Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.761 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 170 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 15.761

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Cybersecurity Infrastructure Security Agency (CISA)VMware HCX - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Elastic Cloud API KeyNetwork Scanner

High

N/A
N/A
No
Cybersecurity Infrastructure Security Agency (CISA)VMware NSX - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Rundeck - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Redis < 8.2.1 lua script - Integer OverflowNetwork Scanner

Critical(7)

0.010.35No
Cybersecurity Infrastructure Security Agency (CISA)Metabase - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Prestashop posstaticfooter <= 1.0.0 - SQL InjectionNetwork Scanner

Critical(9.8)

0.040.88No
Cybersecurity Infrastructure Security Agency (CISA)Oracle WebLogic Server - Unauthorized AccessNetwork Scanner

High(7.5)

0.941No
Cybersecurity Infrastructure Security Agency (CISA)VMware VCenter - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Kaseya VSA < 9.5.7 - Arbitrary File Upload to Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.020.83No
Redis < 8.2.1 Lua Long-String Delimiter - Out-of-Bounds ReadNetwork Scanner

High(6.3)

0.010.01No
Cybersecurity Infrastructure Security Agency (CISA)JamF (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

0.951No
PrestaShop - SQL Injection to Eval InjectionNetwork Scanner

Critical(9.8)

0.140.94No
Cybersecurity Infrastructure Security Agency (CISA)Cisco vManage (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)OpenNMS - JNDI Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)VMware Horizon - JNDI Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Graylog (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Cisco Unified Communications - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Citrix XenMobile Server - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Seeyon OA (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

0.951No
Canon Devices - Authentication Bypass in Catwalk ServerNetwork Scanner

High(7.5)

0.010.72No
Cybersecurity Infrastructure Security Agency (CISA)VMware Operations Manager - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Redis Lua Sandbox < 8.2.2 - Cross-User EscapeNetwork Scanner

High(6)

0.010.02No
Cybersecurity Infrastructure Security Agency (CISA)Ivanti MobileIron (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

0.951No
Redis Lua Parser < 8.2.2 - Use After FreeNetwork Scanner

Critical(9.9)

0.010.3No