Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.137exploits catalogados
35.961CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
SmartMail Server 2.0 - Closed Connection Denial of Service
CVE-2002-1862doswindows31 out 2002
SmartMail Server 2.0 allows remote attackers to cause a denial of service (crash) by sending data and closing the connec
23RISCO
abrir
Exploit-DBVexDay Proof
LPRNG html2ps 1.0 - Remote Command Execution
CVE-2002-1275remoteunix31 out 2002
Unknown vulnerability in html2ps HTML/PostScript converter 1.0, when used within LPRng, allows remote attackers to execu
23RISCO
abrir
Exploit-DBVexDay Proof
SmartMail Server 1.0 Beta 10 - Oversized Request Denial of Service
CVE-2002-1945doswindows31 out 2002
Buffer overflow in SmartMail Server 1.0 Beta 10 allows remote attackers to cause a denial of service (crash) via a long
23RISCO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'newtopic.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 out 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RISCO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'entete.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 out 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RISCO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'index.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 out 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RISCO
abrir
Exploit-DBVexDay Proof
Benjamin Lefevre Dobermann Forum 0.x - 'enteteacceuil.php?subpath' Remote File Inclusion
CVE-2002-2200webappsphp28 out 2002
Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP f
23RISCO
abrir
Exploit-DBVexDay Proof
MailReader.com 2.3.x - 'NPH-MR.cgi' File Disclosure
CVE-2002-1581webappscgi28 out 2002
Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view
23RISCO
abrir
Exploit-DBVexDay Proof
Alt-N MDaemon 6.0.x - POP Server Buffer Overflow
CVE-2002-1539doswindows28 out 2002
Buffer overflow in MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service v
23RISCO
abrir
Exploit-DBVexDay Proof
Cisco AS5350 - Universal Gateway Portscan Denial of Service
CVE-2002-2379doshardware28 out 2002
Cisco AS5350 IOS 12.2(11)T with access control lists (ACLs) applied and possibly with ssh running allows remote attacker
23RISCO
abrir
Exploit-DBVexDay Proof
SolarWinds TFTP Server Standard Edition 5.0.55 - Directory Traversal
CVE-2002-1209remotewindows25 out 2002
Directory traversal vulnerability in SolarWinds TFTP Server 5.0.55, and possibly earlier, allows remote attackers to rea
28RISCO
abrir
Exploit-DBVexDay Proof
Mojo Mail 2.7 - Email Form Cross-Site Scripting
CVE-2002-2193webappscgi24 out 2002
Cross-site scripting (XSS) vulnerability in mojo.cgi for Mojo Mail 2.7 allows remote attackers to inject arbitrary web s
23RISCO
abrir
Exploit-DBVexDay Proof
SolarWinds TFTP Server Standard Edition 5.0.55 - Large UDP Packet
CVE-2002-1542doswindows24 out 2002
SolarWinds TFTP server 5.0.55 and earlier allows remote attackers to cause a denial of service (crash) via a large UDP d
28RISCO
abrir
Exploit-DBVexDay Proof
MyMarket 1.71 - 'Form_Header.php' Cross-Site Scripting
CVE-2002-2362webappsphp23 out 2002
Cross-site scripting (XSS) vulnerability in form_header.php in MyMarket 1.71 allows remote attackers to inject arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
IBM Websphere Edge Server 3.6/4.0 - Cross-Site Scripting
CVE-2002-1167remoteunix23 out 2002
Cross-site scripting (XSS) vulnerability in IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 all
23RISCO
abrir
Exploit-DBVexDay Proof
IBM Websphere Edge Server 3.69/4.0 - HTTP Header Injection
CVE-2002-1168remoteunix23 out 2002
Cross-site scripting (XSS) vulnerability in IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 all
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5/6 - Cached Objects Zone Bypass
CVE-2002-1254remotewindows22 out 2002
Internet Explorer 5.5 and 6.0 allows remote attackers to bypass the cross-domain security model and access information o
35RISCO
abrir
Exploit-DBVexDay Proof
gBook 1.4 - Administrative Access
CVE-2002-1560webappsphp22 out 2002
index.php in gBook 1.4 allows remote attackers to bypass authentication and gain administrative privileges by setting th
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (1)
CVE-2002-1561doswindows22 out 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (2)
CVE-2002-1561doswindows22 out 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RISCO
abrir
Exploit-DBVexDay Proof
AOL Instant Messenger 4.8.2790 - Local File Execution
CVE-2002-1813remotewindows22 out 2002
Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8.2790 allows remote attackers to execute arbitrary p
23RISCO
abrir
Exploit-DBVexDay Proof
PHP Arena PAFileDB 1.1.3/2.1.1/3.0 - 'Email To Friend' Cross-Site Scripting
CVE-2002-1929webappsphp21 out 2002
Cross-site scripting (XSS) vulnerability in pafiledb.php in PHP Arena paFileDB 1.1.3 through 3.0 allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
KMMail 1.0 - E-Mail HTML Injection
CVE-2002-1958webappsphp21 out 2002
Cross-site scripting (XSS) vulnerability in kmMail 1.0, 1.0a, and 1.0b allows remote attackers to inject arbitrary web s
23RISCO
abrir
Exploit-DBVexDay Proof
AN HTTPD 1.38/1.39/1.40/1.41 - 'SOCKS4' Buffer Overflow
CVE-2002-1930remotewindows21 out 2002
Buffer overflow in AN HTTPd 1.38 through 1.4.1c allows remote attackers to execute arbitrary code via a SOCKS4 request w
23RISCO
abrir
Exploit-DBVexDay Proof
YaBB 1.40/1.41 - Login Cross-Site Scripting
CVE-2002-1845webappsphp18 out 2002
Cross-site scripting (XSS) vulnerability in index.php in Yet Another Bulletin Board (YaBB) 1.40 and 1.41 allows remote a
23RISCO
abrir
Exploit-DBVexDay Proof
vBulletin 2.0/2.2.x - Cross-Site Scripting
CVE-2002-1922webappsjava18 out 2002
Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
IBM Websphere Caching Proxy 3.6/4.0 - Denial of Service
CVE-2002-1169dosunix18 out 2002
IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 allows remote attackers to cause a denial of se
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (3)
CVE-2002-1561doswindows18 out 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows XP/2000/NT 4.0 - RPC Service Denial of Service (4)
CVE-2002-1561doswindows18 out 2002
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (
35RISCO
abrir
Exploit-DBVexDay Proof
Cisco CatOS 5.x/6.1/7.3/7.4 - CiscoView HTTP Server Buffer Overflow
CVE-2002-1222remotehardware16 out 2002
Buffer overflow in the embedded HTTP server for Cisco Catalyst switches running CatOS 5.4 through 7.3 allows remote atta
23RISCO
abrir
anteriorpágina 742 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.