Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
extent technologies rbs isp 2.5 - Directory Traversal
CVE-2000-1036remotemultiple21 set 2000
Directory traversal vulnerability in Extent RBS ISP web server allows remote attackers to read sensitive information via
23RISCO
abrir
Exploit-DBVexDay Proof
Cisco Secure ACS for Windows NT 2.42 - Remote Buffer Overflow
CVE-2000-1054remotewindows21 set 2000
Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial
23RISCO
abrir
Exploit-DBVexDay Proof
NetcPlus BrowseGate 2.80 - Denial of Service
CVE-2000-0908doswindows21 set 2000
BrowseGate 2.80 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long Au
23RISCO
abrir
Exploit-DBVexDay Proof
Cisco PIX Firewall 4.x/5.x - SMTP Content Filtering Evasion
CVE-2000-1022remotehardware19 set 2000
The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0/2000 - DLL Search Path
CVE-2000-0854localwindows18 set 2000
When a Microsoft Office 2000 document is launched, the directory of that document is first used to locate DLL's such as
35RISCO
abrir
Exploit-DBVexDay Proof
CamShot WebCam 2.6 Trial - Remote Buffer Overflow
CVE-2000-0836remotewindows15 set 2000
Buffer overflow in CamShot WebCam Trial2.6 allows remote attackers to execute arbitrary commands via a long Authorizatio
23RISCO
abrir
Exploit-DBVexDay Proof
Sambar Server 4.3/4.4 Beta 3 - Search CGI
CVE-2000-0835remotewindows15 set 2000
search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories
23RISCO
abrir
Exploit-DBVexDay Proof
IBM Websphere Application Server 3.0.2 Server Plugin - Denial of Service
CVE-2000-0848dosmultiple15 set 2000
Buffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via
23RISCO
abrir
Exploit-DBVexDay Proof
MultiHTML 1.5 - File Disclosure
CVE-2000-0912webappscgi13 set 2000
MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifyi
23RISCO
abrir
Exploit-DBVexDay Proof
WebTV for Windows 98/ME - Denial of Service
CVE-2000-0830doswindows12 set 2000
annclist.exe in webTV for Windows allows remote attackers to cause a denial of service by via a large, malformed UDP pac
28RISCO
abrir
Exploit-DBVexDay Proof
Jack De Winter WinSMTP 1.6 f/2.0 - Buffer Overflow
CVE-2000-0833doswindows11 set 2000
Buffer overflow in WinSMTP 1.06f and 2.X allows remote attackers to cause a denial of service via a long (1) USER or (2)
28RISCO
abrir
Exploit-DBVexDay Proof
Mandrake 6.1/7.0/7.1 - '/perl' HTTP Directory Disclosure
CVE-2000-0883remotelinux11 set 2000
The default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 through 7.1 sets the /perl/ director
23RISCO
abrir
Exploit-DBVexDay Proof
YaBB 9.1.2000 - Arbitrary File Read
CVE-2000-0853remotecgi10 set 2000
YaBB Bulletin Board 9.1.2000 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
23RISCO
abrir
Exploit-DBVexDay Proof
RedHat Linux 6.1 i386 - Tmpwatch Recursive Write Denial of Service
CVE-2000-0829doslinux09 set 2000
The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.6/7.0 'eject' locale - Subsystem Format String
CVE-2000-0844localsolaris08 set 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
Exploit-DBVexDay Proof
Mobius DocumentDirect for the Internet 1.2 - Remote Buffer Overflow
CVE-2000-0828remotewindows08 set 2000
Buffer overflow in ddicgi.exe in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary
23RISCO
abrir
Exploit-DBVexDay Proof
nathan purciful phpphotoalbum 0.9.9 - Directory Traversal
CVE-2000-0872webappsphp07 set 2000
explorer.php in PhotoAlbum 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
23RISCO
abrir
Exploit-DBVexDay Proof
Apache 1.3.12 - WebDAV Directory Listings
CVE-2000-0869remotelinux07 set 2000
The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbit
35RISCO
abrir
Exploit-DBVexDay Proof
LPPlus 3.2.2/3.3 - Permissions Denial of Service
CVE-2000-0880dosunix06 set 2000
LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processe
23RISCO
abrir
Exploit-DBVexDay Proof
LPPlus 3.2.2/3.3 - dccscan Unprivileged read
CVE-2000-0881localunix06 set 2000
The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is s
23RISCO
abrir
Exploit-DBVexDay Proof
RedHat 6 GLIBC/locale - Subsystem Format String
CVE-2000-0844locallinux06 set 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - Still Image Service Privilege Escalation
CVE-2000-0851localwindows06 set 2000
Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long W
23RISCO
abrir
Exploit-DBVexDay Proof
Juergen Weigert screen 3.9 - User Supplied Format String
CVE-2000-0901localbsd05 set 2000
Format string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters
23RISCO
abrir
Exploit-DBVexDay Proof
Libc locale - Local Privilege Escalation (2)
CVE-2000-0844localunix04 set 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
Exploit-DBVexDay Proof
Libc locale - Local Privilege Escalation (1)
CVE-2000-0844localunix04 set 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
Exploit-DBVexDay Proof
Immunix OS 6.2 - LC glibc format string
CVE-2000-0844localimmunix04 set 2000
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which
28RISCO
abrir
Exploit-DBVexDay Proof
AIX 4.2/4.3 - netstat -Z Statistic Clearing
CVE-2000-0873localaix03 set 2000
netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network inte
23RISCO
abrir
Exploit-DBVexDay Proof
QSSL Voyager 2.0 1B - Arbitrary File Access
CVE-2000-0903remotemultiple01 set 2000
Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to r
23RISCO
abrir
Exploit-DBVexDay Proof
QSSL Voyager 2.0 1B - '.photon' Directory Information Disclosure
CVE-2000-0904remotemultiple01 set 2000
Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory
23RISCO
abrir
Exploit-DBVexDay Proof
GNOME esound 0.2.19 - Unix Domain Socket Race Condition
CVE-2000-0864localunix31 ago 2000
Race condition in the creation of a Unix domain socket in GNOME esound 0.2.19 and earlier allows a local user to change
23RISCO
abrir
anteriorpágina 785 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.