Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

71.836exploits catalogados
32.133CVEs com exploração pública
1.932testados em laboratório
3.462 exploits
Metasploit300
Novell iPrint Client ActiveX Control ExecuteRequest Buffer Overflow
CVE-2008-093522 fev 2008
Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.
50RISCO
abrir
Metasploit400
Now SMS/MMS Gateway Buffer Overflow
CVE-2008-087119 fev 2008
Multiple stack-based buffer overflows in Now SMS/MMS Gateway 2007.06.27 and earlier allow remote attackers to execute ar
50RISCO
abrir
Metasploit400
Adobe Collab.collectEmailInfo() Buffer Overflow
CVE-2007-5659HIGHsob ataque08 fev 2008
Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code
100RISCO
abrir
Metasploit400
Adobe util.printf() Buffer Overflow
CVE-2008-2992HIGHsob ataqueransomware08 fev 2008
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary c
100RISCO
abrir
Metasploit400
Adobe util.printf() Buffer Overflow
CVE-2008-2992HIGHsob ataqueransomware08 fev 2008
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary c
100RISCO
abrir
Metasploit300
UltraVNC 1.0.2 Client (vncviewer.exe) Buffer Overflow
CVE-2008-061006 fev 2008
Stack-based buffer overflow in the ClientConnection::NegotiateProtocolVersion function in vncviewer/ClientConnection.cpp
50RISCO
abrir
Metasploit400
WinComLPD Buffer Overflow
CVE-2008-515904 fev 2008
Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earl
50RISCO
abrir
Metasploit400
SAP SAPLPD 6.28 Buffer Overflow
CVE-2008-062104 fev 2008
Buffer overflow in SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to
60RISCO
abrir
Metasploit300
Facebook Photo Uploader 4 ActiveX Control Buffer Overflow
CVE-2008-571131 jan 2008
Heap-based buffer overflow in the Facebook PhotoUploader ActiveX control 5.0.14.0 and earlier allows remote attackers to
50RISCO
abrir
Metasploit600
Coppermine Photo Gallery picEditor.php Command Execution
CVE-2008-050630 jan 2008
include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing
50RISCO
abrir
Metasploit300
Persits XUpload ActiveX AddFile Buffer Overflow
CVE-2008-049225 jan 2008
Stack-based buffer overflow in the Persits.XUpload.2 ActiveX control in XUpload.ocx 3.0.0.4 and earlier in Persits XUplo
43RISCO
abrir
Metasploit200
Streamcast HTTP User-Agent Buffer Overflow
CVE-2008-055024 jan 2008
Off-by-one error in Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) or
50RISCO
abrir
Metasploit300
Winamp Ultravox Streaming Metadata (in_mp3.dll) Buffer Overflow
CVE-2008-006518 jan 2008
Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbi
50RISCO
abrir
Metasploit300
SAP MaxDB cons.exe Remote Command Injection
CVE-2008-024409 jan 2008
SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via "&&" and other shell me
60RISCO
abrir
Metasploit200
XTACACSD report() Buffer Overflow
CVE-2008-723208 jan 2008
Buffer overflow in the report function in xtacacsd 4.1.2 and earlier allows remote attackers to execute arbitrary code v
43RISCO
abrir
Metasploit400
MySQL yaSSL SSL Hello Message Buffer Overflow
CVE-2008-022604 jan 2008
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attacke
60RISCO
abrir
Metasploit200
MySQL yaSSL SSL Hello Message Buffer Overflow
CVE-2008-022604 jan 2008
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attacke
60RISCO
abrir
Metasploit400
HP LoadRunner 9.0 ActiveX AddFolder Buffer Overflow
CVE-2007-653025 dez 2007
Buffer overflow in the XUpload.ocx ActiveX control in Persits Software XUpload 2.1.0.1, and probably other versions befo
50RISCO
abrir
Metasploit300
IBM Lotus Domino Web Access Upload Module Buffer Overflow
CVE-2007-447420 dez 2007
Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, in
50RISCO
abrir
Metasploit300
Appian Enterprise Business Suite 5.6 SP1 DoS
CVE-2007-650917 dez 2007
Unspecified vulnerability in Appian Enterprise Business Process Management (BPM) Suite 5.6 SP1 allows remote attackers t
50RISCO
abrir
Metasploit600
Apple OS X Software Update Command Execution
CVE-2007-586317 dez 2007
Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (
43RISCO
abrir
Metasploit300
MS07-064 Microsoft DirectX DirectShow SAMI Buffer Overflow
CVE-2007-390111 dez 2007
Stack-based buffer overflow in the DirectShow Synchronized Accessible Media Interchange (SAMI) parser in quartz.dll for
50RISCO
abrir
Metasploit400
MS07-065 Microsoft Message Queueing Service DNS Name Path Overflow
CVE-2007-303911 dez 2007
Stack-based buffer overflow in the Microsoft Message Queuing (MSMQ) service in Microsoft Windows 2000 Server SP4, Window
50RISCO
abrir
Metasploit500
BadBlue 2.72b PassThru Buffer Overflow
CVE-2007-637710 dez 2007
Stack-based buffer overflow in the PassThru functionality in ext.dll in BadBlue 2.72b and earlier allows remote attacker
50RISCO
abrir
Metasploit500
HP OpenView Network Node Manager OpenView5.exe CGI Buffer Overflow
CVE-2007-620406 dez 2007
Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote att
50RISCO
abrir
Metasploit400
ACDSee XPM File Section Buffer Overflow
CVE-2007-219323 nov 2007
Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build
50RISCO
abrir
Metasploit200
MacOS X QuickTime RTSP Content-Type Overflow
CVE-2007-616623 nov 2007
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac
50RISCO
abrir
Metasploit300
Apple QuickTime 7.3 RTSP Response Header Buffer Overflow
CVE-2007-616623 nov 2007
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac
50RISCO
abrir
Metasploit300
WinZip FileView (WZFILEVIEW.FileViewCtrl.61) ActiveX Buffer Overflow
CVE-2006-519802 nov 2007
The WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 before buil
50RISCO
abrir
Metasploit300
SonicWall SSL-VPN NetExtender ActiveX Control Buffer Overflow
CVE-2007-560301 nov 2007
Stack-based buffer overflow in the SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX control before 2.1.0.51, and 2.5.x
50RISCO
abrir
anteriorpágina 94 / 116próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.