Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.325exploits catalogados
36.055CVEs com exploração pública
24.695testados em laboratório
24.458 exploits
Exploit-DBVexDay Proof
Skunkware 2.0 - view-source Directory Traversal
CVE-1999-0174remotesco16 abr 1997
The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack.
23RISCO
abrir
Exploit-DBVexDay Proof
PHP PHP/fi 2.0 - Directory Traversal
CVE-1999-0238remotecgi16 abr 1997
php.cgi allows attackers to read any file on the system.
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft Windows NT - Crash with an Extra Long 'Username' Denial of Service
CVE-1999-0224doswindows01 abr 1997
Denial of service in Windows NT messenger service through a long username.
28RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.4 - '/bin/fdformat' Local Buffer Overflow
CVE-1999-0110localsolaris23 mar 1997
20RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.4 - '/bin/fdformat' Local Buffer Overflow
CVE-1999-0315localsolaris23 mar 1997
Buffer overflow in Solaris fdformat command gives root access to local users.
23RISCO
abrir
Exploit-DBVexDay Proof
HP HP-UX 10.20 / IBM AIX 4.1.5 - 'connect()' Denial of Service
CVE-1999-1408doshp-ux05 mar 1997
Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a s
23RISCO
abrir
Exploit-DBVexDay Proof
Slackware Linux 3.1 - '/usr/X11/bin/SuperProbe' Local Buffer Overflow
CVE-1999-1489locallinux04 mar 1997
Buffer overflow in TestChip function in XFree86 SuperProbe in Slackware Linux 3.1 allows local users to gain root privil
23RISCO
abrir
Exploit-DBVexDay Proof
Sun Solaris 2.5.1 PAM / unix_scheme - 'passwd' Local Privilege Escalation
CVE-1999-1158localsolaris25 fev 1997
Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4
23RISCO
abrir
Exploit-DBVexDay Proof
Microsoft IIS 2.0/3.0 - Appended Dot Script Source Disclosure
CVE-1999-0154remotewindows20 fev 1997
IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the U
35RISCO
abrir
Exploit-DBVexDay Proof
UNICOS 9/MAX 1.3/mk 1.5 / AIX 4.2 / libc 5.2.18 / RedHat 4 / IRIX 6 / Slackware 3 - NLS (2)
CVE-1999-0041localmultiple13 fev 1997
Buffer overflow in NLS (Natural Language Service).
23RISCO
abrir
Exploit-DBVexDay Proof
UNICOS 9/MAX 1.3/mk 1.5 / AIX 4.2 / libc 5.2.18 / RedHat 4 / IRIX 6 / Slackware 3 - NLS (1)
CVE-1999-0041localmultiple13 fev 1997
Buffer overflow in NLS (Natural Language Service).
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 2.5.1 - 'ffbconfig' Local Privilege Escalation
CVE-1999-0109localsolaris10 fev 1997
Buffer overflow in ffbconfig in Solaris 2.5.1.
23RISCO
abrir
Exploit-DBVexDay Proof
SGI IRIX 6.4 - 'startmidi' Local Privilege Escalation
CVE-1999-0959localirix09 fev 1997
IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.
23RISCO
abrir
Exploit-DBVexDay Proof
IRIX 6.2/6.3/6.4 - xfs truncate() Privilege Check
CVE-2000-0798localirix01 fev 1997
The truncate function in IRIX 6.x does not properly check for privileges when the file is in the xfs file system, which
23RISCO
abrir
Exploit-DBVexDay Proof
OReilly WebSite 1.x/2.0 - 'win-c-sample.exe' Buffer Overflow
CVE-1999-0178doswindows06 jan 1997
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to
28RISCO
abrir
Exploit-DBVexDay Proof
SGI IRIX 6.4 - 'netprint' Local Privilege Escalation
CVE-1999-1120localirix04 jan 1997
netprint in SGI IRIX 6.4 and earlier trusts the PATH environmental variable for finding and executing the disable progra
23RISCO
abrir
Exploit-DBVexDay Proof
IRIX 6.5.x - '/usr/sbin/gr_osview' Local Buffer Overflow
CVE-2000-0797localirix01 jan 1997
Buffer overflow in gr_osview in IRIX 6.2 and 6.3 allows local users to gain privileges via a long -D option.
23RISCO
abrir
Exploit-DBVexDay Proof
Matt Wright FormMail 1.x - Cross-Site Request Forgery
CVE-1999-0173remoteunix01 jan 1997
FormMail CGI program can be used by web servers other than the host server that the program resides on.
23RISCO
abrir
Exploit-DBVexDay Proof
Solaris 7.0 - aspppd Insecure Temporary File Creation
CVE-1999-1026localsolaris20 dez 1996
aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on
23RISCO
abrir
Exploit-DBVexDay Proof
Apache 1.1 / NCSA HTTPd 1.5.2 / Netscape Server 1.12/1.1/2.0 - a nph-test-cgi
CVE-1999-0045dosmultiple10 dez 1996
List of arbitrary files on Web host via nph-test-cgi script.
28RISCO
abrir
Exploit-DBVexDay Proof
Solaris 7.0 - 'chkperm' Local Privilege Escalation
CVE-1999-0860localsolaris05 dez 1996
Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.
23RISCO
abrir
Exploit-DBVexDay Proof
BSD/OS 2.1 / DG/UX 4.0 / Debian 0.93 / Digital UNIX 4.0 B / FreeBSD 2.1.5 / HP-UX 10.34 / IBM AIX 4.1.5 / NetBSD 1.0/1.1 / NeXTstep 4.0 / SGI IRIX 6.3 / SunOS 4.1.4 - 'rlogin' Local Privilege Escalation
CVE-1999-0046localunix04 dez 1996
Buffer overflow of rlogin program using TERM environmental variable.
35RISCO
abrir
Exploit-DBVexDay Proof
IBM AIX 3.2.5 - 'login(1)' Privilege Escalation
CVE-1999-0113remoteaix04 dez 1996
Some implementations of rlogin allow root access if given a -froot parameter.
28RISCO
abrir
Exploit-DBVexDay Proof
SGI IRIX 6.2 - 'fsdump' Local Privilege Escalation
CVE-1999-0044localirix03 dez 1996
fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
23RISCO
abrir
Exploit-DBVexDay Proof
SGI IRIX 6.4 - 'suid_exec' Local Privilege Escalation
CVE-1999-1114localirix02 dez 1996
Buffer overflow in Korn Shell (ksh) suid_exec program on IRIX 6.x and earlier, and possibly other operating systems, all
23RISCO
abrir
Exploit-DBVexDay Proof
SGI IRIX 5.1/5.2 - 'sgihelp' Local Privilege Escalation
CVE-1999-1219localaix02 dez 1996
Vulnerability in sgihelp in the SGI help system and print manager in IRIX 5.2 and earlier allows local users to gain roo
23RISCO
abrir
Exploit-DBVexDay Proof
HP-UX 10.20 newgrp - Local Privilege Escalation
CVE-1999-0050localhp-ux01 dez 1996
Buffer overflow in HP-UX newgrp program.
23RISCO
abrir
Exploit-DBVexDay Proof
IBM AIX 4.2.1 - 'lquerypv' File Read
CVE-1999-1117localaix24 nov 1996
lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line par
23RISCO
abrir
Exploit-DBVexDay Proof
SGI IRIX 6.4 / SGI license_oeo 3.0/3.1/3.1.1 LicenseManager - 'LICENSEMGR_FILE_ROOT' Local Privilege Escalation
CVE-1999-0051localirix22 nov 1996
Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.
23RISCO
abrir
Exploit-DBVexDay Proof
SGI IRIX 6.2 - 'cdplayer' Local Privilege Escalation
CVE-1999-0960localirix21 nov 1996
IRIX cdplayer allows local users to create directories in arbitrary locations via a command line option.
23RISCO
abrir
anteriorpágina 814 / 816próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.