HomePentest-Tools.com Logo

Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities that can be detected with Pentest-Tools.com and the exploits that are currently available in the platform.

We detect more than 11.162 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 131 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 11.162

Pentest-Tools.com Vulnerabilities
Name
CVE
Detectable
with
Detection added
Severity
CVSSv3
score
Exploitable
with Sniper
Avada < 7.11.7 - Information DisclosureNetwork Scanner

Medium

5.3No
Cybersecurity Infrastructure Security Agency (CISA)CrushFTP VFS - Sandbox Escape LFRNetwork Scanner

High

10No
WordPress Toolbar <= 2.2.6 - Open RedirectNetwork Scanner

Medium

6.1No
Wordpress Email Subscribers by Icegram Express - SQL InjectionNetwork Scanner

High

---No
PrestaShop AdvancedPopupCreator - SQL InjectionNetwork Scanner

High

9.8No
PrestaShop PireosPay - SQL InjectionNetwork Scanner

High

8.8No
Magento - SQL InjectionNetwork Scanner

High

9.8No
WordPress Plugin Aviary Image Editor Addon For Gravity Forms 3.0 Beta - Arbitrary File UploadNetwork Scanner

High

9.8No
JetBrains TeamCity > 2023.11.3 - Authentication BypassNetwork Scanner

High

9.8No
MasterStudy LMS <= 3.3.3 - Unauthenticated Local File Inclusion via templateNetwork Scanner

High

9.8No
PrestaShop Step by Step products Pack - SQL InjectionNetwork Scanner

High

9.8No
NextGen Healthcare Mirth Connect - Remote Code ExecutionNetwork Scanner

High

9.8No
Academy LMS 6.0 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No
EventON (Free < 2.2.8, Premium < 4.5.5) - Information DisclosureNetwork Scanner

Medium

5.3No
SuperWebMailer 9.31.0.01799 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No
CData API Server < 23.4.8844 - Path TraversalNetwork Scanner

High

9.8No
WordPress Automatic Plugin <= 3.92.0 - SQL InjectionNetwork Scanner

High

9.9No
Netmaker - Hardcoded DNS Secret KeyNetwork Scanner

High

7.5No
Gradio - Server Side Request ForgeryNetwork Scanner

Medium

6.5No
Sidekiq < 7.0.8 - Cross-Site ScriptingNetwork Scanner

High

8.3No
RaidenMAILD Mail Server v.4.9.4 - Path TraversalNetwork Scanner

High

---No
Modoboa < 2.1.0 - Improper AuthorizationNetwork Scanner

High

9.1No
Flowise 1.6.5 - Authentication BypassNetwork Scanner

High

---No
Academy LMS 6.2 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No
OpenEMR < 7.0.1 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No