Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.843 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 171 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 15.701

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Fanwei e-cology - SQL InjectionNetwork Scanner

High(7.5)

0.010.24No
Cybersecurity Infrastructure Security Agency (CISA)Kaseya VSA < 9.5.7 - Credential Disclosure via Windows AgentNetwork Scanner

Critical(10)

0.620.99No
Redirect.pizza Subdomain TakeoverNetwork Scanner

High

N/A
N/A
No
Cybersecurity Infrastructure Security Agency (CISA)Citrix NetScaler ADC and NetScaler Gateway - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.951No
Hongjing e-HR 2020 - SQL InjectionNetwork Scanner

High(7.3)

0.060.9No
Next.js / Vite Public ENV ExposureNetwork Scanner

Medium

N/A
N/A
No
Sunflower Simple and Personal 1.0.1.43315 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.911No
St. Joe ERP system - SQL InjectionNetwork Scanner

Critical(9.8)

0.130.94No
XWiki Platform - Path TraversalNetwork Scanner

High(7.5)

0.040.88No
ESPHome - Authentication BypassNetwork Scanner

High(8.1)

0.050.89No
Unauthenticated SmartFace PanelNetwork Scanner

Medium

N/A
N/A
No
Microsoft SharePoint Server - Authentication Bypass (ToolShell)Network Scanner

Medium(6.5)

0.360.97No
Mythic C2 JARMNetwork Scanner

Medium

N/A
N/A
No
TitanFTP move-file Function up to 1.94.1205 - Path TraversalNetwork Scanner

High(8.8)

0.760.99No
Cybersecurity Infrastructure Security Agency (CISA)Apache Druid - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Merlin C2 JARMNetwork Scanner

Medium

N/A
N/A
No
Generic C2 JARMNetwork Scanner

Medium

N/A
N/A
No
P7-Office 12.5 - Cross-Site ScriptingNetwork Scanner

Medium

N/A
N/A
No
Kentico Xperience 13 CMS - Staging Service Authentication Bypass (WT-2025-0006)Network Scanner

Critical

N/A
N/A
No
Pure-FTPd up to 1.0.22 - Directory TraversalNetwork Scanner

Low(3.6)

0.010.04No
Titan FTP Server Search Function < 10.40 - User EnumerationNetwork Scanner

Medium(5)

0.050.89No
Titan FTP Server 6.05 DELE Command - Heap OverflowNetwork Scanner

Critical(10)

0.020.82No
Deimos C2 JARMNetwork Scanner

Medium

N/A
N/A
No
Sliver C2 JARMNetwork Scanner

Medium

N/A
N/A
No
Titan FTP up to 3.21 - Heap Overflow via Long CommandsNetwork Scanner

Medium(5)

0.010.75No