Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Microsoft IIS 4.0/5.0 - FTP Denial of Service (MS01-026)
CVE-2001-0336doswindows14 mai 2000
The Microsoft MS00-060 patch for IIS 5.0 and earlier introduces an error which allows attackers to cause a denial of ser
28RISCO
abrir
Exploit-DBVexDay Proof
John Donoghue Knapster 0.9/1.3.8 - File Access
CVE-2000-0412remoteunix13 mai 2000
The gnapster and knapster clients for Napster do not properly restrict access only to MP3 files, which allows remote att
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Active Movie Control 1.0 - Filetype
CVE-2000-0400remotewindows13 mai 2000
The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded,
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 4.0/5.0 - Malformed Filename Request
CVE-2000-0457remotewindows11 mai 2000
ISM.DLL in IIS 4.0 and 5.0 allows remote attackers to read file contents by requesting the file and appending a large nu
35RISCO
abrir
Exploit-DBVexDay Proof
Mozilla Bugzilla 2.4/2.6/2.8/2.10 - Arbitrary Command Execution
CVE-2001-0329remotecgi11 mai 2000
Bugzilla 2.10 allows remote attackers to execute arbitrary commands via shell metacharacters in a username that is then
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 4.0/5.0 - Malformed File Extension Denial of Service
CVE-2000-0408doswindows11 mai 2000
IIS 4.05 and 5.0 allow remote attackers to cause a denial of service via a long, complex URL that appears to contain a l
35RISCO
abrir
Exploit-DBVexDay Proof
Netscape Communicator 4.5/4.51/4.6/4.61/4.7/4.72/4.73 - '/tmp' Symlink
CVE-2000-0409localmultiple10 mai 2000
Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite file
23RISCO
abrir
Exploit-DBVexDay Proof
Matt Wright FormMail 1.6/1.7/1.8 - Environmental Variables Disclosure
CVE-2000-0411remotemultiple10 mai 2000
Matt Wright's FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter
23RISCO
abrir
Exploit-DBVexDay Proof
Etype Eserv 2.9.2 - Logging Buffer Overflow
CVE-2000-0523remotewindows10 mai 2000
Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a
23RISCO
abrir
Exploit-DBVexDay Proof
Intel Corporation NetStructure 7110 - Undocumented Password
CVE-2000-0384localunix08 mai 2000
NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable f
23RISCO
abrir
Exploit-DBVexDay Proof
FrontPage 2000 / IIS 4.0/5.0 - Server Extensions Full Path Disclosure
CVE-2000-0413remotewindows06 mai 2000
The shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the ph
35RISCO
abrir
Exploit-DBVexDay Proof
UltraBoard 1.6 - Denial of Service
CVE-2000-0426doscgi05 mai 2000
UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the S
23RISCO
abrir
Exploit-DBVexDay Proof
Gossamer Threads DBMan 2.0.4 - DBMan Information Leakage
CVE-2000-0381remotemultiple05 mai 2000
The Gossamer Threads DBMan db.cgi CGI script allows remote attackers to view environmental variables and setup informati
23RISCO
abrir
Exploit-DBVexDay Proof
FreeBSD 3.4/4.0/5.0 / NetBSD 1.4 - Unaligned IP Option Denial of Service
CVE-2000-0440dosbsd04 mai 2000
NetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP t
23RISCO
abrir
Exploit-DBVexDay Proof
Aladdin Knowledge Systems eToken 3.3.3 - eToken PIN Extraction
CVE-2000-0427localwindows04 mai 2000
The Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive info
23RISCO
abrir
Exploit-DBVexDay Proof
Cart32 3.0 - 'expdate' Administrative Information Disclosure
CVE-2000-0430remotewindows03 mai 2000
Cart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request.
23RISCO
abrir
Exploit-DBVexDay Proof
RedHat Linux 6.0/6.1/6.2 - 'pam_console' Monitor Activity After Logout
CVE-2000-0378locallinux03 mai 2000
The pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file desc
23RISCO
abrir
Exploit-DBVexDay Proof
ultrascripts ultraboard 1.6 - Directory Traversal
CVE-2000-0332remotecgi03 mai 2000
UltraBoard.pl or UltraBoard.cgi CGI scripts in UltraBoard 1.6 allows remote attackers to read arbitrary files via a path
23RISCO
abrir
Exploit-DBVexDay Proof
Brecht Claerhout Sniffit 0.3.6 HIP/0.3.7 Beta - Mail Logging Buffer Overflow (1)
CVE-2000-0343remotemultiple02 mai 2000
Buffer overflow in Sniffit 0.3.x with the -L logging option enabled allows remote attackers to execute arbitrary command
23RISCO
abrir
Exploit-DBVexDay Proof
Brecht Claerhout Sniffit 0.3.6 HIP/0.3.7 Beta - Mail Logging Buffer Overflow (2)
CVE-2000-0343remotemultiple02 mai 2000
Buffer overflow in Sniffit 0.3.x with the -L logging option enabled allows remote attackers to execute arbitrary command
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows 95/98 - NetBIOS NULL Name
CVE-2000-0347remotewindows02 mai 2000
Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with
28RISCO
abrir
Exploit-DBVexDay Proof
Atrium Software Cassandra NNTP Server 1.10 - Buffer Overflow
CVE-2000-0341doswindows01 mai 2000
ATRIUM Cassandra NNTP Server 1.10 allows remote attackers to cause a denial of service via a long login name.
23RISCO
abrir
Exploit-DBVexDay Proof
L-Soft Listserv 1.8 - Web Archives Buffer Overflow
CVE-2000-0425remotewindows01 mai 2000
Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary comman
23RISCO
abrir
Exploit-DBVexDay Proof
SuSE Linux 6.3/6.4 Gnomelib - Local Buffer Overflow
CVE-2000-0340locallinux29 abr 2000
Buffer overflow in Gnomelib in SuSE Linux 6.3 allows local users to execute arbitrary commands via the DISPLAY environme
23RISCO
abrir
Exploit-DBVexDay Proof
Qualcomm Eudora 4.2/4.3 - Warning Message Circumvention
CVE-2000-0342doswindows28 abr 2000
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
23RISCO
abrir
Exploit-DBVexDay Proof
Qualcomm Eudora 4.2/4.3 - Warning Message Circumvention
CVE-2003-0336doswindows28 abr 2000
Qualcomm Eudora 5.2.1 allows remote attackers to read arbitrary files via an email message with a carriage return (CR) c
23RISCO
abrir
Exploit-DBVexDay Proof
McMurtrey/Whitaker & Associates Cart32 2.6/3.0 - Remote Administration Password
CVE-2000-0429remotewindows27 abr 2000
A backdoor password in Cart32 3.0 and earlier allows remote attackers to execute arbitrary commands.
23RISCO
abrir
Exploit-DBVexDay Proof
Cisco IOS 11.x/12.x - HTTP %%
CVE-2000-0380remotehardware26 abr 2000
The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a deni
50RISCO
abrir
Exploit-DBVexDay Proof
Symantec pcAnywhere 8.0.1/8.0.2/9.0/9.2 - Port Scan Denial of Service
CVE-2000-0324doswindows25 abr 2000
pcAnywhere 8.x and 9.0 allows remote attackers to cause a denial of service via a TCP SYN scan, e.g. by nmap.
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.6/7.0 - 'lpset -r' Local Buffer Overflow (3)
CVE-2000-0317localsolaris24 abr 2000
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
23RISCO
abrir
anteriorpágina 792 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.