Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
78.137exploits catalogados
35.961CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.657GitHub PoC 14.424VulnCheck XDB 8.773Nuclei 4.340Metasploit 3.485✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
Microsoft Windows XP/2000/NT 4.0 - Window Message Subsystem Design Error (7)
NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Qualcomm Eudora 5 - MIME MultiPart Boundary Buffer Overflow
Buffer overflow in Eudora 5.1.1 and 5.0-J for Windows, and possibly other versions, allows remote attackers to execute a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
602Pro LAN SUITE 2002 - Telnet Proxy localhost Denial of Service
The Telnet proxy of 602Pro LAN SUITE 2002 does not restrict the number of outstanding connections to the local host, whi
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Sun AnswerBook2 1.x - Unauthorized Administrative Script Access
Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
UoW IMAPd Server 10.234/12.264 - Remote Buffer Overflow
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Bharat Mediratta Gallery 1.x - Remote File Inclusion
Gallery photo album package before 1.3.1 allows local and possibly remote attackers to execute arbitrary code via a modi
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
William Deich Super 3.x - SysLog Format String
Format string vulnerability in super for Linux allows local users to gain root privileges via a long command line argume
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Dispair 0.1/0.2 - Remote Command Execution
Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Apache mod_ssl < 2.8.7 OpenSSL - 'OpenFuck.c' Remote Buffer Overflow
The dbm and shm session cache code in mod_ssl before 2.8.7-1.3.23, and Apache-SSL before 1.3.22+1.46, does not properly
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows Media Player 6/7 - Filename Buffer Overflow
Buffer overflow in mplay32.exe of Microsoft Windows Media Player (WMP) 6.3 through 7.1 allows remote attackers to execut
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IPSwitch IMail 6.x/7.0.x - Web Calendaring Incomplete Post Denial of Service
IPSwitch IMail Web Calendaring service (iwebcal) allows remote attackers to cause a denial of service (crash) via an HTT
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
dotProject 0.2.1 - User Cookie Authentication Bypass
index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cooki
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
phpBB2 Gender Mod 1.1.3 - SQL Injection
SQL injection vulnerability in Gender MOD 1.1.3 allows remote attackers to gain administrative access via the user_level
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeBSD 4.x / NetBSD 1.4.x/1.5.x/1.6 / OpenBSD 3 - pppd Arbitrary File Permission Modification Race Condition
BSD pppd allows local users to change the permissions of arbitrary files via a symlink attack on a file that is specifie
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Ben Chivers Easy Guestbook 1.0 - Administrative Access
Easy Guestbook CGI programs do not authenticate the administrator, which allows remote attackers to (1) delete entries v
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Ben Chivers Easy Homepage Creator 1.0 - File Modification
The print_html_to_file function in edit.cgi for Easy Homepage Creator 1.0 does not check user credentials, which allows
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
MM 1.0.x/1.1.x - Shared Memory Library Temporary File Privilege Escalation
OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ShoutBox 1.2 - 'Form' HTML Injection
Cross-site scripting vulnerability in board.php of endity.com ShoutBOX allows remote attackers to inject arbitrary HTML
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
HP ProCurve Switch 4000M - SNMP Write Denial of Service
HP ProCurve Switch 4000M C.07.23 allows remote attackers to cause a denial of service (crash) via an SNMP write request
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5/6 / Microsoft ISA Server 2000 / Microsoft Proxy Server 2.0 Gopher Client - Remote Buffer Overflow
Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 a
35RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Lucent Access Point 300/600/1500 IP Services Router - Long HTTP Request Denial of Service
Buffer overflow in Lucent Access Point 300, 600, and 1500 Service Routers allows remote attackers to cause a denial of s
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Cisco IOS 11.x - TFTP Server Long File Name Buffer Overflow
Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to ca
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - sp_MScopyscript SQL Injection
Microsoft SQL Server 2000 SP2, when configured as a distributor, allows attackers to execute arbitrary code via the @scr
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IPSwitch IMail 6.x/7.0/7.1 - Web Messaging GET Buffer Overflow
Buffer overflow in the Web Messaging daemon for Ipswitch IMail before 7.12 allows remote attackers to execute arbitrary
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - Resolution Service Heap Overflow
Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSD
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
KaZaA Media Desktop 1.7.1 - Large Message Denial of Service
Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sen
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft SQL Server 2000 - Database Consistency Checkers Buffer Overflow
Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Eng
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Fake Identd 0.9/1.x - Client Query Remote Buffer Overflow
Buffer overflow in Fake Identd 0.9 through 1.4 allows remote attackers to execute arbitrary code as root via a long requ
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
CodeBlue 5.1 - SMTP Response Buffer Overflow
Buffer overflow in CodeBlue 4 and earlier, and possibly other versions, allows remote attackers to execute arbitrary cod
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
GNU Mailman 2.0.x - Subscribe Cross-Site Scripting
Cross-site scripting vulnerability in Mailman before 2.0.12 allows remote attackers to execute script as other users via
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.