Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.973 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 190 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.973

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
Blinko < 1.8.4 - Path TraversalNetwork Scanner

High(7.5)

No
Weglot API Key - ExposedNetwork Scanner

Medium

No
FormLift for Infusionsoft Web Forms <= 7.5.17 - SQL InjectionNetwork Scanner

Critical(10)

No
Video Conferencing with Zoom API < 4.6.6 - Unauthenticated SDK Signature GenerationNetwork Scanner

High(7.5)

No
Mesop AI Sandbox <= 1.2.2 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Langflow < 1.9.0 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Blinko <= 1.8.3 - Path Traversal via /pluginsNetwork Scanner

Medium(5.3)

No
cPanel & WHM - Authentication Bypass via Session-File CRLF InjectionNetwork Scanner

Critical(9.8)

No
Breeze <= 2.4.4 - Arbitrary File UploadNetwork Scanner

Critical(9.8)

No
ProFTPD mod_sql - Preauth User BackdoorNetwork Scanner

Critical(9.8)

No
MaNGOSWebV4 < 4.0.8 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
RosarioSIS 6.7.2 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Blinko <= 1.8.3 - User Information LeakNetwork Scanner

Medium(5.3)

No
WordPress Gerencianet Oficial <= 3.1.3 - Unauthenticated Order Status DisclosureNetwork Scanner

Medium(5.3)

No
RestroPress 3.0.0-3.2.1 - Authentication BypassNetwork Scanner

Critical(9.8)

No
Export WP Page to Static HTML <= 4.3.4 - Cookie ExposureNetwork Scanner

Critical(9.8)

No
NocoBase - SQL InjectionNetwork Scanner

High(7.2)

No
WooCommerce Designer Pro <= 1.9.28 - Arbitrary File ReadNetwork Scanner

High(8.6)

No
NocoBase - SQL InjectionNetwork Scanner

High(7.5)

No
Ajax Load More < 7.6.1 - Unauthenticated Sensitive Information ExposureNetwork Scanner

Medium(5.3)

No
WordPress 3D FlipBook Plugin <= 1.16.17 - Sensitive Information ExposureNetwork Scanner

Medium(5.3)

No
Simply Static - Information DisclosureNetwork Scanner

Medium(7.5)

No
Avid NEXIS Agent - Arbitrary File ReadNetwork Scanner

High(7.5)

No
LiteLLM - Arbitrary File ReadNetwork Scanner

High(8.8)

No
Filestash - Installer ExposureNetwork Scanner

High

No