Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.063 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 163 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 14.921

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
KodExplorer - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Aruba Instant Access Point (IAP) - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Versa Concerto API Path Based - Authentication BypassNetwork Scanner

Critical

No
YouPHPTube Encoder - Arbitrary File WriteNetwork Scanner

Critical(9.8)

No
Versa Concerto Actuator Endpoint - Authentication BypassNetwork Scanner

Critical

No
Roxy-WI - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
YouPHPTube Encoder 2.3 - Command InjectionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)DrayTek Vigor - Command InjectionNetwork Scanner

Critical(9.8)

No
Roxy-WI < 6.1.1.0 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Ricoh Web Image Monitor - Reflected XSSNetwork Scanner

Medium(6.1)

No
Cybersecurity Infrastructure Security Agency (CISA)ThinkPHP 5.0.23 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Wazuh - Unsafe Deserialization Remote Code ExecutionNetwork Scanner

Critical(9.9)

No
SMB - Anonymous Write AccessNetwork Scanner

Critical(9.8)

Yes
Siemens SIMATIC HMI Miniweb - Default LoginNetwork Scanner

High

No
Loytec PLC - Default LoginNetwork Scanner

High

No
OSASI PLC - Default LoginNetwork Scanner

High

No
WAGO Web based Management - Default LoginNetwork Scanner

High

No
Cybersecurity Infrastructure Security Agency (CISA)Ivanti Endpoint Manager Mobile - Unauthenticated Remote Code ExecutionNetwork Scanner

Medium(5.3)

No
Network Technologies Inc ENVIROMUX - Default LoginNetwork Scanner

High

No
Relevanssi <= 4.24.4 (Free) - Unauthenticated SQL InjectionNetwork Scanner

High(7.5)

No
Slider & Popup Builder by Depicter <= 3.6.1 - Unauthenticated SQL InjectionNetwork Scanner

High(7.5)

No
WPS Hide Login <= 1.9.15.2 - Login Page DisclosureNetwork Scanner

Medium(5.3)

No
Pichome 2.1.0 - Arbitrary File ReadNetwork Scanner

Medium(5.3)

No
Bootstrap Multiselect <= 1.1.2 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Traccar Server Settings - DisclosureNetwork Scanner

Low

No