Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Linux Kernel 2.2.x 2.4.0-test1 (SGI ProPack 1.2/1.3) - Sendmail 8.10.1 Capabilities Privilege Escalation (2)
CVE-2000-0506locallinux07 jun 2000
The "capabilities" feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by
28RISCO
abrir
Exploit-DBVexDay Proof
Mirabilis ICQ 2000.0 A - Mailclient Temporary Link
CVE-2000-0552localwindows06 jun 2000
ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allow
23RISCO
abrir
Exploit-DBVexDay Proof
Intel Corporation Shiva Access Manager 5.0 - Solaris World Readable LDAP Password
CVE-2000-0516localsolaris06 jun 2000
When configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (
23RISCO
abrir
Exploit-DBVexDay Proof
Michael Lamont Savant Web Server 2.1 - CGI Source Code Disclosure
CVE-2000-0521remotecgi05 jun 2000
Savant web server allows remote attackers to read source code of CGI scripts via a GET request that does not include the
23RISCO
abrir
Exploit-DBVexDay Proof
BRU 15.1/16.0 - BRUEXECLOG Environment Variable
CVE-2000-0537localmultiple05 jun 2000
BRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file w
23RISCO
abrir
Exploit-DBVexDay Proof
PassWD 1.2 - Weak Encryption
CVE-2000-0492localwindows04 jun 2000
PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the passwor
23RISCO
abrir
Exploit-DBVexDay Proof
HP-UX 10.20/11.0 - man '/tmp' Symlink
CVE-2000-0468localhp-ux02 jun 2000
man in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack.
23RISCO
abrir
Exploit-DBVexDay Proof
BSD 'mailx' 8.1.1-10 - Local Buffer Overflow (1)
CVE-2000-0545locallinux02 jun 2000
Buffer overflow in mailx mail command (aka Mail) on Linux systems allows local users to gain privileges via a long -c (c
23RISCO
abrir
Exploit-DBVexDay Proof
Real Networks Real Server 7.0/7.0.1/8.0 Beta - view-source Denial of Service
CVE-2000-0474dosmultiple01 jun 2000
Real Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in
28RISCO
abrir
Exploit-DBVexDay Proof
OReilly Software WebSite Professional 2.3.18/2.4/2.4.9 - 'webfind.exe' Remote Buffer Overflow
CVE-2000-0622remotewindows01 jun 2000
Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execut
28RISCO
abrir
Exploit-DBVexDay Proof
Atrus Trivalie Productions Simple Network Time Sync 1.0 - daemon Buffer Overflow
CVE-2000-0493remotelinux01 jun 2000
Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possi
23RISCO
abrir
Exploit-DBVexDay Proof
Sam Lantinga splitvt 1.6.3 - Local Buffer Overflow
CVE-2000-0467locallinux01 jun 2000
Buffer overflow in Linux splitvt 1.6.3 and earlier allows local users to gain root privileges via a long password in the
23RISCO
abrir
Exploit-DBVexDay Proof
NetWin DMail 2.7/2.8 - ETRN Buffer Overflow
CVE-2000-0490remotelinux01 jun 2000
Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary comman
23RISCO
abrir
Exploit-DBVexDay Proof
Allegro RomPager 2.10 - URL Request Denial of Service
CVE-2000-0470doshardware01 jun 2000
Allegro RomPager HTTP server allows remote attackers to cause a denial of service via a malformed authentication request
23RISCO
abrir
Exploit-DBVexDay Proof
Concatus IMate Web Mail Server 2.5 - Remote Buffer Overflow
CVE-2000-0507remotewindows01 jun 2000
Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Media Services 4.0/4.1 - Denial of Service (MS00-038)
CVE-2000-0495doswindows31 mai 2000
Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "M
35RISCO
abrir
Exploit-DBVexDay Proof
Eterm 0.8.10 / rxvt 2.6.1 / PuTTY 0.48 / X11R6 3.3.3/4.0 - Denial of Service
CVE-2000-0476dosmultiple31 mai 2000
xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force
23RISCO
abrir
Exploit-DBVexDay Proof
KDE 1.1.2 KApplication configfile - Local Privilege Escalation (1)
CVE-2000-0530locallinux31 mai 2000
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitra
23RISCO
abrir
Exploit-DBVexDay Proof
KDE 1.1.2 KApplication configfile - Local Privilege Escalation (3)
CVE-2000-0530locallinux31 mai 2000
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitra
23RISCO
abrir
Exploit-DBVexDay Proof
KDE 1.1.2 KApplication configfile - Local Privilege Escalation (2)
CVE-2000-0530locallinux31 mai 2000
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitra
23RISCO
abrir
Exploit-DBVexDay Proof
Apache 1.3.6/1.3.9/1.3.11/1.3.12/1.3.20 - Root Directory Access
CVE-2000-0505remotewindows31 mai 2000
The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a UR
35RISCO
abrir
Exploit-DBVexDay Proof
Mandriva Linux Mandrake 7.0 - Local Buffer Overflow
CVE-2000-0454locallinux29 mai 2000
Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.
23RISCO
abrir
Exploit-DBVexDay Proof
KDE 1.1/1.1.1/1.1.2/1.2 - kdesud DISPLAY Environment Variable Overflow
CVE-2000-0460locallinux27 mai 2000
Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.
23RISCO
abrir
Exploit-DBVexDay Proof
Cygnus Network Security 4.0/KerbNet 5.0 / MIT Kerberos 4/5 / RedHat 6.2 - Compatibility 'krb_rd_req()' Local Buffer Overflow (2)
CVE-2000-0389locallinux26 mai 2000
Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.
28RISCO
abrir
Exploit-DBVexDay Proof
Omnis Studio 2.4 - Weak Database Field Encryption
CVE-2000-0449localmultiple25 mai 2000
Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.
23RISCO
abrir
Exploit-DBVexDay Proof
HP JetAdmin 5.5.177/jetadmin 5.6 - Directory Traversal
CVE-2000-0443remotecgi24 mai 2000
The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attac
28RISCO
abrir
Exploit-DBVexDay Proof
Cobalt RaQ 2.0/3.0 / qpopper 2.52/2.53 - 'EUIDL' Format String Input
CVE-2000-0442locallinux24 mai 2000
Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is pro
23RISCO
abrir
Exploit-DBVexDay Proof
HP JetAdmin 6.0 - Printing Denial of Service
CVE-2000-0444dosmultiple24 mai 2000
HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.
23RISCO
abrir
Exploit-DBVexDay Proof
Pacific Software Carello 1.2.1 - File Duplication / Source Disclosure
CVE-2000-0396remotewindows24 mai 2000
The add.exe program in the Carello shopping cart software allows remote attackers to duplicate files on the server, whic
23RISCO
abrir
Exploit-DBVexDay Proof
Marty Bochane MDBms 0.9 - xbx Buffer Overflow
CVE-2000-0446remotelinux24 mai 2000
Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.
23RISCO
abrir
anteriorpágina 790 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.