Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
78.258exploits catalogados
36.019CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.697GitHub PoC 14.455VulnCheck XDB 8.811Nuclei 4.349Metasploit 3.488✓ só verificadosrecentespopularesrisco
24.458 exploits
Exploit-DB✓ VexDay Proof
3R Soft MailStudio 2000 2.0 - 'userreg.cgi' Arbitrary Command Execution
userreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via she
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.6/7.0 - 'lpset -r' Local Buffer Overflow (3)
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.6/7.0 - 'lpset -r' Local Buffer Overflow (1)
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 2.6/7.0 - 'lpset -r' Local Buffer Overflow (2)
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Zone Labs ZoneAlarm 2.1 Personal Firewall - Port 67
ZoneAlarm 2.1.10 and earlier does not filter UDP packets with a source port of 67, which allows remote attackers to bypa
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Solaris 7.0/8 - Xsun Buffer Overrun
Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat 6.2 Piranha Virtual Server Package - Default Account and Password
The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password tha
60RISCO
abrir ↗Exploit-DB✓ VexDay Proof
PostgreSQL 6.3.2/6.5.3 - Cleartext Passwords
PostgreSQL stores usernames and passwords in plaintext in (1) pg_shadow and (2) pg_pwd, which allows attackers with suff
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
CVS 1.10.7 - Local Denial of Service
Concurrent Versions Software (CVS) uses predictable temporary file names for locking, which allows local users to cause
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
LCDProc 0.4 - Remote Buffer Overflow
Buffer overflow in LCDproc allows remote attackers to gain root privileges via the screen_add command.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
SuSE Linux 6.x - Arbitrary File Deletion
aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
OpenLDAP 1.2.7/1.2.8/1.2.9/1.2.10 - '/usr/tmp/' Symlink
Linux OpenLDAP server allows local users to modify arbitrary files via a symlink attack.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
RealNetworks Real Server 7.0 / GameHouse dldisplay ActiveX control 0 - Denial of Service
RealNetworks RealServer allows remote attackers to cause a denial of service by sending malformed input to the server at
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Novell Netware 5.1 - Remote Administration Buffer Overflow
Buffer overflow in the NetWare remote web administration utility allows remote attackers to cause a denial of service or
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Qualcomm qpopper 2.53/3.0 / RedHat imap 4.5 -4 / UoW imap 4.5 popd - Lock File Denial of Service
qpopper POP server creates lock files with predictable names, which allows local users to cause a denial of service for
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
FrontPage 97/98 - Server Image Mapper Buffer Overflow
Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activi
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Panda Security 3.0 - Multiple Vulnerabilities
Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain privileges by directly exec
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 6.x - X Font Server Buffer Overflow (Denial of Service)
The X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a malformed request.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
University of Washington - imap LSUB Buffer Overflow (Metasploit)
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
UoW IMAPd Server 10.234/12.264 - LSUB Buffer Overflow (Metasploit)
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
RedHat Linux 6.x - X Font Server Buffer Overflow (Denial of Service)
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
UoW IMAPd Serve 10.234/12.264 - COPY Buffer Overflow (Metasploit)
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
50RISCO
abrir ↗Exploit-DB✓ VexDay Proof
QSSL QNX 4.25 A - 'crypt()' Local Privilege Escalation
The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Dansie Shopping Cart 3.0.4 - Multiple Vulnerabilities
The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configurat
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft FrontPage 98 Server Extensions for IIS / Microsoft InterDev 1.0 - Filename Obfuscation
Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or exec
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Microsoft FrontPage 98 Server Extensions for IIS / Microsoft InterDev 1.0 - Remote Buffer Overflow
Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or exec
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
CNC Technology BizDB 1.0 - 'bizdb-search.cgi' Remote Command Execution
The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in
28RISCO
abrir ↗Exploit-DB✓ VexDay Proof
AVM KEN! 1.3.10/1.4.30 - Remote Denial of Service
The AVM KEN! ISDN Proxy server allows remote attackers to cause a denial of service via a malformed request.
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
TalentSoft Web+ 4.x - Directory Traversal
TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a ..
23RISCO
abrir ↗Exploit-DB✓ VexDay Proof
Be BeOS 4.5/5.0 - Invalid System Call
BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37.
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.