Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.416 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 166 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 752

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
Cybersecurity Infrastructure Security Agency (CISA)Laravel < 5.6.30 RCE VulnerabilityNetwork Scanner

High(8.1)

No
Cybersecurity Infrastructure Security Agency (CISA)Microsoft SharePoint Server - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)QNAP QuTS hero Heap-Based Buffer Overflow Vulnerability (QSA-21-02, Baron Samedit)Network Scanner

High(7.8)

No
Cybersecurity Infrastructure Security Agency (CISA)QNAP QTS Heap-Based Buffer Overflow Vulnerability (QSA-21-02, Baron Samedit)Network Scanner

High(7.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Yii2 PHP Framework < 2.0.52 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Citrix NetScaler - Memory LeakNetwork Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)VMware ESXi SLP - Heap Overflow DoSNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Citrix NetScaler Memory Disclosure - CitrixBleed 2Network Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)Wing FTP Server <= 7.4.3 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link DIR-859 Multiple Vulnerabilities (2019 - 2024)Network Scanner
N/A
No
Cybersecurity Infrastructure Security Agency (CISA)Ivanti Endpoint Manager Mobile - Remote Code ExecutionNetwork Scanner

High(7.5)

Yes
Cybersecurity Infrastructure Security Agency (CISA)Microsoft SMBv3 - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)QNAP Photo Station < 6.0.3 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Microsoft SharePoint - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Microsoft .NET Framework - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Dahua IPC/VTH/VTO - Authentication BypassNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link Network Attached Storage - Backdoor AccountNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)NUUO NVRmini - Remote Command ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Tenda AC15 AC1900 version 15.03.05.19 - Command InjectionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link DIR820LA1_FW105B03 'ping_addr' - OS Command InjectionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Roundcube Webmail - Command InjectionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link DIR-859 < 1.07b03_beta RCE Vulnerability (SAP10146)Network Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link DIR-300 Multiple Vulnerabilities (2011 - 2024)Network Scanner
N/A
No
Cybersecurity Infrastructure Security Agency (CISA)Nazgul Nostromo nhttpd < 1.9.7 Multiple Directory Traversal VulnerabilitiesNetwork Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)D-Link DIR-605 - Information DisclosureNetwork Scanner

High(7.5)

No