Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.134 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 164 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 15.134

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
SolarWinds Security Event Manager - Unauthenticated RCENetwork Scanner

High(8.8)

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link DIR-605 - Information DisclosureNetwork Scanner

High(7.5)

No
TotoLink Router setMacFilterRules - Command InjectionNetwork Scanner

Critical(9.8)

No
Motors <= 5.6.67 - Unauthenticated Privilege Escalation via Password Update/Account TakeoverNetwork Scanner

Critical(9.8)

No
Apache Spark UI - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Apache Spark Application UI - ExposedNetwork Scanner

Medium

No
Roundcube Webmail - Remote Code ExecutionNetwork Scanner

Critical(9.9)

No
ProfilePress < 3.1.11 - Cross-Site ScriptingNetwork Scanner

Medium(5.4)

No
Netis MW5360 V1.0.1.3031 - Command InjectionNetwork Scanner

Critical(9.8)

No
Intelbras NPLUG 1.0.0.14 - Authentication BypassNetwork Scanner

High(8.1)

No
TP-Link TL-WR840N - Command InjectionNetwork Scanner

Critical(9.8)

No
NextcloudPi Dashboard - ExposedNetwork Scanner

High

No
ImpressCMS < 1.4.3 - SQL InjectionNetwork Scanner

Critical(9.8)

No
Intelbras WRN 150 - Authentication BypassNetwork Scanner

Critical(9.8)

No
CrafterCMS Engine - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Cisco IOS XE WLC - Arbitrary File UploadNetwork Scanner

Critical(10)

No
FLIR AX8 1.46.16 - Remote Command InjectionNetwork Scanner

Critical(9.8)

No
PublishPress Capabilities < 2.3.1 - Missing AuthorizationNetwork Scanner

Critical(9.8)

No
Craft CMS - Remote Code ExecutionNetwork Scanner

Critical(9.8)

Yes
TotoLink Router setPortForwardRules - Command InjectionNetwork Scanner

Critical(9.8)

No
Intelbras TIP200/TIP200LITE/TIP300 - Cross-Site ScriptingNetwork Scanner

Medium(5.4)

No
WP Hotel Booking < 1.10.4 - PHP Object InjectionNetwork Scanner

Critical(9.8)

No
tshirtecommerce PrestaShop Module - SQL InjectionNetwork Scanner

Critical(9.8)

No
Palo Alto Networks Expedition - OS Command InjectionNetwork Scanner

Critical(9.8)

No
WordPress Plugin Adning Advertising < 1.5.6 - Arbitrary File UploadNetwork Scanner

Medium(6.5)

No