Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.137exploits catalogados
35.961CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
EFTP Server 2.0.7.337 - Directory Existence / File Existence
CVE-2001-1109remotewindows12 set 2001
Directory traversal vulnerability in EFTP 2.0.7.337 allows remote authenticated users to reveal directory contents via a
23RISCO
abrir
Exploit-DBVexDay Proof
RedHat Linux 7.0 Apache - Remote Username Enumeration
CVE-2001-1013remotelinux12 set 2001
Apache on Red Hat Linux with with the UserDir directive enabled generates different error codes when a username exists a
50RISCO
abrir
Exploit-DBVexDay Proof
SpeechD 0.1/0.2 - Privileged Command Execution
CVE-2001-0956localunix11 set 2001
speechd 0.54 and earlier, with the Festival or rsynth speech synthesis package, allows attackers to execute arbitrary co
23RISCO
abrir
Exploit-DBVexDay Proof
CGIEmail 1.6 - Remote Buffer Overflow
CVE-2002-1652remotelinux11 set 2001
Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly e
23RISCO
abrir
Exploit-DBVexDay Proof
Digital Unix 4.0 - MSGCHK MH_PROFILE Symbolic Link
CVE-2001-1092localunix10 set 2001
msgchk in Digital UNIX 4.0G and earlier allows a local user to read the first line of arbitrary files via a symlink atta
23RISCO
abrir
Exploit-DBVexDay Proof
Taylor UUCP 1.0.6 - Argument Handling Privilege Escalation
CVE-2001-0873localunix08 set 2001
uuxqt in Taylor UUCP package does not properly remove dangerous long options, which allows local users to gain privilege
23RISCO
abrir
Exploit-DBVexDay Proof
Hassan Consulting Shopping Cart 1.23 - Arbitrary Command Execution
CVE-2001-0985remotecgi08 set 2001
shop.pl in Hassan Consulting Shopping Cart 1.23 allows remote attackers to execute arbitrary commands via shell metachar
23RISCO
abrir
Exploit-DBVexDay Proof
Merit AAA RADIUS Server 3.8 - rlmadmin Symbolic Link
CVE-2001-1000localunix07 set 2001
rlmadmin RADIUS management utility in Merit AAA Server 3.8M, 5.01, and possibly other versions, allows local users to re
23RISCO
abrir
Exploit-DBVexDay Proof
Power Up HTML 0.8033 Beta - Directory Traversal Arbitrary File Disclosure
CVE-2001-1138remotecgi07 set 2001
Directory traversal vulnerability in r.pl (aka r.cgi) of Randy Parker Power Up HTML 0.8033beta allows remote attackers t
28RISCO
abrir
Exploit-DBVexDay Proof
Digital Unix 4.0 - MSGCHK Buffer Overflow
CVE-2001-1093localunix05 set 2001
Buffer overflow in msgchk in Digital UNIX 4.0G and earlier allows local users to execute arbitrary code via a long comma
23RISCO
abrir
Exploit-DBVexDay Proof
Cisco Secure IDS 2.0/3.0 / Snort 1.x / ISS RealSecure 5/6 / NFR 5.0 - Encoded IIS Detection Evasion
CVE-2001-0669remotemultiple05 set 2001
Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000
23RISCO
abrir
Exploit-DBVexDay Proof
AOLServer 3 - 'Authentication String' Remote Buffer Overflow (2)
CVE-2001-1067remoteunix05 set 2001
Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary co
28RISCO
abrir
Exploit-DBVexDay Proof
HP-UX 11.0 - SWVerify Buffer Overflow
CVE-2001-0979localhp-ux03 set 2001
Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long
23RISCO
abrir
Exploit-DBVexDay Proof
Irix LPD tagprinter - Command Execution (Metasploit)
CVE-2001-0800remoteirix01 set 2001
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
50RISCO
abrir
Exploit-DBVexDay Proof
SIX-webboard 2.01 - File Retrieval
CVE-2001-1115remotecgi31 ago 2001
generate.cgi in SIX-webboard 2.01 and before allows remote attackers to read arbitrary files via a dot dot (..) in the c
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 8.0 LPD - Command Execution (Metasploit)
CVE-2001-1583remotesolaris31 ago 2001
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request wit
60RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.x/7.0/8 LPD - Remote Command Execution
CVE-2001-1583remotesolaris31 ago 2001
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request wit
60RISCO
abrir
Exploit-DBVexDay Proof
RedHat 6.2/7.0/7.1 Lpd - Remote Command Execution via DVI Printfilter Configuration Error
CVE-2001-1002remotelinux27 ago 2001
The default configuration of the DVI print filter (dvips) in Red Hat Linux 7.0 and earlier does not run dvips in secure
23RISCO
abrir
Exploit-DBVexDay Proof
Respondus for WebCT 1.1.2 - Weak Password Encryption
CVE-2001-1003localmultiple23 ago 2001
Respondus 1.1.2 for WebCT uses weak encryption to remember usernames and passwords, which allows local users who can rea
23RISCO
abrir
Exploit-DBVexDay Proof
UltraEdit 8.2 - FTP Client Weak Password Encryption
CVE-2001-0983localwindows23 ago 2001
UltraEdit uses weak encryption to record FTP passwords in the uedit32.ini file, which allows local users who can read th
23RISCO
abrir
Exploit-DBVexDay Proof
Cisco CBOS 2.x - Multiple TCP Connection Denial of Service Vulnerabilities
CVE-2001-1064doshardware23 ago 2001
Cisco 600 series routers running CBOS 2.0.1 through 2.4.2ap allows remote attackers to cause a denial of service via mul
23RISCO
abrir
Exploit-DBVexDay Proof
AOLServer 3 - 'Authentication String' Remote Buffer Overflow (1)
CVE-2001-1067remoteunix22 ago 2001
Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary co
28RISCO
abrir
Exploit-DBVexDay Proof
BSDI 3.0/3.1 - Local Kernel Denial of Service
CVE-2001-1133dosbsd21 ago 2001
Vulnerability in a system call in BSDI 3.0 and 3.1 allows local users to cause a denial of service (reboot) in the kerne
23RISCO
abrir
Exploit-DBVexDay Proof
Intego FileGuard 2.0/4.0 - Weak Password Encryption
CVE-2001-1165localosx20 ago 2001
Intego FileGuard 4.0 uses weak encryption to store user information and passwords, which allows local users to gain priv
23RISCO
abrir
Exploit-DBVexDay Proof
glFTPd 1.x - 'LIST' Denial of Service
CVE-2001-0965dosunix17 ago 2001
glFTPD 1.23 allows remote attackers to cause a denial of service (CPU consumption) via a LIST command with an argument t
23RISCO
abrir
Exploit-DBVexDay Proof
Sendmail 8.11/8.12 Debugger - Arbitrary Code Execution (1)
CVE-2001-0653locallinux17 ago 2001
Sendmail 8.10.0 through 8.11.5, and 8.12.0 beta, allows local users to modify process memory and possibly gain privilege
23RISCO
abrir
Exploit-DBVexDay Proof
Sendmail 8.11/8.12 Debugger - Arbitrary Code Execution (3)
CVE-2001-0653locallinux17 ago 2001
Sendmail 8.10.0 through 8.11.5, and 8.12.0 beta, allows local users to modify process memory and possibly gain privilege
23RISCO
abrir
Exploit-DBVexDay Proof
Sendmail 8.11/8.12 Debugger - Arbitrary Code Execution (4)
CVE-2001-0653locallinux17 ago 2001
Sendmail 8.10.0 through 8.11.5, and 8.12.0 beta, allows local users to modify process memory and possibly gain privilege
23RISCO
abrir
Exploit-DBVexDay Proof
Sendmail 8.11/8.12 Debugger - Arbitrary Code Execution (2)
CVE-2001-0653locallinux17 ago 2001
Sendmail 8.10.0 through 8.11.5, and 8.12.0 beta, allows local users to modify process memory and possibly gain privilege
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 5.0 - In-Process Table Privilege Escalation
CVE-2001-0507localwindows15 ago 2001
IIS 5.0 uses relative paths to find system files that will run in-process, which allows local users to gain privileges v
23RISCO
abrir
anteriorpágina 765 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.