Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 16.123 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 177 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 16.123

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
Advanced Custom Fields Extended < 0.9.2 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
WordPress Coming Soon Page - Full Path DisclosureNetwork Scanner
N/A
No
WordPress Astra - Full Path DisclosureNetwork Scanner
N/A
No
Ambassador API Gateway Diagnostics - ExposureNetwork Scanner
N/A
No
WordPress Shortcodes Ultimate <= 5.0.0 - Authenticated Remote Code ExecutionNetwork Scanner

High(8.8)

No
Limit Login Attempts - Stored Cross-Site ScriptingNetwork Scanner

Medium(4.8)

No
WordPress Solid Security < 9.0.1 - Unauthenticated Login Page DisclosureNetwork Scanner
N/A
No
WordPress Plugin Max Mega Menu (megamenu) - Full Path DisclosureNetwork Scanner
N/A
No
WordPress WP-PageNavi - Full Path DisclosureNetwork Scanner
N/A
No
WordPress All in One SEO Pack - Full Path DisclosureNetwork Scanner
N/A
No
WordPress ManageWP Worker - Full Path DisclosureNetwork Scanner
N/A
No
Advanced Custom Fields (ACF) - Full Path DisclosureNetwork Scanner
N/A
No
WordPress Plugin Google Tag Manager - Full Path DisclosureNetwork Scanner
N/A
No
WordPress Plugin Newsletter - Full Path DisclosureNetwork Scanner
N/A
No
WordPress Plugin reCaptcha by BestWebSoft (google-captcha) - Full Path DisclosureNetwork Scanner
N/A
No
Limit Login Attempts WordPress - Stored Cross-site ScriptingNetwork Scanner

Medium(6.1)

No
React Server Components - Denial of ServiceNetwork Scanner

High(7.5)

No
WordPress Plugin SG Optimizer - Full Path DisclosureNetwork Scanner
N/A
No
WordPress Plugin WooCommerce Admin (woocommerce-admin) Full Path DisclosureNetwork Scanner
N/A
No
WordPress Easy Google Fonts - Error Log DisclosureNetwork Scanner
N/A
No
.buildpath - File DisclosureNetwork Scanner
N/A
No
WordPress Importer - Error Log DisclosureNetwork Scanner
N/A
No
XWiki - Information DisclosureNetwork Scanner

High(7.5)

No
Monsta FTP <= 2.11.2 - Unauthenticated Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Nexus Repository Manager - Anonymous Access EnabledNetwork Scanner
N/A
No