Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.137exploits catalogados
35.961CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
X-Chat 1.x - CTCP Ping Remote IRC Command Execution
CVE-2002-0006remotelinux09 jan 2002
XChat 1.8.7 and earlier, including default configurations of 1.4.2 and 1.4.3, allows remote attackers to execute arbitra
23RISCO
abrir
Exploit-DBVexDay Proof
Cacheflow CacheOS 3.1/4.0 Web Administration - Arbitrary Cached Page Code Leakage
CVE-2002-0107remotemultiple08 jan 2002
Web administration interface in CacheFlow CacheOS 4.0.13 and earlier allows remote attackers to obtain sensitive informa
23RISCO
abrir
Exploit-DBVexDay Proof
Boozt 0.9.8 - Remote Buffer Overflow
CVE-2002-0098remotelinux07 jan 2002
Buffer overflow in index.cgi administration interface for Boozt! Standard 0.9.8 allows local users to execute arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
PHP-Nuke AddOn PHPToNuke.php 1.0 - Cross-Site Scripting
CVE-2002-1995webappsphp06 jan 2002
Cross-site scripting (XSS) vulnerability in phptonuke.php for PHP-Nuke allows remote attackers to inject arbitrary web s
23RISCO
abrir
Exploit-DBVexDay Proof
RealPlayer 7.0/8.0 - Media File Buffer Overflow
CVE-2002-0207remotewindows05 jan 2002
Buffer overflow in Real Networks RealPlayer 8.0 and earlier allows remote attackers to execute arbitrary code via a head
23RISCO
abrir
Exploit-DBVexDay Proof
Apache 1.3.20 (Win32) - 'PHP.exe' Remote File Disclosure
CVE-2002-2029remotewindows04 jan 2002
PHP, when installed on Windows with Apache and ScriptAlias for /php/ set to c:/php/, allows remote attackers to read arb
28RISCO
abrir
Exploit-DBVexDay Proof
BrowseFTP Client 1.62 - Remote Buffer Overflow
CVE-2002-2026remotewindows04 jan 2002
Buffer overflow in BrowseFTP 1.62 client allows remote FTP servers to execute arbitrary code via a long FTP "220" messag
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5 - JavaScript Local File Enumeration (2)
CVE-2002-2031remotewindows03 jan 2002
Internet Explorer 5.0, 5.0.1 and 5.5 with JavaScript execution enabled allows remote attackers to determine the existenc
28RISCO
abrir
Exploit-DBVexDay Proof
Net-SNMP 4.2.3 - snmpnetstat Remote Heap Overflow
CVE-2002-1570remotelinux03 jan 2002
Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execu
23RISCO
abrir
Exploit-DBVexDay Proof
BSCW 3.4/4.0 - Insecure Default Installation
CVE-2002-0095remotemultiple03 jan 2002
The default configuration of BSCW (Basic Support for Cooperative Work) 3.x and possibly version 4 enables user self regi
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5 - JavaScript Local File Enumeration (1)
CVE-2002-2031remotewindows03 jan 2002
Internet Explorer 5.0, 5.0.1 and 5.5 with JavaScript execution enabled allows remote attackers to determine the existenc
28RISCO
abrir
Exploit-DBVexDay Proof
AOL Instant Messenger 4.x - Remote Buffer Overflow
CVE-2002-0005remotewindows02 jan 2002
Buffer overflow in AOL Instant Messenger (AIM) 4.7.2480, 4.8.2616, and other versions allows remote attackers to execute
28RISCO
abrir
Exploit-DBVexDay Proof
WikkiTikkiTavi 0.x - Remote File Inclusion
CVE-2002-2106webappsphp02 jan 2002
PHP remote file inclusion vulnerability in WikkiTikkiTavi before 0.21 allows remote attackers to execute arbitrary PHP c
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5/6 - GetObject File Disclosure
CVE-2002-0023remotewindows01 jan 2002
Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to read arbitrary files via malformed requests to the GetObj
35RISCO
abrir
Exploit-DBVexDay Proof
rsync 2.5.1 - Remote (1)
CVE-2002-0048remotelinux01 jan 2002
Multiple signedness errors (mixed signed and unsigned numbers) in the I/O functions of rsync 2.4.6, 2.3.2, and other ver
35RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2/7/8/9 cachefsd - Remote Heap Overflow
CVE-2002-0033remotesolaris01 jan 2002
Heap-based buffer overflow in cfsd_calloc function of Solaris cachefsd allows remote attackers to execute arbitrary code
28RISCO
abrir
Exploit-DBVexDay Proof
rsync 2.5.1 - Remote (2)
CVE-2002-0048remotelinux01 jan 2002
Multiple signedness errors (mixed signed and unsigned numbers) in the I/O functions of rsync 2.4.6, 2.3.2, and other ver
35RISCO
abrir
Exploit-DBVexDay Proof
OpenBSD - 'ftp' Local Overflow
CVE-2000-0574localbsd01 jan 2002
FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings tha
35RISCO
abrir
Exploit-DBVexDay Proof
Abe Timmerman - 'zml.cgi' File Disclosure
CVE-2001-1209remotecgi31 dez 2001
Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the f
23RISCO
abrir
Exploit-DBVexDay Proof
DeleGate 7.7.1 - Cross-Site Scripting
CVE-2001-1202remotemultiple28 dez 2001
Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden
23RISCO
abrir
Exploit-DBVexDay Proof
STunnel 3.x - Client Negotiation Protocol Format String
CVE-2002-0002remotelinux22 dez 2001
Format string vulnerability in stunnel before 3.22 when used in client mode for (1) smtp, (2) pop, or (3) nntp allows re
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris /bin/login (SPARC/x86) - Remote Code Execution
CVE-2001-0797remotelinux_sparc20 dez 2001
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary comman
60RISCO
abrir
Exploit-DBVexDay Proof
Alteon AceDirector - Half-Closed HTTP Request IP Address Revealing
CVE-2002-0209remotehardware20 dez 2001
Nortel Alteon ACEdirector WebOS 9.0, with the Server Load Balancing (SLB) and Cookie-Based Persistence features enabled,
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 98/XP/ME - UPnP NOTIFY Buffer Overflow (1)
CVE-2001-0876remotewindows20 dez 2001
Buffer overflow in Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to execute arb
35RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 98/XP/ME - UPnP NOTIFY Buffer Overflow (2)
CVE-2001-0876remotewindows20 dez 2001
Buffer overflow in Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to execute arb
35RISCO
abrir
Exploit-DBVexDay Proof
QPopper 4.0.x - PopAuth Trace File Shell Command Execution
CVE-2001-1487remoteunix18 dez 2001
popauth utility in Qualcomm Qpopper 4.0 and earlier allows local users to overwrite arbitrary files and execute commands
23RISCO
abrir
Exploit-DBVexDay Proof
ZYXEL Prestige 681 SDSL Router - IP Fragment Reassembly
CVE-2001-1194remotehardware18 dez 2001
Zyxel Prestige 681 and 1600 SDSL Routers allow remote attackers to cause a denial of service via malformed packets with
23RISCO
abrir
Exploit-DBVexDay Proof
Aktivate 1.0 3 - Shopping Cart Cross-Site Scripting
CVE-2001-1212webappscgi18 dez 2001
Cross-site scripting vulnerability in catgy.cgi for Aktivate 1.03 allows remote attackers to execute arbitrary Javascrip
23RISCO
abrir
Exploit-DBVexDay Proof
webmin 0.91 - Directory Traversal
CVE-2001-1196remotecgi17 dez 2001
Directory traversal vulnerability in edit_action.cgi of Webmin Directory 0.91 allows attackers to gain privileges via a
23RISCO
abrir
Exploit-DBVexDay Proof
Agora.CGI 3.x/4.0 - Debug Mode Cross-Site Scripting
CVE-2001-1199webappscgi17 dez 2001
Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g, when debug mode is enabled, allows remote a
23RISCO
abrir
anteriorpágina 762 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.