Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.725 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 180 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.583

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Email Subscribers & Newsletters <= 5.3.1 - Authenticated SQL InjectionNetwork Scanner

High(8.8)

0.370.98No
SolarWinds Security Event Manager - Unauthenticated RCENetwork Scanner

High(8.8)

0.841No
WP Sessions Time Monitoring Full Automatic <= 1.0.8 - SQL InjectionNetwork Scanner

Critical(9.8)

0.110.94No
GestioIP - Reflected Cross-Site ScriptingNetwork Scanner

Medium(4.8)

0.010.19No
WordPress BadgeOS <=3.7.0 - SQL InjectionNetwork Scanner

Critical(9.8)

0.650.99No
SecGate 3600 Firewall obj_app_upfile - Arbitrary File UploadNetwork Scanner

Critical

N/A
N/A
No
Linx Sphere - Directory TraversalNetwork Scanner

High(7.5)

0.280.97No
Twisted - Open Redirect & XSSNetwork Scanner

Medium(6.1)

0.690.99No
Zaver - Local File InclusionNetwork Scanner

High(7.5)

0.50.98No
Eleanor CMS - Open RedirectNetwork Scanner

Medium(5)

0.090.93No
SugarCRM 3.5.1 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.10.93No
VDO.Ninja - DOM-Based Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.010.25No
Cybersecurity Infrastructure Security Agency (CISA)Apache OFBiz - Improper Authorization & Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.951No
Telesquare TLR-2005KSH 1.0.0 - Arbitrary File UploadNetwork Scanner

Critical(9.8)

0.921No
Keycloak - SAML Core Package Signature Validation FlawNetwork Scanner

High(7.7)

0.841No
Cybersecurity Infrastructure Security Agency (CISA)Cisco CloudCenter Suite (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

0.951No
Generic Env File DisclosureNetwork Scanner

High

N/A
N/A
No
SolarWinds Web Help Desk - Authentication BypassNetwork Scanner

Critical(9.8)

0.010.05No
SFTPGo Admin - SetupNetwork Scanner

High

N/A
N/A
No
Apache Solr - Deserialization of Untrusted DataNetwork Scanner

Critical(9.8)

0.941No
YzmCMS v3.6 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

0.020.78No
Eibiz i-Media Server Digital Signage 3.8.0 - Local File InclusionNetwork Scanner

High(7.5)

N/A
N/A
No
Gradio - Open RedirectNetwork Scanner

Low

N/A
N/A
No
EventON <= 2.1 - Missing AuthorizationNetwork Scanner

Medium(5.3)

0.780.99No
Cybersecurity Infrastructure Security Agency (CISA)Flexnet - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No