Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.736 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 182 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.594

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
LimeSurvey - Open Redirect via editorLinkNetwork Scanner

Medium

N/A
N/A
No
Apache Tomcat Manager/Host Manager/Server Status Default/Hardcoded Credentials (HTTP)Network Scanner
N/A
0.881No
Apache Tomcat Server Administration Default/Hardcoded Credentials (HTTP)Network Scanner
N/A
0.881No
NocoDB < 0.258.0 - Reflected XSS in Password ResetNetwork Scanner

Medium(5.4)

0.010.72No
Dagu Workflow Engine - Remote Code ExecutionNetwork Scanner

Critical

N/A
N/A
No
Group-Office < 26.0.5 - Remote Code ExecutionNetwork Scanner

Critical(9.9)

0.130.94No
Cybersecurity Infrastructure Security Agency (CISA)MeteoBridge <= 6.1 - Remote Code ExecutionNetwork Scanner

High(7.5)

0.40.98Yes
Cybersecurity Infrastructure Security Agency (CISA)HPE OneView - Remote Code ExecutionNetwork Scanner

Critical(10)

0.871Yes
EKC Tournament Manager WordPress plugin - Path TraversalNetwork Scanner

Medium(6.5)

0.060.91No
Remita Merchant ID & API Key - ExposureNetwork Scanner

Low

N/A
N/A
No
WP-Lister Lite for Amazon <= 2.6.16 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.090.93No
Cybersecurity Infrastructure Security Agency (CISA)Apache OFBiz - Improper Authorization & Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.951No
SecGate 3600 Firewall obj_app_upfile - Arbitrary File UploadNetwork Scanner

Critical

N/A
N/A
No
Telesquare TLR-2005KSH 1.0.0 - Arbitrary File UploadNetwork Scanner

Critical(9.8)

0.921No
VDO.Ninja - DOM-Based Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.090.93No
Gradio - Open RedirectNetwork Scanner

Low

N/A
N/A
No
SugarCRM 3.5.1 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.10.93No
WordPress BadgeOS <=3.7.0 - SQL InjectionNetwork Scanner

Critical(9.8)

0.650.99No
YzmCMS v3.6 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.020.78No
Eleanor CMS - Open RedirectNetwork Scanner

Medium(5)

0.090.93No
Apache Solr - Deserialization of Untrusted DataNetwork Scanner

Critical(9.8)

0.941No
Eibiz i-Media Server Digital Signage 3.8.0 - Local File InclusionNetwork Scanner

High(7.5)

N/A
N/A
No
SFTPGo Admin - SetupNetwork Scanner

High

N/A
N/A
No
EventON <= 2.1 - Missing AuthorizationNetwork Scanner

Medium(5.3)

0.770.99No
Zaver - Local File InclusionNetwork Scanner

High(7.5)

0.50.98No