Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.875 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 171 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 825

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
Cybersecurity Infrastructure Security Agency (CISA)Mitel MiCollab - Information Disclosure & Denial of ServiceNetwork Scanner

Critical(9.8)

0.620.99No
Cybersecurity Infrastructure Security Agency (CISA)Adobe Experience Manager Forms - Insecure DeserializationNetwork Scanner

Critical(10)

0.290.97No
Cybersecurity Infrastructure Security Agency (CISA)Adobe Commerce - Authentication BypassNetwork Scanner

Critical(9.1)

0.450.98No
Cybersecurity Infrastructure Security Agency (CISA)Kaseya VSA 2017 ConnectWise ManagedITSync - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.891No
Cybersecurity Infrastructure Security Agency (CISA)Kentico Xperience 13 CMS - Staging Service Authentication Bypass (WT-2025-0006)Network Scanner

Critical(9.8)

0.811No
Cybersecurity Infrastructure Security Agency (CISA)Kentico Xperience 13 CMS - Staging Service Authentication Bypass (WT-2025-0011)Network Scanner

Critical(9.8)

0.670.99No
Cybersecurity Infrastructure Security Agency (CISA)VMware vCenter Server LDAP Broken Access ControlNetwork Scanner

Critical(9.8)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Adobe Commerce (Magento) - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.941No
Cybersecurity Infrastructure Security Agency (CISA)IBM Planning Analytics - Authentication Bypass & Remote Code Execution VersionNetwork Scanner

Critical(9.8)

0.921No
Cybersecurity Infrastructure Security Agency (CISA)Citrix SD-WAN and NetScaler SD-WAN - SQL InjectionNetwork Scanner

Critical(9.8)

0.921No
Cybersecurity Infrastructure Security Agency (CISA)Veritas Backup Exec - Broken AuthenticationNetwork Scanner

High(8.2)

0.290.97No
Cybersecurity Infrastructure Security Agency (CISA)WS_FTP Server - Insecure DeserializationNetwork Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Kaseya VSA < 9.5.7 - Credential Disclosure via Windows AgentNetwork Scanner

Critical(10)

0.60.99No
Cybersecurity Infrastructure Security Agency (CISA)Citrix NetScaler ADC and NetScaler Gateway - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Apache Druid - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Cisco ISE - Remote Code ExecutionNetwork Scanner

Critical(10)

0.150.95No
Cybersecurity Infrastructure Security Agency (CISA)Citrix Netscaler ADC & Gateway - Out-Of-Bounds Memory ReadNetwork Scanner

High(7.5)

0.770.99No
Cybersecurity Infrastructure Security Agency (CISA)Oracle WebLogic Server - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.951No
Cybersecurity Infrastructure Security Agency (CISA)Magento & Adobe Commerce - Account TakeoverNetwork Scanner

Critical(9.1)

0.450.98Yes
Cybersecurity Infrastructure Security Agency (CISA)DotNetNuke 9.2 - 9.2.1 - Weak Encryption & Cookie DeserializationNetwork Scanner

High(7.5)

0.921No
Cybersecurity Infrastructure Security Agency (CISA)Roundcube Webmail - Cross-Site ScriptingNetwork Scanner

Critical(9.3)

0.911No
Cybersecurity Infrastructure Security Agency (CISA)Quest KACE System Management Appliance 8.0.318 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

0.931No
Cybersecurity Infrastructure Security Agency (CISA)DotNetNuke 9.2 - 9.2.2 - Weak Encryption & Cookie DeserializationNetwork Scanner

High(7.5)

0.911No
Cybersecurity Infrastructure Security Agency (CISA)Zimbra Collaboration Suite < 8.8.15 - Improper EncodingNetwork Scanner

Medium(6.1)

0.891No
Cybersecurity Infrastructure Security Agency (CISA)IBM Data Risk Manager - Authentication Bypass via SAMLNetwork Scanner

Critical(9.8)

0.931No