Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.015 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 160 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 160

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
Zyxel - Default credentialsNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)Zyxel - Telnet Command InjectionNetwork Scanner

High(8.8)

Yes
Craft CMS - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Wordpress WP Query Console - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Wordpress Really Simple Security - Authentication BypassNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)Cleo Harmony, VLTrader and LexiCom - Arbitrary File Read and WriteNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)ProjectSend - Authentication BypassNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)CyberPanel - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)CyberPanel - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)Palo Alto Networks Expedition - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Palo Alto Networks Expedition - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cisco Small Business RV Series - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
GiveWP Donation Plugin - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)Progress Telerik Report Server - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)Apache OFBiz - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Zyxel - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)GeoServer - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)SolarWinds Serv-U - Arbitrary File ReadNetwork Scanner

High(7.5)

Yes
Magento - XML External Entity InjectionNetwork Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)PHP - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Oracle Business Intelligence - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
Cisco UCS Director - Directory TraversalNetwork Scanner

Critical(9.8)

Yes
Cisco UCS Director - Directory TraversalNetwork Scanner

Critical(9.8)

Yes
Cisco UCS Director / IMC Supervisor - Default password for 'scpuser'Network Scanner

Critical(9.8)

Yes
Cybersecurity Infrastructure Security Agency (CISA)Fortinet FortiSIEM - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes