Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.541 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 169 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 15.541

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
WordPress Frontend Login and Registration Blocks Plugin 1.0.7 - Privilege EscalationNetwork Scanner

Critical(9.8)

0.330.97No
Phoenix Contact CHARX SEC-3XXX AC Controller < 1.7.3 - Multiple VulnerabilitiesNetwork Scanner

Critical

N/A
N/A
No
Cybersecurity Infrastructure Security Agency (CISA)Fortinet SSL-VPN - Heap-Based Buffer OverflowNetwork Scanner

Critical(9.8)

0.951No
Memos 0.13.2 - Server-Side Request ForgeryNetwork Scanner

Medium(6.1)

0.080.92No
Cybersecurity Infrastructure Security Agency (CISA)FreePBX - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.560.98No
Ditty < 3.1.58 - Server-Side Request ForgeryNetwork Scanner

High(8.6)

0.080.92No
Elastic Logstash CVE-2015-5378 Man in the Middle Security Bypass VulnerabilityNetwork Scanner

High(7.5)

0.010.76No
Elastic Logstash Information Disclosure Vulnerability (ESA-2019-05)Network Scanner

Critical(9.8)

0.010.64No
Cybersecurity Infrastructure Security Agency (CISA)Elastic Logstash Multiple Log4j Vulnerabilities (ESA-2021-31, Log4Shell)Network Scanner

Critical(9)

0.951No
Elastic Logstash CVE-2016-1000221 Information Disclosure VulnerabilityNetwork Scanner

High(7.5)

0.010.73No
Elastic Logstash CVE-2015-4152 Directory Traversal VulnerabilityNetwork Scanner
N/A
0.010.7No
Elastic Logstash CVE-2016-10362 Information Disclosure VulnerabilityNetwork Scanner

Medium(6.5)

0.010.51No
Elastic Logstash CVE-2016-10363 Denial of Service VulnerabilityNetwork Scanner

High(7.5)

0.010.69No
Elastic Logstash CVE-2018-3817 Information Disclosure VulnerabilityNetwork Scanner

Medium(6.5)

0.010.54No
Content-Security-Policy Bypass - salesforceNetwork Scanner

Medium

N/A
N/A
No
Elastic Logstash Beats Input Plugin DoS Vulnerability (ESA-2019-14)Network Scanner

High(7.5)

0.020.8No
DiskBoss Enterprise Server <= 7.4.28 GET Buffer Overflow Vulnerability - WindowsNetwork Scanner
N/A
0.010.51No
Elastic Logstash CVE-2014-4326 RCE VulnerabilityNetwork Scanner
N/A
0.010.75No
FreePBX - CVE-2025-57819 BackdoorNetwork Scanner

High

N/A
N/A
No
WordPress Frontend File Manager < 4.0 & N-Media Post Frontend < 1.1 - Arbitrary File UploadNetwork Scanner

Critical(9.8)

0.520.98No
WP Cerber Security, Anti-spam & Malware Scan < 8.9.6 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.030.84No
Content-Security-Policy Bypass - beslist.nlNetwork Scanner

Medium

N/A
N/A
No
LumisXP - Cross-site ScriptingNetwork Scanner

Medium(5.4)

0.040.87No
Sassy Social Share <= 3.3.3 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.030.84No
Linknat VOS3000/2009 Directory Traversal VulnerabilityNetwork Scanner
N/A
0.010.27No