Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
KTH Kerberos 4 - Arbitrary Proxy Usage
CVE-2001-0034remotemultiple08 dez 2000
KTH Kerberos IV allows local users to specify an alternate proxy using the krb4_proxy variable, which allows the user to
23RISCO
abrir
Exploit-DBVexDay Proof
MetaProducts Offline Explorer 1.x - FileSystem Disclosure
CVE-2001-0038remotewindows07 dez 2000
Offline Explorer 1.4 before Service Release 2 allows remote attackers to read arbitrary files by specifying the drive le
23RISCO
abrir
Exploit-DBVexDay Proof
Oops Proxy Server 1.4.22 - Remote Buffer Overflow (2)
CVE-2001-0028remotelinux07 dez 2000
Buffer overflow in the HTML parsing code in oops WWW proxy server 1.5.2 and earlier allows remote attackers to execute a
23RISCO
abrir
Exploit-DBVexDay Proof
keware technologies homeseer 1.4 - Directory Traversal
CVE-2001-0037remotewindows07 dez 2000
Directory traversal vulnerability in HomeSeer before 1.4.29 allows remote attackers to read arbitrary files via a URL co
23RISCO
abrir
Exploit-DBVexDay Proof
Endymion MailMan 3.0.x - Arbitrary Command Execution
CVE-2001-0021remoteunix06 dez 2000
MailMan Webmail 3.0.25 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the
28RISCO
abrir
Exploit-DBVexDay Proof
Apache 1.3 + PHP 3 - File Disclosure
CVE-2001-0042remotemultiple06 dez 2000
PHP 3.x (PHP3) on Apache 1.3.6 allows remote attackers to read arbitrary files via a modified .. (dot dot) attack contai
23RISCO
abrir
Exploit-DBVexDay Proof
PHP 3.0.16/4.0.2 - Remote Format Overflow
CVE-2000-0967remotelinux06 dez 2000
PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary com
28RISCO
abrir
Exploit-DBVexDay Proof
Cisco Catalyst 4000 4.x/5.x / Catalyst 5000 4.5/5.x / Catalyst 6000 5.x - Memory Leak Denial of Service
CVE-2001-0041doshardware06 dez 2000
Memory leak in Cisco Catalyst 4000, 5000, and 6000 series switches allows remote attackers to cause a denial of service
28RISCO
abrir
Exploit-DBVexDay Proof
IBM DB2 - Universal Database for Linux 6.1/Windows NT 6.1 Known Default Password
CVE-2001-0051remotemultiple05 dez 2000
IBM DB2 Universal Database version 6.1 creates an account with a default user name and password, which allows remote att
23RISCO
abrir
Exploit-DBVexDay Proof
Cat Soft Serv-U FTP Server 2.4/2.5 - FTP Directory Traversal
CVE-2001-0054remotewindows05 dez 2000
Directory traversal vulnerability in FTP Serv-U before 2.5i allows remote attackers to escape the FTP root and read arbi
28RISCO
abrir
Exploit-DBVexDay Proof
IBM DB2 - Universal Database for Windows NT 6.1/7.1 SQL Denial of Service
CVE-2001-0052doswindows05 dez 2000
IBM DB2 Universal Database version 6.1 allows users to cause a denial of service via a malformed query.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0 - Phonebook Server Buffer Overflow
CVE-2000-1089remotewindows04 dez 2000
Buffer overflow in Microsoft Phone Book Service allows local users to execute arbitrary commands, aka the "Phone Book Se
60RISCO
abrir
Exploit-DBVexDay Proof
UUCP - File Creation/Overwriting Symlinks
CVE-2000-1134locallinux04 dez 2000
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when
23RISCO
abrir
Exploit-DBVexDay Proof
BitchX IRC Client 1.0 c17 - DNS Buffer Overflow
CVE-2001-0050remoteunix04 dez 2000
Buffer overflow in BitchX IRC client allows remote attackers to cause a denial of service and possibly execute arbitrary
28RISCO
abrir
Exploit-DBVexDay Proof
GLIBC locale - bug mount
CVE-2000-0844locallinux02 dez 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows - 'Jolt2.c' Denial of Service (MS00-029)
CVE-2000-0305doswindows02 dez 2000
Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a den
35RISCO
abrir
Exploit-DBVexDay Proof
dislocate 1.3 - Local i386
CVE-2001-0066locallinux02 dez 2000
Secure Locate (slocate) allows local users to corrupt memory via a malformed database file that specifies an offset valu
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft SQL Server 7.0/2000 / Data Engine 1.0/2000 - xp_peekqueue Buffer Overflow
CVE-2000-1085localwindows01 dez 2000
The xp_peekqueue function in Microsoft SQL Server 2000 and SQL Server Desktop Engine (MSDE) does not properly restrict t
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5 - 'INPUT TYPE=FILE' Remote File Upload
CVE-2001-0089remotewindows01 dez 2000
Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE ele
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft SQL Server 7.0/2000 / Data Engine 1.0/2000 - xp_showcolv Buffer Overflow
CVE-2000-1083localwindows01 dez 2000
The xp_showcolv function in SQL Server and Microsoft SQL Server Desktop Engine (MSDE) does not properly restrict the len
23RISCO
abrir
Exploit-DBVexDay Proof
PHF (Linux/x86) - Remote Buffer Overflow
CVE-2000-1186remotecgi01 dez 2000
Buffer overflow in phf CGI program allows remote attackers to execute arbitrary commands by specifying a large number of
23RISCO
abrir
Exploit-DBVexDay Proof
HP-UX FTPD - Remote Buffer Overflow
CVE-2000-0699doshp-ux01 dez 2000
Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbit
28RISCO
abrir
Exploit-DBVexDay Proof
IBM AIX 4.3.x - '/usr/lib/lpd/piobe' Local Buffer Overflow
CVE-2000-1124localaix01 dez 2000
Buffer overflow in piobe command in IBM AIX 4.3.x allows local users to gain privileges via long environmental variables
23RISCO
abrir
Exploit-DBVexDay Proof
IBM AIX 4.3 - '/usr/lib/lpd/digest' Local Buffer Overflow
CVE-2000-1120localaix01 dez 2000
Buffer overflow in digest command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft SQL Server 7.0/2000 / Data Engine 1.0/2000 - xp_displayparamstmt Buffer Overflow
CVE-2000-1081localwindows01 dez 2000
The xp_displayparamstmt function in SQL Server and Microsoft SQL Server Desktop Engine (MSDE) does not properly restrict
23RISCO
abrir
Exploit-DBVexDay Proof
IBM AIX 4.x - '/usr/bin/setsenv' Local Buffer Overflow
CVE-2000-1119localaix01 dez 2000
Buffer overflow in setsenv command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands via a l
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris sadmind - Remote Buffer Overflow
CVE-1999-0977remotesolaris01 dez 2000
Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request.
28RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.6/7.0 - 'locale' Format Strings noexec stack Overflow
CVE-2000-0844localsolaris30 nov 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
Exploit-DBVexDay Proof
Trlinux Postaci Webmail 1.1.3 - Password Disclosure
CVE-2000-1100remotemultiple30 nov 2000
The default configuration for PostACI webmail system installs the /includes/global.inc configuration file within the web
23RISCO
abrir
Exploit-DBVexDay Proof
GLIBC - '/bin/su' Local Privilege Escalation
CVE-2000-0844locallinux30 nov 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
anteriorpágina 780 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.