Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.697GitHub PoC 14.455VulnCheck XDB 8.811Nuclei 4.349Metasploit 3.488✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
Xmail 0.5/0.6 CTRLServer - Arbitrary Commands
Buffer overflows in CTRLServer in XMail allows attackers to execute arbitrary commands via the cfgfileget or domaindel f
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Debian 2.2 / Su.S.E 6.3/6.4/7.0 - man '-l' Format String
Format string vulnerability in man in some Linux distributions allows local users to gain privileges via a malformed -l
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 7/8 - ximp40 Library Buffer Overflow
Buffer overflow in ximp40 shared library in Solaris 7 and Solaris 8 allows local users to gain privileges via a long "ar
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
iweb hyperseek 2000 - Directory Traversal
Directory traversal vulnerability in hsx.cgi program in iWeb Hyperseek 2000 allows remote attackers to read arbitrary fi
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Netscape Enterprise Server 4.0/sparc/SunOS 5.7 - Remote Command Execution
Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Tru64 5 - 'su' Env Local Stack Overflow
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain root privileges via
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SCO OpenServer 5.0.5 - Env Local Stack Overflow
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a lo
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Vim 5.x - Swap File Race Condition
vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swa
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
splitvt < 1.6.5 - Local Overflow
Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SCO OpenServer 5.0.5 - Env Local Stack Overflow
Buffer overflow in SCO mscreen allows local users to gain root privileges via a long terminal entry (TERM) in the .mscre
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
glibc-2.2 / openssh-2.3.0p1 / glibc 2.1.9x - File Read
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variabl
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
jaZip 0.32-2 - Local Buffer Overflow
Buffer overflow in jaZip Zip/Jaz drive manager allows local users to gain root privileges via a long DISPLAY environment
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.6/2.7 - '/usr/bin/write' Local Overflow
Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the te
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Netscape Enterprise Server 3.0/4.0 - 'Index' Disclosure
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary direc
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft Windows NT 4.0 - Networking Mutex Denial of Service
The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allo
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FreeBSD 3.x/4.x - 'ipfw' Filtering Evasion
ipfw and ip6fw in FreeBSD 4.2 and earlier allows remote attackers to bypass access restrictions by setting the ECE flag
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
WU-FTPD 2.4.2/2.5/2.6 - Debug Mode Client Hostname Format String
Format string vulnerability in wu-ftp 2.6.1 and earlier, when running with debug mode enabled, allows remote attackers t
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
LocalWEB2000 1.1 - Directory Traversal
Directory traversal vulnerability in LocalWEB2000 HTTP server allows remote attackers to read arbitrary commands via a .
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
fastream ftp++ 2.0 - Directory Traversal
FaSTream FTP++ Server 2.0 allows remote attackers to list arbitrary directories by using the "ls" command and including
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Baltimore Technologies WEBsweeper 4.0 - Denial of Service
Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of ser
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Icecast 1.3.7/1.3.8 - 'print_client()' Format String
Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitra
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
eEye Digital Security IRIS 1.0.1 - GET Denial of Service
eEye Iris 1.01 beta allows remote attackers to cause a denial of service via a malformed packet, which causes Iris to cr
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat 6.1 - 'man' Local Overflow / Local Privilege Escalation
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variabl
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
IMAP4rev1 10.190 - Authentication Stack Overflow
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Mysql 3.22.x/3.23.x - Local Buffer Overflow
Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
NullSoft Winamp 2.64 - '.m3u' Playlist Buffer Overflow
Buffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: ext
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
tinyproxy tinyproxy 1.3.2/1.3.3 - Remote Heap Overflow
Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possi
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
mICQ 0.4.6 - Remote Buffer Overflow
Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly exec
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Debian 2.2 - splitvt Format String
Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile com
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SSH 1.2.x - Secure-RPC Weak Encrypted Authentication
ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generate
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.