Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 14.371 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 155 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 14.371

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
SimpleHelp <= 5.5.7 - Unauthenticated Path TraversalNetwork Scanner

High(7.5)

No
CentOS Web Panel - OS Command InjectionNetwork Scanner

Critical(9.8)

No
ZZCMS 2022 - Path Information DisclosureNetwork Scanner

Medium(5.3)

No
pfSense pfBlockerNG - OS Command InjectionNetwork Scanner

Critical(9.8)

No
WSO2 User Registration - Arbitrary Account CreationNetwork Scanner

Medium

No
MAMP Server - Cross-Site ScriptingNetwork Scanner

Medium

No
Lantronix XPort 6.10.0.1 - Unauthenticated AccessNetwork Scanner

High

No
CRXDE Lite - ExposureNetwork Scanner

Low

No
WordPress File Upload <= 4.24.11 - Arbitrary File ReadNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)CyberPanel - Remote Code ExecutionNetwork Scanner

High(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)CyberPanel - Remote Code ExecutionNetwork Scanner

High(9.8)

Yes
Grafana Post-Auth DuckDB - SQL Injection To File ReadNetwork Scanner

Critical(9.9)

No
Netis Wifi Router - Information DisclosureNetwork Scanner

High

No
Error Log Viewer By WP Guru <= 1.0.1.3 - Missing Authorization to Arbitrary File ReadNetwork Scanner

High(7.5)

No
IceWarp Server 10.2.1 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Cybersecurity Infrastructure Security Agency (CISA)Aviatrix Controller - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Radio Player <= 2.0.82 - Server-Side Request ForgeryNetwork Scanner

High(7.2)

No
Apache NiFi - Information DisclosureNetwork Scanner

Medium

No
CodiMD - File UploadNetwork Scanner

Medium

No
CodiMD <2.5.4 - Insecure Filename RandomizationNetwork Scanner

Medium(5.3)

No
Issabel Authenticated - Remote Code ExecutionNetwork Scanner

Medium(4.7)

No
Crypto <= 2.15 - Authentication BypassNetwork Scanner

Critical(9.8)

No
Xhibiter NFT Marketplace 1.10.2 - SQL InjectionNetwork Scanner

High

No
Hurrakify <= 2.4 - Server-Side Request ForgeryNetwork Scanner

High(7.2)

No
UFIDA U8 Cloud - SQL Injection (CNVD-2024-33023)Network Scanner

High

No