Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.635 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 179 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.493

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
WordPress WPML Multilingual CMS < 4.6.1 - Cross-Site ScriptingNetwork Scanner

High

N/A
N/A
No
12 Step Meeting List < 3.16.6 - Unauthenticated Sensitive Information ExposureNetwork Scanner

Medium(5.3)

0.010.33No
ZimaOS - Authentication BypassNetwork Scanner

Critical(9.4)

0.010.19No
Quiz and Survey Master <= 8.1.4 - SQL InjectionNetwork Scanner

High(8.6)

0.010.35No
WordPress Download Manager <= 3.2.59 - Reflected XSSNetwork Scanner

High(7.1)

0.010.32No
Bulk Me Now! Plugin <= 2.0 - Cross-Site ScriptingNetwork Scanner

High(7.1)

0.010.77No
SweetRice CMS 1.5.1 - Backup DisclosureNetwork Scanner

Medium

N/A
N/A
No
WordPress Front End Users - Reflected XSSNetwork Scanner

High(7.1)

0.010.7No
Fantastic ElasticSearch Plugin <= 4.1.0 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.020.82No
ChanCMS <= 3.1. - Remote Code ExecutionNetwork Scanner

Critical(6.3)

0.010.41No
Pinger 1.0 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.160.95No
Privacy Policy Genius - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.010.71No
Post Sync Plugin <= 1.1 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.030.86No
WordPress Realtyna Organic IDX Plugin <= 4.14.4 - Unauthenticated SQL InjectionNetwork Scanner

Critical(9.3)

0.180.95No
ICTBroadcast - Command InjectionNetwork Scanner

Critical(9.8)

0.730.99No
Dyn Business Panel Plugin <= 1.0.0 - Cross-Site ScriptingNetwork Scanner

High(7.1)

0.020.84No
WordPress GamiPress <= 2.5.7 - SQL InjectionNetwork Scanner

Critical(9.8)

0.010.55No
Studiocart <= 2.9.0 - Cross-Site ScriptingNetwork Scanner

Medium(7.1)

0.050.89No
NUUO Camera <=20250203 - OS Command InjectionNetwork Scanner

Critical(7.3)

0.030.86No
Lazy Blocks <= 3.8.2 - Cross-Site ScriptingNetwork Scanner

Medium(7.1)

0.030.85No
Sangfor OSM - Arbitrary File UploadNetwork Scanner

Critical(7.3)

0.010.14No
WordPress Stray Random Quotes <= 1.9.9 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.010.69No
WP Projects Portfolio <= 3.0 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.030.84No
Adminer 4.6.2 - 5.4.1 Unauthenticated Persistent DoSNetwork Scanner

High(7.5)

0.010.77No
WordPress Competition Form Plugin <= 2.0 - Cross-Site ScriptingNetwork Scanner

High(7.1)

0.010.77No