Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
WebTrends Enterprise Reporting Server 3.1 c/3.5 - Source Code Disclosure
CVE-2001-0693remotecgi03 jun 2001
WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an enc
23RISCO
abrir
Exploit-DBVexDay Proof
OReilly Software WebBoard 4.10.30 - Pager Hostile JavaScript
CVE-2001-0743remotewindows02 jun 2001
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 8 mailtool - Local Buffer Overflow
CVE-2001-0526localsolaris01 jun 2001
Buffer overflow in the Xview library as used by mailtool in Solaris 8 and earlier allows a local attacker to gain privil
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.6/2.6/7.0/8 whodo - Local Buffer Overflow
CVE-2001-1076localsolaris01 jun 2001
Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1)
23RISCO
abrir
Exploit-DBVexDay Proof
Acme.Serve 1.7 - Arbitrary File Access
CVE-2001-0748remotemultiple31 mai 2001
Acme.Serve 1.7, as used in Cisco Secure ACS Unix and possibly other products, allows remote attackers to read arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
Qualcomm Eudora 5.1 - Hidden Attachment Execution
CVE-2001-1326remotewindows29 mai 2001
Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "
23RISCO
abrir
Exploit-DBVexDay Proof
Aladdin Knowledge Systems eSafe Gateway 3.0 - HTML tag Script-filtering Bypass
CVE-2001-0519remotemultiple29 mai 2001
Aladdin eSafe Gateway versions 2.x allows a remote attacker to circumvent HTML SCRIPT filtering via a special arrangemen
23RISCO
abrir
Exploit-DBVexDay Proof
GNU Privacy Guard 1.0.x - Format String
CVE-2001-0522remotemultiple29 mai 2001
Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privi
28RISCO
abrir
Exploit-DBVexDay Proof
Aladdin Knowledge Systems eSafe Gateway 3.0 - Unicode Script-filtering Bypass
CVE-2001-0521remotemultiple29 mai 2001
Aladdin eSafe Gateway versions 3.0 and earlier allows a remote attacker to circumvent HTML SCRIPT filtering via the UNIC
23RISCO
abrir
Exploit-DBVexDay Proof
Cosmicperl Directory Pro 2.0 - Arbitrary File Disclosure
CVE-2001-0780remotecgi28 mai 2001
Directory traversal vulnerability in cosmicpro.cgi in Cosmicperl Directory Pro 2.0 allows remote attackers to gain sensi
23RISCO
abrir
Exploit-DBVexDay Proof
ACLogic CesarFTP 0.98b - Directory Traversal
CVE-2001-1335remotewindows27 mai 2001
Directory traversal vulnerability in CesarFTP 0.98b and earlier allows remote authenticated users (such as anonymous) to
23RISCO
abrir
Exploit-DBVexDay Proof
Omnicron OmniHTTPd 2.0.4-8 - File Source Disclosure
CVE-2001-0778remotewindows26 mai 2001
OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol f
23RISCO
abrir
Exploit-DBVexDay Proof
faust Informatics FreeStyle chat 4.1 sr2 - Directory Traversal
CVE-2001-0615remotemultiple25 mai 2001
Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker t
23RISCO
abrir
Exploit-DBVexDay Proof
Faust Informatics FreeStyle Chat 4.1 SR2 MS-DOS Device Name - Denial of Service
CVE-2001-0616doswindows25 mai 2001
Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to create a denial of service via a UR
23RISCO
abrir
Exploit-DBVexDay Proof
Trend Micro Interscan VirusWall for Windows NT 3.4/3.5/3.51 - Remote Reconfiguration
CVE-2001-0791remotewindows24 mai 2001
Trend Micro InterScan VirusWall for Windows NT allows remote attackers to make configuration changes by directly calling
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - Debug Registers
CVE-2001-1347localwindows24 mai 2001
Windows 2000 allows local users to cause a denial of service and possibly gain privileges by setting a hardware breakpoi
23RISCO
abrir
Exploit-DBVexDay Proof
Beck IPC GmbH IPC@CHIP - TelnetD Login Account Brute Force
CVE-2001-1339remotemultiple24 mai 2001
Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered
23RISCO
abrir
Exploit-DBVexDay Proof
mimanet source viewer 2.0 - Directory Traversal
CVE-2001-0630remotecgi23 mai 2001
Directory traversal vulnerability in MIMAnet viewsrc.cgi 2.0 allows a remote attacker to read arbitrary files via a '..'
23RISCO
abrir
Exploit-DBVexDay Proof
eSafe Gateway 2.1 - Script-filtering Bypass
CVE-2001-0520remotemultiple20 mai 2001
Aladdin eSafe Gateway versions 3.0 and earlier allows a remote attacker to circumvent filtering of SCRIPT tags by embedd
23RISCO
abrir
Exploit-DBVexDay Proof
ARCservIT 6.61/6.63 Client - inetd.tmp Arbitrary File Overwrite
CVE-2001-1346locallinux18 mai 2001
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via
23RISCO
abrir
Exploit-DBVexDay Proof
ARCservIT 6.61/6.63 Client - asagent.tmp Arbitrary File Overwrite
CVE-2001-1346locallinux18 mai 2001
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (2)
CVE-2001-0333remotewindows16 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
Exploit-DBVexDay Proof
iPlanet 4.1 Web Publisher - Remote Buffer Overflow (1)
CVE-2001-0746dosmultiple15 mai 2001
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cau
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (1)
CVE-2001-0333remotewindows15 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (5)
CVE-2001-0333remotewindows15 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
Exploit-DBVexDay Proof
iPlanet 4.1 Web Publisher - Remote Buffer Overflow (2)
CVE-2001-0746dosmultiple15 mai 2001
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cau
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (3)
CVE-2001-0333remotewindows15 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (4)
CVE-2001-0333remotewindows15 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (6)
CVE-2001-0333remotewindows15 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0/5.0 - PWS Escaped Characters Decoding Command Execution (7)
CVE-2001-0333remotewindows15 mai 2001
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encodi
60RISCO
abrir
anteriorpágina 770 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.