Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.137exploits catalogados
35.961CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Microsoft IIS 4.0/5.0 - SSI Buffer Overrun Privilege Escalation
CVE-2001-0506localwindows15 ago 2001
Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes
35RISCO
abrir
Exploit-DBVexDay Proof
Solaris 8 - x86 xlock Heap Overflow
CVE-2001-0652localsolaris10 ago 2001
Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPAT
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.6/7/8 (SPARC) - xlock Heap Overflow
CVE-2001-0652localsolaris10 ago 2001
Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPAT
23RISCO
abrir
Exploit-DBVexDay Proof
Fetchmail 5.x - IMAP Reply Signed Integer Index
CVE-2001-1009remoteunix09 ago 2001
Fetchmail (aka fetchmail-ssl) before 5.8.17 allows a remote malicious (1) IMAP server or (2) POP/POP3 server to overwrit
23RISCO
abrir
Exploit-DBVexDay Proof
Fetchmail 5.x - POP3 Reply Signed Integer Index
CVE-2001-1009remoteunix09 ago 2001
Fetchmail (aka fetchmail-ssl) before 5.8.17 allows a remote malicious (1) IMAP server or (2) POP/POP3 server to overwrit
23RISCO
abrir
Exploit-DBVexDay Proof
Avaya Argent Office - DNS Packet Denial of Service
CVE-2001-1259doswindows07 ago 2001
Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no paylo
23RISCO
abrir
Exploit-DBVexDay Proof
phpBB 1.4 - SQL Query Manipulation
CVE-2001-1472webappsphp03 ago 2001
SQL injection vulnerability in prefs.php in phpBB 1.4.0 and 1.4.1 allows remote authenticated users to execute arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0 - NT4ALL Denial of Service
CVE-2001-1122doswindows03 ago 2001
Windows NT 4.0 SP 6a allows a local user with write access to winnt/system32 to cause a denial of service (crash in lsas
23RISCO
abrir
Exploit-DBVexDay Proof
Oracle 8/9i - DBSNMP Oracle Home Environment Variable Buffer Overflow
CVE-2001-0941localwindows02 ago 2001
Buffer overflow in dbsnmp in Oracle 8.0.6 through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_H
23RISCO
abrir
Exploit-DBVexDay Proof
SuSE 6.3/6.4/7.0 sdb - Arbitrary Command Execution
CVE-2001-1130remotelinux02 ago 2001
Sdbsearch.cgi in SuSE Linux 6.0-7.2 could allow remote attackers to execute arbitrary commands by uploading a keylist.tx
28RISCO
abrir
Exploit-DBVexDay Proof
Oracle OTRCREP Oracle 8/9 - Home Environment Variable Buffer Overflow
CVE-2001-0833localunix02 ago 2001
Buffer overflow in otrcrep in Oracle 8.0.x through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_
23RISCO
abrir
Exploit-DBVexDay Proof
Omnicron OmniHTTPd 2.0.7 - File Corruption / Command Execution
CVE-2001-0114remotewindows01 ago 2001
statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter.
23RISCO
abrir
Exploit-DBVexDay Proof
GNU findutils 4.0/4.1 - Locate Arbitrary Command Execution
CVE-2001-1036locallinux01 ago 2001
GNU locate in findutils 4.1 on Slackware 7.1 and 8.0 allows local users to gain privileges via an old formatted filename
23RISCO
abrir
Exploit-DBVexDay Proof
Omnicron OmniHTTPd 2.0.7 - File Corruption / Command Execution
CVE-2001-0113remotewindows01 ago 2001
statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to execute arbitrary commands via the mostbrowsers parameter, w
28RISCO
abrir
Exploit-DBVexDay Proof
phpBB 1.x - Page Header Arbitrary Command Execution
CVE-2001-1471webappsphp31 jul 2001
prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid lang
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 98 - ARP Denial of Service
CVE-2001-1055doswindows30 jul 2001
The Microsoft Windows network stack allows remote attackers to cause a denial of service (CPU consumption) via a flood o
28RISCO
abrir
Exploit-DBVexDay Proof
id Software Quake 3 Arena Server 1.29 - Buffer Overflow
CVE-2001-1289dosmultiple29 jul 2001
Quake 3 arena 1.29f and 1.29g allows remote attackers to cause a denial of service (crash) via a malformed connection pa
23RISCO
abrir
Exploit-DBVexDay Proof
SnapStream PVS 1.2 - Plaintext Password
CVE-2001-1107remotewindows26 jul 2001
SnapStream PVS 1.2a stores its passwords in plaintext in the file SSD.ini, which could allow a remote attacker to gain p
23RISCO
abrir
Exploit-DBVexDay Proof
SnapStream Personal Video Station 1.2 a - PVS Directory Traversal
CVE-2001-1108remotewindows26 jul 2001
Directory traversal vulnerability in SnapStream PVS 1.2a allows remote attackers to read arbitrary files via a .. (dot d
23RISCO
abrir
Exploit-DBVexDay Proof
SimpleServer:WWW 1.0.7/1.0.8/1.13 - Hex Encoded URL Directory Traversal
CVE-2001-1586remotewindows26 jul 2001
Directory traversal vulnerability in SimpleServer:WWW 1.13 and earlier allows remote attackers to execute arbitrary prog
23RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch WS_FTP Server 2.0 - Anonymous Multiple FTP Command Buffer Overflows
CVE-2001-1021remotewindows25 jul 2001
Buffer overflows in WS_FTP 2.02 allow remote attackers to execute arbitrary code via long arguments to (1) DELE, (2) MDT
35RISCO
abrir
Exploit-DBVexDay Proof
Cisco IOS 12 - UDP Denial of Service
CVE-2001-1097doshardware25 jul 2001
Cisco routers and switches running IOS 12.0 through 12.2.1 allows a remote attacker to cause a denial of service via a f
23RISCO
abrir
Exploit-DBVexDay Proof
Sambar Server 4.x/5.0 - Insecure Default Password Protection
CVE-2001-1106remotemultiple25 jul 2001
The default configuration of Sambar Server 5 and earlier uses a symmetric key that is compiled into the binary program f
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.6/7.0 - DTMail Mail Environment Variable Buffer Overflow
CVE-2001-0548localsolaris24 jul 2001
Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.
23RISCO
abrir
Exploit-DBVexDay Proof
Proxomitron Naoko-4 - Cross-Site Scripting
CVE-2001-0991remotemultiple24 jul 2001
Cross-site scripting vulnerability in Proxomitron Naoko-4 BetaFour and earlier allows remote attackers to execute arbitr
23RISCO
abrir
Exploit-DBVexDay Proof
Sambar Server 4.4/5.0 - 'pagecount' File Overwrite
CVE-2001-1010remotemultiple22 jul 2001
Directory traversal vulnerability in pagecount CGI script in Sambar Server before 5.0 beta 5 allows remote attackers to
23RISCO
abrir
Exploit-DBVexDay Proof
CGIWrap 2.x/3.x - Cross-Site Scripting
CVE-2001-0987remotecgi22 jul 2001
Cross-site scripting vulnerability in CGIWrap before 3.7 allows remote attackers to execute arbitrary Javascript on othe
23RISCO
abrir
Exploit-DBVexDay Proof
PHPLib Team PHPLIB 7.2 - Remote Script Execution
CVE-2001-1370webappsphp21 jul 2001
prepend.php3 in PHPLib before 7.2d, when register_globals is enabled for PHP, allows remote attackers to execute arbitra
28RISCO
abrir
Exploit-DBVexDay Proof
SSH2 3.0 - Short Password Login
CVE-2001-0553remoteunix21 jul 2001
SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allo
23RISCO
abrir
Exploit-DBVexDay Proof
Oracle 8i - TNS Listener Buffer Overflow
CVE-2001-0499remotewindows20 jul 2001
Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers t
60RISCO
abrir
anteriorpágina 766 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.