Resources

Vulnerability & Exploit Database

This is the list of vulnerabilities you can detect with Pentest-Tools.com and the exploits currently available in the platform.

We detect more than 15.784 vulnerabilities with multiple tools (Network Scanner, Website Scanner, Wordpress Scanner, and more) and we also have 170 exploit modules in Sniper to validate the risk level of critical CVEs.

Display

Displaying 1 - 25 results out of 807

Pentest-Tools.com Vulnerabilities
Name
Detectable with
Detection added
Severity
Exploitable
with Sniper
Cybersecurity Infrastructure Security Agency (CISA)Quest KACE System Management Appliance 8.0.318 - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Roundcube Webmail - Cross-Site ScriptingNetwork Scanner

Critical(9.3)

No
Cybersecurity Infrastructure Security Agency (CISA)DotNetNuke 9.2 - 9.2.2 - Weak Encryption & Cookie DeserializationNetwork Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)DotNetNuke 9.2 - 9.2.1 - Weak Encryption & Cookie DeserializationNetwork Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)Oracle WebLogic Server - Remote Code ExecutionNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Zimbra Collaboration Suite < 8.8.15 - Improper EncodingNetwork Scanner

Medium(6.1)

No
Cybersecurity Infrastructure Security Agency (CISA)IBM Data Risk Manager - Authentication Bypass via SAMLNetwork Scanner

Critical(9.8)

No
Cybersecurity Infrastructure Security Agency (CISA)Microsoft Exchange - Authentication BypassNetwork Scanner

High(7.3)

No
Cybersecurity Infrastructure Security Agency (CISA)JamF (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Ivanti MobileIron (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Rundeck - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)VMware Horizon - JNDI Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Cisco vManage (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Metabase - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)OpenNMS - JNDI Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)VMware VCenter - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Seeyon OA (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)VMware HCX - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Cisco Unified Communications - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Oracle WebLogic Server - Unauthorized AccessNetwork Scanner

High(7.5)

No
Cybersecurity Infrastructure Security Agency (CISA)VMware Operations Manager - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)VMware NSX - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Graylog (Log4j) - Remote Code ExecutionNetwork Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Citrix XenMobile Server - Remote Code Execution (Apache Log4j)Network Scanner

Critical(10)

No
Cybersecurity Infrastructure Security Agency (CISA)Fortinet Forticlient Endpoint Management Server - SQL InjectionNetwork Scanner

Critical(9.8)

No