Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.274 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 164 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 15.132

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
Cybersecurity Infrastructure Security Agency (CISA)Microsoft SMBv3 - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)QNAP Photo Station < 6.0.3 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Apache Dubbo 2.5.x-2.7.4 - Insecure DeserializationNetwork Scanner

Critical(9.8)

No
Moodle LMS Jmol Plugin <= 6.1 - Cross-Site ScriptingNetwork Scanner

Medium(5.4)

No
Moodle Jmol Filter 6.1 - Local File InclusionNetwork Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)Microsoft SharePoint - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
UEditor - PHP Arbitrary File UploadNetwork Scanner

Medium

No
elFinder <= 2.1.47 - Command InjectionNetwork Scanner

Critical(9.8)

No
Likes and Dislikes Plugin <= 1.0.0 - Unauthenticated SQL InjectionNetwork Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)Microsoft .NET Framework - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Exposed JSON Configuration FilesNetwork Scanner

Critical

No
Apache Kyuubi - Configuration ExposureNetwork Scanner

Medium

No
Python DoS Vulnerability (Jun 2025) - WindowsNetwork Scanner

Medium(4.3)

No
MediaWiki >= 3.3.0 < 3.3.1 XSS VulnerabilityNetwork Scanner

Medium(6.5)

No
D-Link DIR-860L Multiple Vulnerabilities (2018 - 2024)Network Scanner
N/A
No
D-Link DIR-867 Buffer Overflow Vulnerability (Jun 2025)Network Scanner

High(8.8)

No
MediaWiki >= 2.13.0 < 3.3.1 XSS VulnerabilityNetwork Scanner

Medium(6.5)

No
Blink Router - Command InjectionNetwork Scanner

Critical(9.8)

No
CMS Made Simple <= 2.2.21 XSS VulnerabilityNetwork Scanner

Low(3.5)

No
FlatPress <= 1.3 Multiple VulnerabilitiesNetwork Scanner

Medium(5.4)

No
D-Link DIR-815 Multiple Vulnerabilities (2024 - 2025)Network Scanner
N/A
No
D-Link DIR-822 Multiple Vulnerabilities (2018 - 2024)Network Scanner
N/A
No
Cybersecurity Infrastructure Security Agency (CISA)Dahua IPC/VTH/VTO - Authentication BypassNetwork Scanner

Critical(9.8)

No
D-Link DIR-882 Multiple Vulnerabilities (2023 - 2024)Network Scanner
N/A
No
FlatPress <= 1.3.1 Information Disclosure VulnerabilityNetwork Scanner

High(8.1)

No