Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.227 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 164 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 15.227

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
GeoServer WFS - XXE Processing VulnerabilityNetwork Scanner

Critical(9.9)

No
Apache Airflow v3 Default LoginNetwork Scanner

High

No
NUUO NVR - Default LoginNetwork Scanner

High

No
Hewlett Packard LaserJet Printer - Default LoginNetwork Scanner

High

No
PhotoPrism - Unauth AccessNetwork Scanner

High

No
OpenSearch Dashboard - Default LoginNetwork Scanner

High

No
QNAP QuTS hero Multiple OpenSSH Vulnerabilities (QSA-25-14)Network Scanner

Medium(5.9)

No
PhotoPrism - Default LoginNetwork Scanner

High

No
QNAP QTS Multiple OpenSSH Vulnerabilities (QSA-25-14)Network Scanner

Medium(5.9)

No
Dahua 'GetClassValue' - Remote Code ExecutionNetwork Scanner

Critical

No
Motive eSIM Secure Connect Panel - ExposureNetwork Scanner

High

No
Cybersecurity Infrastructure Security Agency (CISA)NUUO NVRmini - Remote Command ExecutionNetwork Scanner

Critical(9.8)

No
OpenSearch Dashboard - Unauth AccessNetwork Scanner

High

No
APsystems ECU-R Firmware - Command InjectionNetwork Scanner

Critical(9.8)

No
DCBI-Netlog-LAB v1.0 - Command InjectionNetwork Scanner

Critical(9.8)

No
WordPress RevSlider - Remote Code Execution via File UploadNetwork Scanner

High(7.5)

No
Rocket LMS - Default LoginNetwork Scanner

High

No
Raisecom Gateway vpn_template_style.php - Remote Command ExecutionNetwork Scanner

Critical

No
Joplin 3.3.3 Server - Privilege EscalationNetwork Scanner

High(8.8)

No
Jan v0.4.12 - Arbitrary File UploadNetwork Scanner

Critical(9.8)

No
WordPress ShowBiz Pro <= 1.7.1 - Authenticated Arbitrary File Upload to RCENetwork Scanner

Critical(9.8)

No
Bigant DataBase - Exposed InstallationNetwork Scanner

High

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link DIR820LA1_FW105B03 'ping_addr' - OS Command InjectionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Tenda AC15 AC1900 version 15.03.05.19 - Command InjectionNetwork Scanner

Critical(9.8)

No
Joplin - Default LoginNetwork Scanner

High

No