Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.949 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 172 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 15.949

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
CVSSv3
EPSS Score
EPSS Percentile
Exploitable
with Sniper
WordPress AI Engine Plugin - Token ExposureNetwork Scanner

Critical(9.8)

0.010.28No
Unauthenticated Java Message BrokerNetwork Scanner

Low

N/A
N/A
No
Gradio 3.47 - 3.50.2 - Local File InclusionNetwork Scanner

High(7.5)

0.941No
XWiki <= 17.3.0 - Server-Side Template Injection (SSTI)Network Scanner

Critical(9.1)

0.020.8No
Citrix NetScaler ADC & Gateway - Reflected XSSNetwork Scanner

Medium

0.050.89No
WordPress Automatic Plugin - Unauthenticated Options ChangeNetwork Scanner

Critical(9.8)

0.580.99No
motionEye <= 0.43.1b4 OS Command Injection VulnerabilityNetwork Scanner

Medium(7.2)

0.230.96No
Pi-hole Web Interface < 6.3 Multiple VulnerabilitiesNetwork Scanner

High(8.2)

0.010.2No
ELOG <= 3.1.5 Multiple VulnerabilitiesNetwork Scanner

High(8.8)

0.010.14No
QNAP QTS Multiple Vulnerabilities (QSA-25-45)Network Scanner
N/A
N/A
N/A
No
WordPress Is-human Plugin <= v1.4.2 passthru Function RCE Vulnerability - Active CheckNetwork Scanner
N/A
0.010.28No
Cybersecurity Infrastructure Security Agency (CISA)Triofox - Improper Access ControlNetwork Scanner

Critical(9.8)

0.530.98No
ELOG <= 3.1.4 Multiple VulnerabilitiesNetwork Scanner

Medium(6.1)

0.010.53No
MikroTik RouterOS 7.x Buffer Overflow VulnerabilityNetwork Scanner

High(8.8)

0.010.18No
XWiki – Stored Cross-Site Scripting (XSS)Network Scanner

Medium(5.4)

0.010.47No
Emlog 2.1.9 - SQL InjectionNetwork Scanner

High(7.2)

0.010.51No
QNAP QuTS hero Multiple Vulnerabilities (QSA-25-45)Network Scanner
N/A
N/A
N/A
No
Openfiler Multiple Vulnerabilities (Sep 2012) - Active CheckNetwork Scanner
N/A
0.70.99No
Nagios Log Server < 1.4.2 Multiple Vulnerabilities - Active CheckNetwork Scanner

Medium(5.4)

0.010.59No
GestioIP - Reflected Cross-Site ScriptingNetwork Scanner

Medium(4.8)

0.010.48No
ELOG < 3.1.4 DoS VulnerabilityNetwork Scanner

High(7.5)

0.020.83No
Stop User Enumeration WordPress plugin - Authentication BypassNetwork Scanner

Medium(5.3)

0.020.8No
CockroachDB Unauthenticated Console ExposureNetwork Scanner

High

N/A
N/A
No
Mongoose < 8.8.3 - Remote Code ExecutionNetwork Scanner

Critical(9.1)

0.490.98No
Basic TE.CL - HTTP Request SmugglingNetwork Scanner

Low

N/A
N/A
No