Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.737 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 182 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.737

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Course Booking System <= 6.0.6 - SQL InjectionNetwork Scanner

Critical(9.3)

0.050.9No
LimeSurvey - Open Redirect via editorLinkNetwork Scanner

Medium

N/A
N/A
No
Apache Tomcat Manager/Host Manager/Server Status Default/Hardcoded Credentials (HTTP)Network Scanner
N/A
0.881No
Apache Tomcat Server Administration Default/Hardcoded Credentials (HTTP)Network Scanner
N/A
0.881No
Cybersecurity Infrastructure Security Agency (CISA)HPE OneView - Remote Code ExecutionNetwork Scanner

Critical(10)

0.871Yes
Group-Office < 26.0.5 - Remote Code ExecutionNetwork Scanner

Critical(9.9)

0.130.94No
EKC Tournament Manager WordPress plugin - Path TraversalNetwork Scanner

Medium(6.5)

0.060.91No
Cybersecurity Infrastructure Security Agency (CISA)MeteoBridge <= 6.1 - Remote Code ExecutionNetwork Scanner

High(7.5)

0.40.98Yes
NocoDB < 0.258.0 - Reflected XSS in Password ResetNetwork Scanner

Medium(5.4)

0.010.72No
Dagu Workflow Engine - Remote Code ExecutionNetwork Scanner

Critical

N/A
N/A
No
WP-Lister Lite for Amazon <= 2.6.16 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.090.93No
Remita Merchant ID & API Key - ExposureNetwork Scanner

Low

N/A
N/A
No
SecGate 3600 Firewall obj_app_upfile - Arbitrary File UploadNetwork Scanner

Critical

N/A
N/A
No
Telesquare TLR-2005KSH 1.0.0 - Arbitrary File UploadNetwork Scanner

Critical(9.8)

0.921No
WordPress BadgeOS <=3.7.0 - SQL InjectionNetwork Scanner

Critical(9.8)

0.650.99No
EventON <= 2.1 - Missing AuthorizationNetwork Scanner

Medium(5.3)

0.770.99No
SugarCRM 3.5.1 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.10.93No
Eleanor CMS - Open RedirectNetwork Scanner

Medium(5)

0.090.93No
WP Sessions Time Monitoring Full Automatic <= 1.0.8 - SQL InjectionNetwork Scanner

Critical(9.8)

0.440.98No
Cybersecurity Infrastructure Security Agency (CISA)Apache OFBiz - Improper Authorization & Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.951No
Twisted - Open Redirect & XSSNetwork Scanner

Medium(6.1)

0.690.99No
Keycloak - SAML Core Package Signature Validation FlawNetwork Scanner

High(7.7)

0.841No
Apache Solr - Deserialization of Untrusted DataNetwork Scanner

Critical(9.8)

0.941No
Eibiz i-Media Server Digital Signage 3.8.0 - Local File InclusionNetwork Scanner

High(7.5)

N/A
N/A
No
Zaver - Local File InclusionNetwork Scanner

High(7.5)

0.50.98No