Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.324exploits catalogados
36.054CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Solaris 2.6/7.0/8 - 'netpr' Local Buffer Overflow (2)
CVE-2000-0407localsolaris04 mar 1999
Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option.
23RISCO
abrir
Exploit-DBVexDay Proof
Xcmail 0.99.6 - Local Buffer Overflow
CVE-1999-1553locallinux02 mar 1999
Buffer overflow in XCmail 0.99.6 with autoquote enabled allows remote attackers to execute arbitrary commands via a long
23RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch IMail 5.0 - IMonitor Buffer Overflow (Denial of Service) (PoC)
CVE-1999-1046dosmultiple01 mar 1999
Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbi
28RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch IMail 5.0 - Imapd Buffer Overflow (Denial of Service) (PoC)
CVE-1999-1557dosmultiple01 mar 1999
Buffer overflow in the login functions in IMAP server (imapd) in Ipswitch IMail 5.0 and earlier allows remote attackers
23RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch IMail 5.0/6.0 - Web Service Buffer Overflow (Denial of Service) (PoC)
CVE-1999-1551dosmultiple01 mar 1999
Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execu
45RISCO
abrir
Exploit-DBVexDay Proof
Debian 2.0 - Super Syslog Buffer Overflow
CVE-1999-0381locallinux25 fev 1999
super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root acce
23RISCO
abrir
Exploit-DBVexDay Proof
Qbik WinGate 3.0/Pro 4.0.1/Standard 4.0.1 - Buffer Overflow (Denial of Service) (PoC)
CVE-1999-0441doswindows22 fev 1999
Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector S
23RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.0/2.1/2.2 - 'autofs' Denial of Service
CVE-1999-0460doslinux19 fev 1999
Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows NT 4.0 SP4 - Known DLL Cache
CVE-1999-0376localwindows18 fev 1999
Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious prog
23RISCO
abrir
Exploit-DBVexDay Proof
IBM AIX 4.2.1 - 'snap' Insecure Temporary File Creation
CVE-1999-1405localaix17 fev 1999
snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove
23RISCO
abrir
Exploit-DBVexDay Proof
Debian 2.0/2.0 r5 / FreeBSD 3.2 / OpenBSD 2.4 / RedHat 5.2 i386 / S.u.S.E 6.1 - 'Lsof' Local Buffer Overflow (1)
CVE-1999-0405locallinux17 fev 1999
A buffer overflow in lsof allows local users to obtain root privilege.
23RISCO
abrir
Exploit-DBVexDay Proof
Debian 2.0/2.0 r5 / FreeBSD 3.2 / OpenBSD 2.4 / RedHat 5.2 i386 / S.u.S.E 6.1 - 'Lsof' Local Buffer Overflow (2)
CVE-1999-0405locallinux17 fev 1999
A buffer overflow in lsof allows local users to obtain root privilege.
23RISCO
abrir
Exploit-DBVexDay Proof
SmartMax MailMax 1.0 - SMTP Buffer Overflow
CVE-1999-0404remotewindows13 fev 1999
Buffer overflow in the Mail-Max SMTP server for Windows systems allows remote command execution.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 3.0/4.0 - Using ASP and FSO To Read Server Files
CVE-1999-1375remotemultiple11 fev 1999
FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by s
35RISCO
abrir
Exploit-DBVexDay Proof
Allaire Forums 2.0.4 - Getfile
CVE-1999-0800remotemultiple11 fev 1999
The GetFile.cfm file in Allaire Forums allows remote attackers to read files through a parameter to GetFile.cfm.
23RISCO
abrir
Exploit-DBVexDay Proof
Hancom Office 2007 - 'Reboot.ini' Clear-Text Passwords
CVE-1999-0372localwindows09 fev 1999
The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not delet
23RISCO
abrir
Exploit-DBVexDay Proof
WU-FTPD 2.4.2 / SCO Open Server 5.0.5 / ProFTPd 1.2 pre1 - 'realpath' Remote Buffer Overflow (2)
CVE-1999-0368remotelinux09 fev 1999
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
35RISCO
abrir
Exploit-DBVexDay Proof
WU-FTPD 2.4.2 / SCO Open Server 5.0.5 / ProFTPd 1.2 pre1 - 'realpath' Remote Buffer Overflow (1)
CVE-1999-0368remotelinux09 fev 1999
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
35RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch IMail 5.0 / Ipswitch WS_FTP Server 1.0.1/1.0.2 - Local Privilege Escalation
CVE-1999-1171localwindows04 fev 1999
IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the "flags"
23RISCO
abrir
Exploit-DBVexDay Proof
Ipswitch IMail 5.0 / Ipswitch WS_FTP Server 1.0.1/1.0.2 - Local Privilege Escalation
CVE-1999-1170localwindows04 fev 1999
IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" r
23RISCO
abrir
Exploit-DBVexDay Proof
S.u.S.E Linux 5.2 - 'lpc' Local Privilege Escalation
CVE-1999-0363locallinux03 fev 1999
SuSE 5.2 PLP lpc program has a buffer overflow that leads to root compromise.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Site Server 2.0 with IIS 4.0 - Arbitrary File Upload
CVE-1999-0360remotewindows30 jan 1999
MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing th
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 5.0.1 - Invalid Byte Cross-Frame Access
CVE-1999-0347remotewindows28 jan 1999
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "abou
23RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.2 - 'ldd core' Force Reboot (Denial of Service)
CVE-1999-0400doslinux26 jan 1999
Denial of service in Linux 2.2.0 running the ldd command on a core file.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 5.0 - IISAPI Extension Enumerate Root Web Server Directory
CVE-1999-0450remotewindows26 jan 1999
In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 4 (Windows NT) - Log Avoidance
CVE-1999-0448remotewindows22 jan 1999
IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL
28RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Internet Explorer 4 - Clipboard Paste
CVE-1999-1453remotewindows21 jan 1999
Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the
28RISCO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.0 - TCP Port Denial of Service
CVE-1999-0451doslinux19 jan 1999
Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 4 (Windows NT) - Remote Web-Based Administration
CVE-1999-1538remotewindows14 jan 1999
When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access
28RISCO
abrir
Exploit-DBVexDay Proof
Cisco IOS 12.0.2 - Syslog Crash
CVE-1999-0063doshardware11 jan 1999
Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.
23RISCO
abrir
anteriorpágina 808 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.