Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.101exploits catalogados
35.950CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
S8Forum 3.0 - Remote Command Execution
CVE-2003-1252webappsphp06 jan 2003
register.php in S8Forum 3.0 allows remote attackers to execute arbitrary PHP commands by creating a user whose name ends
23RISCO
abrir
Exploit-DBVexDay Proof
EType EServ 1.9x - NNTP Remote Denial of Service
CVE-2003-1266doswindows04 jan 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RISCO
abrir
Exploit-DBVexDay Proof
EType EServ 2.9x - POP3 Remote Denial of Service
CVE-2003-1266doswindows04 jan 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RISCO
abrir
Exploit-DBVexDay Proof
EType EServ 2.9x - FTP Remote Denial of Service
CVE-2003-1266doswindows04 jan 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RISCO
abrir
Exploit-DBVexDay Proof
EType EServ 2.9x - SMTP Remote Denial of Service
CVE-2003-1266doswindows04 jan 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Pocket Internet Explorer 3.0 - Denial of Service
CVE-2003-1275doswindows03 jan 2003
Pocket Internet Explorer (PIE) 3.0 allows remote attackers to cause a denial of service (crash) via a Javascript functio
28RISCO
abrir
Exploit-DBVexDay Proof
iCal 3.7 - Remote Buffer Overflow (PoC)
CVE-2003-1263doswindows03 jan 2003
ICAL.EXE in iCal 3.7 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request, possibly
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - Lanman Denial of Service (2)
CVE-2002-0597doswindows03 jan 2003
LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) vi
35RISCO
abrir
Exploit-DBVexDay Proof
Sun Solaris 2.5.1/2.6/7.0/8/9 Wall - Spoofed Message Origin
CVE-2003-1071localsolaris03 jan 2003
rpc.walld (wall daemon) for Solaris 2.6 through 9 allows local users to send messages to logged on users that appear to
23RISCO
abrir
Exploit-DBVexDay Proof
iCal 3.7 - HTTP Request Denial of Service
CVE-2003-1263doswindows03 jan 2003
ICAL.EXE in iCal 3.7 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request, possibly
23RISCO
abrir
Exploit-DBVexDay Proof
N/X Web Content Management System 2002 Prerelease 1 - 'datasets.php?c_path' Local File Inclusion
CVE-2003-1251webappsphp02 jan 2003
The (1) menu.inc.php, (2) datasets.php and (3) mass_operations.inc.php (mistakenly referred to as mass_opeations.inc.php
23RISCO
abrir
Exploit-DBVexDay Proof
N/X Web Content Management System 2002 Prerelease 1 - 'menu.inc.php?c_path' Remote File Inclusion
CVE-2003-1251webappsphp02 jan 2003
The (1) menu.inc.php, (2) datasets.php and (3) mass_operations.inc.php (mistakenly referred to as mass_opeations.inc.php
23RISCO
abrir
Exploit-DBVexDay Proof
PEEL 1.0b - Remote File Inclusion
CVE-2002-2134webappsphp31 dez 2002
haut.php in PEEL 1.0b allows remote attackers to execute arbitrary PHP code by modifying the dirroot parameter to refere
23RISCO
abrir
Exploit-DBVexDay Proof
Emacs 2.1 - Local Variable Arbitrary Command Execution
CVE-2003-1232locallinux31 dez 2002
Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file,
23RISCO
abrir
Exploit-DBVexDay Proof
Melange Chat Server 1.10 - Remote Buffer Overflow
CVE-2002-1351remotelinux24 dez 2002
Buffer overflow in Melange Chat System 1.10 allows remote attackers to cause a denial of service (chat server crash) and
23RISCO
abrir
Exploit-DBVexDay Proof
W-Agora 4.1.6 - 'EditForm.php' Cross-Site Scripting
CVE-2002-2129webappsphp22 dez 2002
Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
CHETCPASSWD 1.12 - Shadow File Disclosure
CVE-2002-2219webappscgi22 dez 2002
chetcpasswd.cgi in Pedro Lineu Orso chetcpasswd before 2.1 allows remote attackers to read the last line of the shadow f
23RISCO
abrir
Exploit-DBVexDay Proof
RealServer 7-9 - Describe Buffer Overflow (Metasploit)
CVE-2002-1643remotemultiple20 dez 2002
Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbit
60RISCO
abrir
Exploit-DBVexDay Proof
CUPS 1.1.x - Negative Length HTTP Header
CVE-2002-1368remotelinux19 dez 2002
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) an
28RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.2 - 'mmap()' Local Denial of Service
CVE-2002-1380doslinux17 dez 2002
Linux kernel 2.2.x allows local users to cause a denial of service (crash) by using the mmap() function with a PROT_READ
23RISCO
abrir
Exploit-DBVexDay Proof
GoAhead Web Server 2.1.x - '.ASP' File Source Code Disclosure
CVE-2002-1603remotewindows17 dez 2002
GoAhead Web Server 2.1.7 and earlier allows remote attackers to obtain the source code of ASP files via a URL terminated
28RISCO
abrir
Exploit-DBVexDay Proof
MySQL 3.23.x/4.0.x - 'COM_CHANGE_USER' Password Length Account
CVE-2002-1374remoteunix16 dez 2002
The COM_CHANGE_USER command in MySQL 3.x before 3.23.54, and 4.x before 4.0.6, allows remote attackers to gain privilege
28RISCO
abrir
Exploit-DBVexDay Proof
MyPHPSoft MyPHPLinks 2.1.9/2.2 - SQL Injection Administration Bypassing
CVE-2002-2304webappsphp14 dez 2002
SQL injection vulnerability in admin/auth/checksession.php in MyPHPLinks 2.1.9 and 2.2.0 allows remote attackers to exec
23RISCO
abrir
Exploit-DBVexDay Proof
MySQL 3.23.x/4.0.x - COM_CHANGE_USER Password Memory Corruption
CVE-2002-1375remoteunix12 dez 2002
The COM_CHANGE_USER command in MySQL 3.x before 3.23.54, and 4.x to 4.0.6, allows remote attackers to execute arbitrary
28RISCO
abrir
Exploit-DBVexDay Proof
Mambo Site Server 4.0.11 - 'PHPInfo.php' Information Disclosure
CVE-2002-2247webappsphp12 dez 2002
The administrator/phpinfo.php script in Mambo Site Server 4.0.11 allows remote attackers to obtain sensitive information
23RISCO
abrir
Exploit-DBVexDay Proof
Mambo Site Server 4.0.11 - Full Path Disclosure
CVE-2002-2288webappsphp12 dez 2002
Mambo Site Server 4.0.11 allows remote attackers to obtain the physical path of the server via an HTTP request to index.
23RISCO
abrir
Exploit-DBVexDay Proof
Deerfield VisNetic WebSite 3.5.13.1 - Cross-Site Scripting
CVE-2002-2246webappsphp12 dez 2002
Cross-site scripting (XSS) vulnerability in VisNetic Website before 3.5.15 allows remote attackers to inject arbitrary w
23RISCO
abrir
Exploit-DBVexDay Proof
HP-UX 11.0/11.11 - 'swxxx' Privilege Escalation
CVE-2001-0979localhp-ux11 dez 2002
Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long
23RISCO
abrir
Exploit-DBVexDay Proof
HP-UX 11 - Software Distributor Lang Environment Variable Local Buffer Overrun
CVE-2003-0089localhp-ux11 dez 2002
Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitr
23RISCO
abrir
Exploit-DBVexDay Proof
Trend Micro PC-cillin 2000/2002/2003 - Mail Scanner Buffer Overflow
CVE-2002-1349remotewindows10 dez 2002
Buffer overflow in pop3trap.exe for PC-cillin 2000, 2002, and 2003 allows local users to execute arbitrary code via a lo
23RISCO
abrir
anteriorpágina 739 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.