Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.533 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 179 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.391

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
MOVEit Transfer - SQL InjectionNetwork Scanner

Critical(9.1)

0.290.97No
Melis Technology Melis Platform - Unrestricted File Upload & Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.010.37No
ProfileGrid <= 5.7.8 - SQL InjectionNetwork Scanner

Critical(9.3)

0.010.69No
Cybersecurity Infrastructure Security Agency (CISA)vCenter Server - Improper Access ControlNetwork Scanner

Medium(5.3)

0.760.99No
WhatsUp Gold GetStatisticalMonitorList SQL Injection - Authentication BypassNetwork Scanner

Critical(9.8)

0.580.99No
VMWare Cloud Foundation NSX-V - XML External Entity (XXE)Network Scanner

Critical(9.1)

0.040.87No
OpenCode < 1.0.216 - Unauthenticated Remote Code ExecutionNetwork Scanner

High(8.8)

0.020.82No
LatePoint <= 5.0.11 - SQL InjectionNetwork Scanner

Critical(9.8)

0.250.97No
RustDesk Web Client - Default loginNetwork Scanner

High

N/A
N/A
No
WP Extended < 3.0.0 - Stored Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.070.91No
Laravel Livewire v3 - Remote Command ExecutionNetwork Scanner

Critical(9.8)

0.010.32No
Redis < 8.2.3 - Stack Buffer OverflowNetwork Scanner

Critical(8.8)

0.010.29No
WhoDB < 0.45.0 - Path TraversalNetwork Scanner

High(7.5)

0.40.98No
WordPress H5VP Plugin - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
Cybersecurity Infrastructure Security Agency (CISA)Telnet inetutils - Authentication BypassNetwork Scanner

Critical(9.8)

0.30.97Yes
XWiki Platform Distribution Flavor Main - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.020.79No
Contest Gallery - Broken Access ControlNetwork Scanner

Medium(5.3)

0.170.95No
GUDE - Default LoginNetwork Scanner

High

N/A
N/A
No
Zoho ManageEngine ADSelfService Plus 6121 - Username EnumerationNetwork Scanner

Medium(5.3)

0.170.95No
Cybersecurity Infrastructure Security Agency (CISA)Citrix StoreFront Server - XML External EntityNetwork Scanner

High(7.5)

0.760.99No
Cisco Unified Communications Manager - Cluster EnumerationNetwork Scanner

Low

N/A
N/A
No
n8n >= 0.123.0 and < 1.121.3 - Remote Code ExecutionNetwork Scanner

Critical(9.9)

0.130.94No
WordPress LazyLoad Plugin - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No
CraftCMS Debug Methods ExposedNetwork Scanner

Medium

N/A
N/A
No
WordPress Joinchat - Full Path DisclosureNetwork Scanner

Low

N/A
N/A
No