Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.973 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 190 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.831

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
cPanel & WHM - Authentication Bypass via Session-File CRLF InjectionNetwork Scanner

Critical(9.8)

No
Weglot API Key - ExposedNetwork Scanner

Medium

No
Blinko < 1.8.4 - Path TraversalNetwork Scanner

High(7.5)

No
Blinko <= 1.8.3 - Path Traversal via /pluginsNetwork Scanner

Medium(5.3)

No
Mesop AI Sandbox <= 1.2.2 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Langflow < 1.9.0 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
FormLift for Infusionsoft Web Forms <= 7.5.17 - SQL InjectionNetwork Scanner

Critical(10)

No
MaNGOSWebV4 < 4.0.8 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Breeze <= 2.4.4 - Arbitrary File UploadNetwork Scanner

Critical(9.8)

No
Video Conferencing with Zoom API < 4.6.6 - Unauthenticated SDK Signature GenerationNetwork Scanner

High(7.5)

No
ProFTPD mod_sql - Preauth User BackdoorNetwork Scanner

Critical(9.8)

No
RosarioSIS 6.7.2 - Cross-Site ScriptingNetwork Scanner

Medium(6.1)

No
Blinko <= 1.8.3 - User Information LeakNetwork Scanner

Medium(5.3)

No
WordPress Gerencianet Oficial <= 3.1.3 - Unauthenticated Order Status DisclosureNetwork Scanner

Medium(5.3)

No
RestroPress 3.0.0-3.2.1 - Authentication BypassNetwork Scanner

Critical(9.8)

No
WordPress 3D FlipBook Plugin <= 1.16.17 - Sensitive Information ExposureNetwork Scanner

Medium(5.3)

No
NocoBase - SQL InjectionNetwork Scanner

High(7.5)

No
WooCommerce Designer Pro <= 1.9.28 - Arbitrary File ReadNetwork Scanner

High(8.6)

No
Ajax Load More < 7.6.1 - Unauthenticated Sensitive Information ExposureNetwork Scanner

Medium(5.3)

No
NocoBase - SQL InjectionNetwork Scanner

High(7.2)

No
Export WP Page to Static HTML <= 4.3.4 - Cookie ExposureNetwork Scanner

Critical(9.8)

No
Simply Static - Information DisclosureNetwork Scanner

Medium(7.5)

No
Avid NEXIS Agent - Arbitrary File ReadNetwork Scanner

High(7.5)

No
LiteLLM - Arbitrary File ReadNetwork Scanner

High(8.8)

No
Filestash - Installer ExposureNetwork Scanner

High

No