Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.137exploits catalogados
35.961CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Jon Howell Faq-O-Matic 2.7 - Cross-Site Scripting
CVE-2002-2011webappscgi20 abr 2002
Cross-site scripting (XSS) vulnerability in the fom CGI program (fom.cgi) in Faq-O-Matic 2.711 and 2.712 allows remote a
23RISCO
abrir
Exploit-DBVexDay Proof
IcrediBB 1.1 - Script Injection
CVE-2002-0590webappsphp19 abr 2002
Cross-site scripting (CSS) vulnerability in IcrediBB 1.1 Beta allows remote attackers to execute arbitrary script and st
23RISCO
abrir
Exploit-DBVexDay Proof
National Instruments LabVIEW 5.1.1/6.0/6.1 - HTTP Request Denial of Service
CVE-2002-0748dosmultiple19 abr 2002
LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET reques
28RISCO
abrir
Exploit-DBVexDay Proof
PostBoard 2.0 - BBCode IMG Tag Script Injection
CVE-2002-0535webappsphp19 abr 2002
Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other u
23RISCO
abrir
Exploit-DBVexDay Proof
OpenSSH 2.x/3.x - Kerberos 4 TGT/AFS Token Buffer Overflow
CVE-2002-0575remotelinux19 abr 2002
Buffer overflow in OpenSSH before 2.9.9, and 3.x before 3.2.1, with Kerberos/AFS support and KerberosTgtPassing or AFSTo
23RISCO
abrir
Exploit-DBVexDay Proof
PostBoard 2.0 - Topic Title Script Execution
CVE-2002-0535webappsphp19 abr 2002
Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other u
23RISCO
abrir
Exploit-DBVexDay Proof
Snitz Forums 2000 3.x - 'members.asp' SQL Injection
CVE-2002-0607webappsasp19 abr 2002
members.asp in Snitz Forums 2000 version 3.3.03 and earlier allows remote attackers to execute arbitrary code via a SQL
23RISCO
abrir
Exploit-DBVexDay Proof
PVote 1.0/1.5 - Unauthorized Administrative Password Change
CVE-2002-0589webappsphp18 abr 2002
PVote before 1.9 allows remote attackers to change the administrative password and gain privileges by directly calling c
23RISCO
abrir
Exploit-DBVexDay Proof
SSH2 3.0 - Restricted Shell Escape (Command Execution)
CVE-2002-1715locallinux18 abr 2002
SSH 1 through 3, and possibly other versions, allows local users to bypass restricted shells such as rbash or rksh by up
23RISCO
abrir
Exploit-DBVexDay Proof
PVote 1.0/1.5 - Poll Content Manipulation
CVE-2002-0588webappsphp18 abr 2002
PVote before 1.9 does not authenticate users for restricted operations, which allows remote attackers to add or delete p
23RISCO
abrir
Exploit-DBVexDay Proof
AOL Instant Messenger 4.x - Arbitrary File Creation
CVE-2002-0591remotewindows17 abr 2002
Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create
28RISCO
abrir
Exploit-DBVexDay Proof
Ecometry SGDynamo 5.32/6.1/7.0 - Cross-Site Scripting
CVE-2002-0375remotewindows17 abr 2002
Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript
23RISCO
abrir
Exploit-DBVexDay Proof
WebTrends Reporting Center for Windows 4.0 d - GET Buffer Overflow
CVE-2002-0595doswindows17 abr 2002
Buffer overflow in WTRS_UI.EXE (WTX_REMOTE.DLL) for WebTrends Reporting Center 4.0d allows remote attackers to execute a
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - Lanman Denial of Service (1)
CVE-2002-0597doswindows17 abr 2002
LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) vi
35RISCO
abrir
Exploit-DBVexDay Proof
Sambar Server 5.1 - Script Source Disclosure
CVE-2002-0737remotecgi17 abr 2002
Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a den
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5 - Dialog Same Origin Policy Bypass Variant (MS02-047)
CVE-2002-0189remotewindows16 abr 2002
Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote attackers to execute scripts in the Local Comp
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 5.0 - 'CodeBrws.asp' Source Code Disclosure
CVE-2002-1744remotewindows16 abr 2002
Directory traversal vulnerability in CodeBrws.asp in Microsoft IIS 5.0 allows remote attackers to view source code and d
35RISCO
abrir
Exploit-DBVexDay Proof
FileSeek - CGI Script File Disclosure
CVE-2002-0611webappscgi16 abr 2002
Directory traversal vulnerability in FileSeek.cgi allows remote attackers to read arbitrary files via a ....// (modified
23RISCO
abrir
Exploit-DBVexDay Proof
FileSeek CGI Script - Remote Command Execution
CVE-2002-0612webappscgi16 abr 2002
FileSeek.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) head or (2) foot
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5.5/6.0 - History List Script Injection
CVE-2002-1688remotewindows15 abr 2002
The browser history feature in Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to execute arbitrary
28RISCO
abrir
Exploit-DBVexDay Proof
3CDaemon 2.0 - Buffer Overflow (1)
CVE-2002-0606doswindows15 abr 2002
Buffer overflow in 3Cdaemon 2.0 FTP server allows remote attackers to cause a denial of service (crash) and possibly exe
28RISCO
abrir
Exploit-DBVexDay Proof
Demarc PureSecure 1.0.5 - Authentication Check SQL Injection
CVE-2002-0539remotemultiple15 abr 2002
Demarc PureSecure 1.05 allows remote attackers to gain administrative privileges via a SQL injection attack in a session
23RISCO
abrir
Exploit-DBVexDay Proof
Burning Board 1.1.1 - 'URL' Manipulation
CVE-2002-2021webappsphp15 abr 2002
Cross-site scripting (XSS) vulnerability in WoltLab Burning Board (wbboard) 1.1.1 allows remote attackers to inject arbi
23RISCO
abrir
Exploit-DBVexDay Proof
Nortel CVX 1800 Multi-Service Access Switch - Default SNMP Community
CVE-2002-0540remotehardware15 abr 2002
Nortel CVX 1800 is installed with a default "public" community string, which allows remote attackers to read usernames a
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 4.0/5.0 - Chunked Encoding Transfer Heap Overflow (2)
CVE-2002-0079remotewindows14 abr 2002
Buffer overflow in the chunked encoding transfer mechanism in Internet Information Server (IIS) 4.0 and 5.0 Active Serve
45RISCO
abrir
Exploit-DBVexDay Proof
Melange Chat System 2.0.2 Beta 2 - '/yell' Remote Buffer Overflow
CVE-2002-0552dosmultiple14 abr 2002
Multiple buffer overflows in Melange Chat server 2.02 allow remote or local attackers to cause a denial of service (cras
23RISCO
abrir
Exploit-DBVexDay Proof
SunShop Shopping Cart 1.5/2.x - User-Embedded Scripting
CVE-2002-0553webappsphp13 abr 2002
Cross-site scripting vulnerability in SunShop 2.5 and earlier allows remote attackers to gain administrative privileges
23RISCO
abrir
Exploit-DBVexDay Proof
IRIX 6.5.x - Performance Co-Pilot Remote Denial of Service
CVE-2000-1193dosirix12 abr 2002
Performance Metrics Collector Daemon (PMCD) in Performance Copilot in IRIX 6.x allows remote attackers to cause a denial
23RISCO
abrir
Exploit-DBVexDay Proof
ISC INN 2.0/2.1/2.2.x - Multiple Local Format String Vulnerabilities
CVE-2002-0525locallinux11 abr 2002
Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious
23RISCO
abrir
Exploit-DBVexDay Proof
OpenBSD 2.9/3.0 - Default Crontab Root Command Injection
CVE-2002-0542localopenbsd11 abr 2002
mail in OpenBSD 2.9 and 3.0 processes a tilde (~) escape character in a message even when it is not in interactive mode,
23RISCO
abrir
anteriorpágina 757 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.