
Maelstrom Server 3.0.x - Argument Buffer Overflow (1)
CVE-2003-0325localfreebsd20 mai 2003
Buffer overflow in Maelstrom 3.0.6, 3.0.5, and earlier allows local users to execute arbitrary code via a long -server c
23RISCO
abrir
Exploit-DBVexDay Proof
EJ3 TOPo 2.2 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
CVE-2005-1715webappsphp20 mai 2003
Cross-site scripting (XSS) vulnerability in index.php for TOPo 2.2 (2.2.178) allows remote attackers to inject arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
ttCMS 2.2/2.3 - 'header.php' Remote File Inclusion
CVE-2003-0320webappsphp17 mai 2003
header.php in ttCMS 2.3 and earlier allows remote attackers to inject arbitrary PHP code by setting the ttcms_user_admin
23RISCO
abrir
Exploit-DBVexDay Proof
Snowblind Web Server 1.0/1.1 - GET Buffer Overflow
CVE-2003-0315doswindows16 mai 2003
Snowblind Web Server 1.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary cod
23RISCO
abrir
Exploit-DBVexDay Proof
Snowblind Web Server 1.0/1.1 - Malformed HTTP Request Denial of Service
CVE-2003-0314doswindows16 mai 2003
Snowblind Web Server 1.0 allows remote attackers to cause a denial of service (crash) via a URL that ends in a "</" sequ
23RISCO
abrir
Exploit-DBVexDay Proof
Snowblind 1.0/1.1 - Web Server File Disclosure
CVE-2003-0312remotewindows16 mai 2003
Directory traversal vulnerability in Snowblind Web Server 1.0 allows remote attackers to read arbitrary files via a .. (
23RISCO
abrir
Exploit-DBVexDay Proof
EZ Publish 2.2 - 'index.php' IMG Tag Cross-Site Scripting
CVE-2003-0310webappsphp16 mai 2003
Cross-site scripting (XSS) vulnerability in articleview.php for eZ publish 2.2 allows remote attackers to insert arbitra
23RISCO
abrir
Exploit-DBVexDay Proof
OneOrZero Helpdesk 1.4 - 'install.php' Administrative Access
CVE-2003-0304webappsphp15 mai 2003
one||zero (aka One or Zero) Helpdesk 1.4 rc4 allows remote attackers to create administrator accounts by directly callin
23RISCO
abrir
Exploit-DBVexDay Proof
OneOrZero Helpdesk 1.4 - 'TUpdate.php' SQL Injection
CVE-2003-0303webappsphp15 mai 2003
SQL injection vulnerability in one||zero (aka One or Zero) Helpdesk 1.4 rc4 allows remote attackers to modify arbitrary
23RISCO
abrir
anteriorpágina 730 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.