Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.808 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 182 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.808

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Vite Dev Server - Information ExposureNetwork Scanner

Medium(5.3)

0.020.81No
Alfresco - Default Admin CredentialsNetwork Scanner

High

N/A
N/A
No
Redmine - Default Admin CredentialsNetwork Scanner

High

N/A
N/A
No
Dify User Enumeration via Observable Response DiscrepancyNetwork Scanner

Medium(5.3)

0.010.61No
Casdoor - Default Admin CredentialsNetwork Scanner

High

N/A
N/A
No
JumpServer - Open Redirect via Referer HeaderNetwork Scanner

Medium(6.1)

0.020.79No
ownCloud Guests - User EnumerationNetwork Scanner

Medium(5.3)

0.020.83No
Langflow - Broken Access ControlNetwork Scanner

Critical(9.1)

0.070.92No
Mastodon - Open RedirectNetwork Scanner

Medium(4.3)

0.010.48No
Budibase - Authentication BypassNetwork Scanner

Critical(9.1)

0.090.93No
Astro SSR - Open RedirectNetwork Scanner

Medium(6.1)

0.030.85No
ILIAS LMS - Default Admin CredentialsNetwork Scanner

High

N/A
N/A
No
LimeSurvey - Default Admin CredentialsNetwork Scanner

High

N/A
N/A
No
MistServer Installation Wizard - ExposureNetwork Scanner

High

N/A
N/A
No
Piwigo - User Enumeration via Password ResetNetwork Scanner

Medium(5.3)

0.020.78No
BMC FootPrints - Deserialization of Untrusted Data (RCE)Network Scanner

Critical(8.8)

0.10.93No
LottieFiles WordPress Plugin <= 3.0.0 - Missing AuthorizationNetwork Scanner

High(7.3)

0.020.83No
WordPress midi-Synth <= 1.1.0 - Unauthenticated Arbitrary File UploadNetwork Scanner

Critical(9.8)

0.190.96No
Xerox Fuji/VersaLink - Default LoginNetwork Scanner

High

N/A
N/A
No
ntopng - Default LoginNetwork Scanner

High

N/A
N/A
No
Harbor Registry - Default Admin CredentialsNetwork Scanner

High

N/A
N/A
No
Dell Wyse Management Suite - Unauthenticated Device RegistrationNetwork Scanner

High

N/A
N/A
No
Doccano - Default LoginNetwork Scanner

High

N/A
N/A
No
Accept Donations with PayPal <= 1.5.2 - Open RedirectNetwork Scanner

Medium(4.7)

0.020.81No
Glances - Information DisclosureNetwork Scanner

High(7.5)

0.040.88No