Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.056exploits catalogados
35.925CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Leksbot 1.2 - Multiple Vulnerabilities
CVE-2003-0262locallinux06 mai 2003
leksbot 1.2.3 in Debian GNU/Linux installs the KATAXWR as setuid root, which allows local users to gain root privileges
23RISCO
abrir
Exploit-DBVexDay Proof
FloosieTek FTGate PRO 1.22 - SMTP RCPT TO Buffer Overflow
CVE-2003-0263doswindows06 mai 2003
Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitr
28RISCO
abrir
Exploit-DBVexDay Proof
FloosieTek FTGate PRO 1.22 - SMTP MAIL FROM Buffer Overflow
CVE-2003-0263doswindows06 mai 2003
Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitr
28RISCO
abrir
Exploit-DBVexDay Proof
Youbin 2.5/3.0/3.4 - 'HOME' Buffer Overflow
CVE-2003-0269localfreebsd06 mai 2003
Buffer overflow in youbin allows local users to gain privileges via a long HOME environment variable.
23RISCO
abrir
Exploit-DBVexDay Proof
IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (2)
CVE-2003-0770webappscgi05 mai 2003
FUNC.pm in IkonBoard 3.1.2a and earlier, including 3.1.1, does not properly cleanse the "lang" cookie when it contains i
28RISCO
abrir
Exploit-DBVexDay Proof
MySQL 3.x/4.0.x - Weak Password Encryption
CVE-2003-1480locallinux05 mai 2003
MySQL 3.20 through 4.1.0 uses a weak algorithm for hashed passwords, which makes it easier for attackers to decrypt the
23RISCO
abrir
Exploit-DBVexDay Proof
CommuniGate Pro Webmail 4.0.6 - Session Hijacking
CVE-2003-1481remotelinux05 mai 2003
CommuniGate Pro 3.1 through 4.0.6 sends the session ID in the referer field for an HTTP request for an image, which allo
23RISCO
abrir
Exploit-DBVexDay Proof
KDE Konqueror 3.0.3 - Malformed HTML Page Denial of Service
CVE-2003-1478doslinux02 mai 2003
Konqueror in KDE 3.0.3 allows remote attackers to cause a denial of service (core dump) via a web page that begins with
23RISCO
abrir
Exploit-DBVexDay Proof
OpenSSH/PAM 3.6.1p1 - 'gossh.sh' Remote Users Ident
CVE-2003-0190remotelinux02 mai 2003
OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user d
60RISCO
abrir
Exploit-DBVexDay Proof
HP-UX 11 RWrite - Buffer Overflow
CVE-2003-1461doshp-ux02 mai 2003
Buffer overflow in rwrite for HP-UX 11.0 could allow local users to execute arbitrary code via a long argument. NOTE: t
23RISCO
abrir
Exploit-DBVexDay Proof
OpenSSH/PAM 3.6.1p1 - Remote Users Discovery Tool
CVE-2003-0190remotelinux30 abr 2003
OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user d
60RISCO
abrir
Exploit-DBVexDay Proof
Sendmail 8.12.8 (BSD) - 'Prescan()' Remote Command Execution
CVE-2003-0161remotelinux30 abr 2003
The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain co
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft BizTalk Server 2002 - HTTP Receiver Buffer Overflow
CVE-2003-0117doswindows30 abr 2003
Buffer overflow in the HTTP receiver function (BizTalkHTTPReceive.dll ISAPI) of Microsoft BizTalk Server 2002 allows att
23RISCO
abrir
Exploit-DBVexDay Proof
Kerio Personal Firewall 2.1.x - Remote Authentication Packet Buffer Overflow (2)
CVE-2003-0220remotewindows30 abr 2003
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows r
50RISCO
abrir
Exploit-DBVexDay Proof
RealServer < 8.0.2 (Windows Platforms) - Remote Overflow
CVE-2002-1643remotewindows30 abr 2003
Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbit
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft BizTalk Server 2000/2002 DTA - 'RawCustomSearchField.asp' SQL Injection
CVE-2003-0118webappsasp30 abr 2003
SQL injection vulnerability in the Document Tracking and Administration (DTA) website of Microsoft BizTalk Server 2000 a
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft BizTalk Server 2000/2002 DTA - 'rawdocdata.asp' SQL Injection
CVE-2003-0118webappsasp30 abr 2003
SQL injection vulnerability in the Document Tracking and Administration (DTA) website of Microsoft BizTalk Server 2000 a
23RISCO
abrir
Exploit-DBVexDay Proof
Qpopper 4.0.x - 'poppassd' Privilege Escalation
CVE-2003-1452locallinux29 abr 2003
Untrusted search path vulnerability in Qualcomm qpopper 4.0 through 4.05 allows local users to execute arbitrary code by
23RISCO
abrir
Exploit-DBVexDay Proof
HP-UX 10.x/11.x - RExec Remote 'Username' Flag Local Buffer Overrun
CVE-2003-1097doshp-ux29 abr 2003
Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local users to gain privile
23RISCO
abrir
Exploit-DBVexDay Proof
Pi3Web 2.0.1 - Denial of Service (PoC)
CVE-2003-0276doswindows29 abr 2003
Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitr
28RISCO
abrir
Exploit-DBVexDay Proof
Kerio Personal Firewall 2.1.x - Remote Authentication Packet Buffer Overflow (1)
CVE-2003-0220doswindows28 abr 2003
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows r
50RISCO
abrir
Exploit-DBVexDay Proof
3D-FTP Client 4.0 - Buffer Overflow
CVE-2003-1472doswindows28 abr 2003
Buffer overflow in 3D-FTP client 4.0 allows remote FTP servers to cause a denial of service (crash) and possibly execute
23RISCO
abrir
Exploit-DBVexDay Proof
Opera 6.0.x/7.0 - Long File Name Remote Heap Corruption
CVE-2003-1396doswindows28 abr 2003
Heap-based buffer overflow in Opera 6.05 through 7.10 allows remote attackers to cause a denial of service (crash) and p
23RISCO
abrir
Exploit-DBVexDay Proof
Mike Bobbitt Album.PL 0.61 - Remote Command Execution
CVE-2003-1456webappscgi26 abr 2003
Album.pl 6.1 allows remote attackers to execute arbitrary commands, when an alternative configuration file is used, via
23RISCO
abrir
Exploit-DBVexDay Proof
Macromedia ColdFusion MX 6.0 - Error Message Full Path Disclosure
CVE-2003-1469webappscfm26 abr 2003
The default configuration of ColdFusion MX has the "Enable Robust Exception Information" option selected, which allows r
23RISCO
abrir
Exploit-DBVexDay Proof
Pi3Web 2.0.1 - GET Denial of Service
CVE-2003-0276doswindows26 abr 2003
Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitr
28RISCO
abrir
Exploit-DBVexDay Proof
Alt-N WebAdmin 2.0.x - Remote File Viewing
CVE-2003-1463remotecgi25 abr 2003
Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with ad
23RISCO
abrir
Exploit-DBVexDay Proof
Alt-N WebAdmin 2.0.x - Remote File Disclosure
CVE-2003-1463remotecgi25 abr 2003
Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with ad
23RISCO
abrir
Exploit-DBVexDay Proof
PoPToP PPTP 1.1.4-b3 - 'poptop-sane.c' Remote Command Execution
CVE-2003-0213remotelinux25 abr 2003
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length fie
60RISCO
abrir
Exploit-DBVexDay Proof
Truegalerie 1.0 - Unauthorized Administrative Access
CVE-2003-1488webappsphp25 abr 2003
The (1) verif_admin.php and (2) check_admin.php scripts in Truegalerie 1.0 allow remote attackers to gain administrator
23RISCO
abrir
anteriorpágina 732 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.