Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.324exploits catalogados
36.054CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
NCSA 1.3/1.4.x/1.5 / Apache HTTPd 0.8.11/0.8.14 - ScriptAlias Source Retrieval
CVE-1999-0236remotemultiple25 set 1999
ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
28RISCO
abrir
Exploit-DBVexDay Proof
SuSE Linux 6.2 sscw - HOME Environment Variable Buffer Overflow
CVE-1999-0906locallinux23 set 1999
Buffer overflow in sccw allows local users to gain root access via the HOME environmental variable.
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 7.0 - Recursive mutex_enter Remote Panic (Denial of Service)
CVE-1999-0908dossolaris23 set 1999
Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result o
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.6 - Profiling File Creation
CVE-1999-0786localsolaris22 set 1999
The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable an
23RISCO
abrir
Exploit-DBVexDay Proof
FreeBSD 3.0/3.1/3.2 - 'vfs_cache' Denial of Service
CVE-1999-0912dosfreebsd22 set 1999
FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.
23RISCO
abrir
Exploit-DBVexDay Proof
Martin Schulze Cfingerd 1.4.2 - GECOS Buffer Overflow
CVE-1999-0708localfreebsd21 set 1999
Buffer overflow in cfingerd allows local users to gain root privileges via a long GECOS field.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0/SP1/SP2/SP3/SP4/SP5 - RASMAN Privilege Escalation
CVE-1999-0886localwindows17 set 1999
The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Man
28RISCO
abrir
Exploit-DBVexDay Proof
SSH Communications Security SSH 1.2.27 - Authentication Socket File Creation
CVE-1999-0787locallinux17 set 1999
The SSH authentication agent follows symlinks via a UNIX domain socket.
23RISCO
abrir
Exploit-DBVexDay Proof
ProFTPd 1.2 pre6 - 'snprintf' Remote Root
CVE-2000-0824remotelinux17 set 1999
The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5 / Netscape Communicator 4.0/4.5/4.6 - JavaScript STYLE
CVE-1999-0750remotemultiple13 set 1999
Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the us
23RISCO
abrir
Exploit-DBVexDay Proof
Netscape Enterprise Server 3.51/3.6 SP2 - Accept Buffer Overflow
CVE-1999-0751remotemultiple13 set 1999
Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.
23RISCO
abrir
Exploit-DBVexDay Proof
FuseWare FuseMail 2.7 - POP Mail Buffer Overflow
CVE-1999-0759remotewindows13 set 1999
Buffer overflow in FuseMAIL POP service via long USER and PASS commands.
23RISCO
abrir
Exploit-DBVexDay Proof
DIGITAL UNIX 4.0 d/f / AIX 4.3.2 / CDE 2.1 / IRIX 6.5.14 / Solaris 7.0 / SunOS 4.1.4 - Local Buffer Overflow
CVE-1999-0693locallinux13 set 1999
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges
23RISCO
abrir
Exploit-DBVexDay Proof
Computalynx CMail 2.3 SP2/2.4 - SMTP Buffer Overflow
CVE-1999-1521remotewindows13 set 1999
Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vulnerable to a buffer overflow attack in the MAIL FROM command
23RISCO
abrir
Exploit-DBVexDay Proof
DIGITAL UNIX 4.0 d/e/f / AIX 4.3.2 / CDE 2.1 / IRIX 6.5.14 / Solaris 7.0 - Local Buffer Overflow
CVE-1999-0691localmultiple13 set 1999
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a lo
23RISCO
abrir
Exploit-DBVexDay Proof
Common Desktop Environment 2.1 20 / Solaris 7.0 - 'dtspcd' Local Privilege Escalation
CVE-1999-0689localmultiple13 set 1999
The CDE dtspcd daemon allows local users to execute arbitrary commands via a symlink attack.
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 7.0 /usr/bin/mail - '-m' Local Buffer Overflow
CVE-1999-1014localsolaris12 set 1999
Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 4.0.1/5 - Import/Export Favorites
CVE-1999-0702remotewindows10 set 1999
Internet Explorer 5.0 and 5.01 allows remote attackers to modify or execute files via the Import/Export Favorites featur
28RISCO
abrir
Exploit-DBVexDay Proof
FreeBSD 5.0 / NetBSD 1.4.2 / OpenBSD 2.7 - 'setsockopt()' Denial of Service
CVE-2000-0489dosbsd05 set 1999
FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs u
23RISCO
abrir
Exploit-DBVexDay Proof
ISC INN 2.2 / RedHat Linux 6.0 - inews Buffer Overflow
CVE-1999-0705localmultiple02 set 1999
Buffer overflow in INN inews program.
23RISCO
abrir
Exploit-DBVexDay Proof
Netscape Communicator 4.06/4.5/4.6/4.51/4.61 - EMBED Buffer Overflow
CVE-1999-0685remotewindows02 set 1999
Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option.
23RISCO
abrir
Exploit-DBVexDay Proof
TFS Gateway 4.0 - Denial of Service
CVE-1999-1515doshardware31 ago 1999
A non-default configuration in TenFour TFS Gateway 4.0 allows an attacker to cause a denial of service via messages with
23RISCO
abrir
Exploit-DBVexDay Proof
Martin Stover Mars NWE 0.99 - Local Buffer Overflow
CVE-1999-0774locallinux31 ago 1999
Buffer overflows in Mars NetWare Emulation (NWE, mars_nwe) package via long directory names.
23RISCO
abrir
Exploit-DBVexDay Proof
BSD/OS 3.1/4.0.1 / FreeBSD 3.0/3.1/3.2 / RedHat Linux 6.0 - 'amd' Remote Buffer Overflow (1)
CVE-1999-0704remoteunix31 ago 1999
Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
23RISCO
abrir
Exploit-DBVexDay Proof
BSD/OS 3.1/4.0.1 / FreeBSD 3.0/3.1/3.2 / RedHat Linux 6.0 - 'amd' Remote Buffer Overflow (2)
CVE-1999-0704remoteunix30 ago 1999
Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
23RISCO
abrir
Exploit-DBVexDay Proof
RedHat Linux 4.2/5.2/6.0 / S.u.S.E Linux 6.0/6.1 - Cron Buffer Overflow (1)
CVE-1999-0768locallinux30 ago 1999
Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5 - HTML Form Control Denial of Service
CVE-1999-1016doswindows27 ago 1999
Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudor
23RISCO
abrir
Exploit-DBVexDay Proof
ProFTPd 1.2 pre1/pre2/pre3/pre4/pre5 - Remote Buffer Overflow (2)
CVE-1999-0911remotelinux27 ago 1999
Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CW
35RISCO
abrir
Exploit-DBVexDay Proof
Caldera OpenLinux 2.2 / Debian 2.1/2.2 / RedHat 6.0 - Vixie Cron MAILTO Sendmail
CVE-1999-0769locallinux25 ago 1999
Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental varia
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5 - FTP Password Storage
CVE-1999-1235localwindows25 ago 1999
Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local
23RISCO
abrir
anteriorpágina 803 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.