HomePentest-Tools.com Logo

Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities that can be detected with Pentest-Tools.com and the exploits that are currently available in the platform.

We detect more than 11.151 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 131 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 11.151

Pentest-Tools.com Vulnerabilities
Name
CVE
Detectable
with
Detection added
Severity
CVSSv3
score
Exploitable
with Sniper
NextGen Healthcare Mirth Connect - Remote Code ExecutionNetwork Scanner

High

9.8No
Academy LMS 6.0 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No
EventON (Free < 2.2.8, Premium < 4.5.5) - Information DisclosureNetwork Scanner

Medium

5.3No
WordPress Automatic Plugin <= 3.92.0 - SQL InjectionNetwork Scanner

High

9.9No
SuperWebMailer 9.31.0.01799 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No
CData API Server < 23.4.8844 - Path TraversalNetwork Scanner

High

9.8No
Netmaker - Hardcoded DNS Secret KeyNetwork Scanner

High

7.5No
Sidekiq < 7.0.8 - Cross-Site ScriptingNetwork Scanner

High

8.3No
Gradio - Server Side Request ForgeryNetwork Scanner

Medium

6.5No
Modoboa < 2.1.0 - Improper AuthorizationNetwork Scanner

High

9.1No
RaidenMAILD Mail Server v.4.9.4 - Path TraversalNetwork Scanner

High

---No
Flowise 1.6.5 - Authentication BypassNetwork Scanner

High

---No
Academy LMS 6.2 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No
OpenEMR < 7.0.1 - Cross-Site ScriptingNetwork Scanner

Medium

6.1No
OpenEMR < 7.0.1 - Cross-site ScriptingNetwork Scanner

Medium

6.1No
Cassia Gateway Firmware - Remote Code ExecutionNetwork Scanner

High

9.8No
Progress Kemp Flowmon - Command InjectionNetwork Scanner

High

10No
Cybersecurity Infrastructure Security Agency (CISA)GlobalProtect - OS Command InjectionNetwork Scanner

High

10No
AudioCodes Device Manager Express - SQL InjectionNetwork Scanner

High

9.8No
LoadMaster - Remote Code ExecutionNetwork Scanner

High

10Yes
OpenSSH Terrapin Attack - DetectionNetwork Scanner

Medium

5.9No
GoAnywhere MFT - Authentication BypassNetwork Scanner

High

9.8Yes
ReCrystallize Server - Authentication BypassNetwork Scanner

High

---No
Popup by Supsystic < 1.10.9 - Subscriber Email Addresses DisclosureNetwork Scanner

Medium

5.3No
Travelpayouts <= 1.1.16 - Open RedirectNetwork Scanner

Medium

---No