Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.324exploits catalogados
36.054CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Microsoft Virtual Machine 2000 - Series/3000 Series getSystemResource
CVE-2000-0132remotewindows31 jan 2000
Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function.
28RISCO
abrir
Exploit-DBVexDay Proof
Check Point Software Firewall-1 3.0 Script - Tag Checking Bypass
CVE-2000-0116remotemultiple29 jan 2000
Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the "Strip Script Tags" restric
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Index Server 2.0 / Indexing Service (Windows 2000) - Directory Traversal
CVE-2000-0097remotewindows26 jan 2000
The WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the "Malformed H
35RISCO
abrir
Exploit-DBVexDay Proof
FreeBSD 3.4 / NetBSD 1.4.1 / OpenBSD 2.6 - '/proc' FileSystem
CVE-2000-0094localbsd21 jan 2000
procfs in BSD systems allows local users to gain root privileges by modifying the /proc/pid/mem interface via a modified
23RISCO
abrir
Exploit-DBVexDay Proof
Inter7 vpopmail (vchkpw) 3.4.11 - Local Buffer Overflow
CVE-2000-0091locallinux21 jan 2000
Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long
28RISCO
abrir
Exploit-DBVexDay Proof
PowerScripts PlusMail WebConsole 1.0 - Weak Authentication (3)
CVE-2000-0074remotecgi20 jan 2000
PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissi
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Media Services 4.0/4.1 - Handshake Sequence Denial of Service
CVE-2000-0211doswindows18 jan 2000
The Windows Media server allows remote attackers to cause a denial of service via a series of client handshake packets t
28RISCO
abrir
Exploit-DBVexDay Proof
A-V Tronics InetServ 3.0 - WebMail GET
CVE-2000-0065remotewindows17 jan 2000
Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request.
28RISCO
abrir
Exploit-DBVexDay Proof
Nosque Workshop MsgCore 1.9 - Denial of Service
CVE-2000-0075doswindows13 jan 2000
Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a den
23RISCO
abrir
Exploit-DBVexDay Proof
Mirabilis ICQ 0.99b 1.1.1.1/3.19 - Remote Buffer Overflow
CVE-2000-0046remotewindows12 jan 2000
Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ
23RISCO
abrir
Exploit-DBVexDay Proof
Corel Linux OS 1.0 - get_it PATH
CVE-2000-0048locallinux12 jan 2000
get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp p
23RISCO
abrir
Exploit-DBVexDay Proof
RedHat 6.1 / IRIX 6.5.18 - 'lpd' Command Execution
CVE-2000-1221remoteunix11 jan 2000
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reve
28RISCO
abrir
Exploit-DBVexDay Proof
PowerScripts PlusMail WebConsole 1.0 - Weak Authentication (1)
CVE-2000-0074remotecgi11 jan 2000
PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissi
23RISCO
abrir
Exploit-DBVexDay Proof
PowerScripts PlusMail WebConsole 1.0 - Weak Authentication (2)
CVE-2000-0074remotecgi11 jan 2000
PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissi
23RISCO
abrir
Exploit-DBVexDay Proof
NullSoft Winamp 2.10 - Playlist
CVE-2000-0049doswindows10 jan 2000
Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.
23RISCO
abrir
Exploit-DBVexDay Proof
Qualcomm qpopper 3.0 - 'LIST' Remote Buffer Overflow
CVE-2000-0096remotelinux10 jan 2000
Buffer overflow in qpopper 3.0 beta versions allows local users to gain privileges via a long LIST command.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 4.0/4.0.1/5.0/5.0.1/5.5 - preview Security Zone Settings Lag
CVE-2000-0061remotewindows07 jan 2000
Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 4.0/4.0.1/5.0/5.0.1/5.5 - preview Security Zone Settings Lag
CVE-2000-0156remotewindows07 jan 2000
Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security d
28RISCO
abrir
Exploit-DBVexDay Proof
Phorum 3.0.7 - 'auth.php3' Backdoor Access
CVE-2000-1230webappsphp06 jan 2000
Backdoor in auth.php3 in Phorum 3.0.7 allows remote attackers to access restricted web pages via an HTTP request with th
23RISCO
abrir
Exploit-DBVexDay Proof
Phorum 3.0.7 - 'admin.php3' Unverified Administrative Password Change
CVE-2000-1228webappsphp06 jan 2000
Phorum 3.0.7 allows remote attackers to change the administrator password without authentication via an HTTP request for
23RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch IMail 5.0.8/6.0/6.1 - IMonitor 'status.cgi' Denial of Service
CVE-2000-0056doswindows05 jan 2000
IMail IMONITOR status.cgi CGI script allows remote attackers to cause a denial of service with many calls to status.cgi.
23RISCO
abrir
Exploit-DBVexDay Proof
Mandrake 6.x / RedHat 6.x / Turbolinux 3.5 b2/4.x/6.0.2 userhelper/PAM - Path (1)
CVE-2000-0052locallinux04 jan 2000
Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) att
23RISCO
abrir
Exploit-DBVexDay Proof
Allaire ColdFusion Server 4.0/4.0.1 - 'CFCACHE' Information Disclosure
CVE-2000-0057remotemultiple04 jan 2000
Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain s
23RISCO
abrir
Exploit-DBVexDay Proof
PHP 3.0.13 - 'Safe_mode' Failure
CVE-2000-0059remotephp04 jan 2000
PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, whic
28RISCO
abrir
Exploit-DBVexDay Proof
Solution Scripts Home Free 1.0 - 'search.cgi' Directory Traversal
CVE-2000-0054remotecgi03 jan 2000
search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attac
23RISCO
abrir
Exploit-DBVexDay Proof
Apple Mac OSX 10 / HP-UX 9/10/11 / Mandriva 6/7 / RedHat 5/6 / SCO 5 / IRIX 6 - Shell Redirection Race Condition
CVE-2000-1134localunix02 jan 2000
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when
23RISCO
abrir
Exploit-DBVexDay Proof
Phorum 3.0.7 - 'violation.php3' Arbitrary Email Relay
CVE-2000-1234webappsphp01 jan 2000
violation.php3 in Phorum 3.0.7 allows remote attackers to send e-mails to arbitrary addresses and possibly use Phorum as
23RISCO
abrir
Exploit-DBVexDay Proof
IRIX 6.5.x - '/usr/lib/InPerson/inpview' Race Condition
CVE-2000-0799localirix01 jan 2000
inpview in InPerson in SGI IRIX 5.3 through IRIX 6.5.10 allows local users to gain privileges via a symlink attack on th
23RISCO
abrir
Exploit-DBVexDay Proof
Ascend CascadeView/UX 1.0 tftpd - Symbolic Link
CVE-2000-0015localunix31 dez 1999
CascadeView TFTP server allows local users to gain privileges via a symlink attack.
23RISCO
abrir
Exploit-DBVexDay Proof
AnalogX SimpleServer:WWW 1.0.1 - GET Buffer Overflow
CVE-2000-0011doswindows31 dez 1999
Buffer overflow in AnalogX SimpleServer:WWW HTTP server allows remote attackers to execute commands via a long GET reque
23RISCO
abrir
anteriorpágina 797 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.