Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.123 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 177 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.123

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Advanced Custom Fields Extended < 0.9.2 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.010.56No
WordPress Coming Soon Page - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress Astra - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
Ambassador API Gateway Diagnostics - ExposureNetwork Scanner

Medium

N/A
N/A
No
WordPress Shortcodes Ultimate <= 5.0.0 - Authenticated Remote Code ExecutionNetwork Scanner

High(8.8)

0.090.93No
Limit Login Attempts - Stored Cross-Site ScriptingNetwork Scanner

Medium(4.8)

0.010.54No
WordPress Solid Security < 9.0.1 - Unauthenticated Login Page DisclosureNetwork Scanner

Medium

N/A
N/A
No
WordPress Plugin Max Mega Menu (megamenu) - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress WP-PageNavi - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress All in One SEO Pack - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress ManageWP Worker - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
Advanced Custom Fields (ACF) - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress Plugin Google Tag Manager - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress Plugin Newsletter - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress Plugin reCaptcha by BestWebSoft (google-captcha) - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
Limit Login Attempts WordPress - Stored Cross-site ScriptingNetwork Scanner

Medium(6.1)

0.040.88No
React Server Components - Denial of ServiceNetwork Scanner

High(7.5)

0.030.87No
WordPress Plugin SG Optimizer - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress Plugin WooCommerce Admin (woocommerce-admin) Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress Easy Google Fonts - Error Log DisclosureNetwork Scanner

Low

N/A
N/A
No
.buildpath - File DisclosureNetwork Scanner

Low

N/A
N/A
No
WordPress Importer - Error Log DisclosureNetwork Scanner

Low

N/A
N/A
No
XWiki - Information DisclosureNetwork Scanner

High(7.5)

0.020.82No
Monsta FTP <= 2.11.2 - Unauthenticated Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.560.98No
Nexus Repository Manager - Anonymous Access EnabledNetwork Scanner

Medium

N/A
N/A
No