Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.697GitHub PoC 14.455VulnCheck XDB 8.811Nuclei 4.349Metasploit 3.488✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - '.printer' ISAPI Extension Buffer Overflow (1)
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft IIS 5.0 - '.printer' ISAPI Extension Buffer Overflow (4)
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
NullSoft Winamp 2.x - AIP Buffer Overflow
Buffer overflow in WINAMP 2.6x and 2.7x allows attackers to execute arbitrary code via a long string in an AIP file.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
BRS Webweaver 0.x - FTP Root Full Path Disclosure
BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *"
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PerlCal 2.x - Directory Traversal
Directory traversal vulnerability in cal_make.pl in PerlCal allows remote attackers to read arbitrary files via a .. (do
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
datawizard webxq 2.1.204 - Directory Traversal
Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IRIX 5.3/6.x - 'netprint' Arbitrary Shared Library Usage
Unknown vulnerability in netprint in IRIX 6.2, and possibly other versions, allows local users with lp privileges attack
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Tektronix Phaser 740/750/850/930 - Network Printer Administration Interface
Tektronix PhaserLink 850 does not require authentication for access to configuration pages such as _ncl_subjects.shtml a
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
RaidenFTPd 2.1 - Directory Traversal
Directory traversal vulnerability in RaidenFTPD Server 2.1 before build 952 allows attackers to access files outside the
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Sendfile 1.x/2.1 - Local Privileged Arbitrary Command Execution
sendfiled, as included with Simple Asynchronous File Transfer (SAFT), on various Linux systems does not properly drop pr
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Perl Web Server 0.x - Directory Traversal
Directory traversal vulnerability in Perl web server 0.3 and earlier allows remote attackers to read arbitrary files via
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Sendfile 1.x/2.1 - Forced Privilege Lowering Failure
sendfiled, as included with Simple Asynchronous File Transfer (SAFT), on various Linux systems does not properly drop pr
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
RobTex Viking Server 1.0.7 - Relative Path Webroot Escaping
Directory traversal vulnerability in RobTex Viking Web server before 1.07-381 allows remote attackers to read arbitrary
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
WFTPD 3.0 - 'RETR' / 'CWD' Remote Buffer Overflow
Buffer overflow in WFTPD Pro 3.00 allows remote attackers to execute arbitrary commands via a long CWD command.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Mercury/NLM 1.4 - Buffer Overflow
Buffer overflow in Mercury MTA POP3 server for NetWare 1.48 and earlier allows remote attackers to cause a denial of ser
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5.0/5.5 / OE 5.5 - XML Stylesheets Active Scripting
Internet Explorer 5.0 and 5.5, and Outlook Express 5.0 and 5.5, allow remote attackers to execute scripts when Active Sc
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ISC INN 2.x - Command-Line Buffer Overflow (1)
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privil
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
ISC INN 2.x - Command-Line Buffer Overflow (2)
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privil
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SuSE 7.0 - KFM Insecure '.TMP' File Creation
kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm ca
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Rit Research Labs 'The Bat!' 1.x - Missing Linefeeds Denial of Service
Rit Research Labs The Bat! 1.51 for Windows allows a remote attacker to cause a denial of service by sending an email to
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
GoAhead Web Server 2.1 (Windows) - Denial of Service
GoAhead webserver 2.1 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
NSI Rwhoisd 1.5 - Remote Format String
Format string vulnerability in Network Solutions Rwhoisd 1.5.x allows remote attackers to execute arbitrary code via for
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Internet Explorer 5.5 - CLSID File Execution
Internet Explorer 5.5 does not display the Class ID (CLSID) when it is at the end of the file name, which could allow at
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Simpleserver WWW 1.0.x - AUX Directory Denial of Service
AnalogX SimpleServer:WWW 1.08 allows remote attackers to cause a denial of service via an HTTP request to the /aux direc
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.6 - FTP Core Dump Shadow Password Recovery
FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possib
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
CrossWind CyberScheduler 2.1 - websyncd Remote Buffer Overflow
Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (t
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Samba 2.0.x - Insecure TMP File Symbolic Link
Samba before 2.2.0 allows local attackers to overwrite arbitrary files via a symlink attack using (1) a printer queue qu
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenBSD 2.x < 2.8 FTPd - 'glob()' Remote Buffer Overflow
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern strin
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeBSD 4.2-stable - FTPd 'glob()' Remote Buffer Overflow
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern strin
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Linux Kernel 2.4 - IPTables FTP Stateful Inspection Arbitrary Filter Rule Insertion
ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP
28RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.