Product CVE Scanners (Network)
Network appliances and server software often carry unpatched CVEs for months. These scanners target specific product versions, from Cisco and Fortinet to OpenSSH and Apache, to surface exploitable vulnerabilities in your infrastructure.
Important Product CVEs (Network) Scanners
CVE-2020-0796 Scanner (Integer Overflow Based)
Detects 'Remote Code Execution (RCE)' vulnerability in Microsoft Server Message Block (SMBv3) protocol affects v. 3.1.1.
Double Pulsar SMB Backdoor Scanner
You can scan SMB system by using this tool.
Proftpd Backdoor Checker
Online Proftpd Backdoor Checker
Vsftpd Backdoor Checker
If you are using VSFTPD for FTP server, it is better to check your system for a backdoor vulnerability that emerged in the past years.
Unauthenticated MongoDB Disclosure Scanner
Misconfigured MongoDB databases can cause many private data to be leaked by attackers.
FTP Service Default Login Scanner
This scanner detects FTP Service login Panel and tries default credentials.
Spring Boot Remote Code Execution (RCE) Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Spring Boot via Apache Log4j.
Memcached Stats Disclosure Vulnerability Scanner
Misconfigured Memcache applications can cause many private data to be leaked by attackers.
FTP Default Login Scanner
This scanner detects the use of FTP in digital assets.
Huawei Router Unauthorized Access Scanner
Detects 'Authentication Bypass' vulnerability in Huawei Router.
ProConOS Detection Scanner
This scanner detects the use of ProConOS in digital assets.
Qi'anxin Netkang Next Generation Firewall Remote Code Execution Scanner
Detects 'Remote Code Execution' vulnerability in Qi'anxin Netkang Next Generation Firewall.
Pega Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Pega Platform.
VMware Site Recovery Manager Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in VMware Site Recovery Manager via the Apache Log4j framework.
Papercut Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Papercut.
SAPRouter - Routing Information Leakage Vulnerability Scanner
Online SAPRouter - Routing Information Leakage Vulnerability Scanner
Manage Engine Desktop Central Remote Code Execution Scanner
Targets the Log4j JNDI injection endpoint in Manage Engine Desktop Central, allowing unauthenticated attackers to execute arbitrary code remotely.
Microsoft Windows REGSVC Null Pointer Scanner
Checks if a Microsoft Windows 2000 system is vulnerable to a crash in regsvc caused by a null pointer dereference.
Various Online Devices (Network Camera) Detection
A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.
Allen Bradley PLC5 Systems Detection Scanner
This scanner targets port 2222 to send a CSPV4 identity request, identifying PLC5 systems that respond with a valid session ID, enabling attackers to map industrial assets.
ClockWatch Enterprise Remote Code Execution Scanner
Detects 'Remote Code Execution' vulnerability in ClockWatch Enterprise.
DNP3 Technology Detection Scanner
This scanner detects the use of DNP3 technology in digital assets. It identifies devices that respond to queries using the DNP3 protocol.
Cisco Catalyst SD-WAN Controller - vHub Authentication Bypass
Cisco Catalyst SD-WAN Controller and Manager contain an authentication bypass caused by improper peering authentication mechanism, letting unauthenticated remote attackers obtain administrative privileges, exploit requires sending crafted requests.
Mitsubishi Q PLC Detection Scanner
This scanner detects the use of Mitsubishi Q PLC in digital assets. It identifies the presence and basic information of the Mitsubishi Q Series PLC for network discovery purposes.
Apache Camel camel-coap - Remote Code Execution
Apache Camel camel-coap component 4.14.0-4.14.5, 4.18.0 before 4.18.1, and 4.19.0 contains a remote code execution caused by improper header filtering of CoAP URI query parameters, letting unauthenticated attackers inject headers and execute arbitrary OS commands via header-sensitive producers, exploit requires sending a single CoAP UDP packet.
OMRON FINS Technology Detection Scanner
This scanner detects the use of OMRON FINS Technology in digital assets.
CVE-2009-3103 Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in SMBv2 affects v. Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold and SP2, and Windows 7.
CVE-2020-0796 Scanner
CVE-2020-0796 Scanner - Remote Code Execution vulnerability in Microsoft Windows SMBv3
PCWorx Protocol Technology Detection Scanner
This scanner detects the use of PCWorx Protocol by Phoenix Contact in digital assets.
IEC 60870-5-104 Detection Scanner
This scanner detects the use of IEC 60870-5-104 vulnerability in digital assets. It helps identify the presence of the IEC 60870-5-104 ICS protocol.
CVE-2024-1212 Scanner
CVE-2024-1212 Scanner - Command Injection vulnerability in Progress Kemp LoadMaster
Microsoft SMB Server Remote Code Execution Vulnerability (MS10-054) Scanner
Tests whether target machines are vulnerable to ms10-061 Printer Spooler impersonation vulnerability.
Office Anywhere TongDa Path Traversal Scanner
Detects 'Path Traversal' vulnerability in Office Anywhere TongDa. This scanner identifies potential security weaknesses and helps ensure systems are better protected.
Crestron ICS Detection Scanner
This scanner detects the use of Crestron ICS Communication Service in digital assets. It helps identify potential exposure of industrial management consoles, communication services and other critical network components.
Apache Druid - Remote Code Execution (Apache Log4j)
Apache Druid is vulnerable to RCE due to Log4j.
CVE-2025-49844 Scanner
CVE-2025-49844 Scanner - Remote Code Execution vulnerability in Redis
Guardian AST Automatic Tank Gauge Detection Scanner
This scanner detects the use of Guardian AST Automatic Tank Gauge in digital assets.
Hashicorp Consul Services API Remote Code Execution Scanner
Detects 'Remote Code Execution' vulnerability in Hashicorp Consul Services API. This scanner identifies critical weaknesses that could lead to remote command execution, enabling more secure configurations.
Siemens WINCC Server Detection Scanner
This scanner detects the use of Siemens WINCC Server in digital assets. It provides insights into the presence of the SCADA system for enhanced network visibility.
Tridium Niagara Fox Detection Scanner
This scanner detects the use of Tridium Niagara Fox protocol in digital assets. It provides insights into the system’s configuration and versions, aiding security assessments.
Codesys Technology Detection Scanner
This scanner probes for exposed Codesys runtime services on PLCs and controllers, revealing unauthorized access paths for attackers.
CVE-2025-31324 Scanner
Targets the deserialization endpoint in SAP NetWeaver, allowing attackers to execute arbitrary code remotely without authentication.
KNX Gateway Detection Scanner
This scanner detects the use of KNX Gateway in digital assets.
EtherNet/IP Devices Detection Scanner
This scanner detects the use of EtherNet/IP Devices on digital assets. It identifies device details such as vendor, product name, serial number, and IP address to facilitate asset discovery and inventory.
Moxa NPort Series Serial Device Servers Detection Scanner
This scanner detects the use of Moxa NPort Series Serial Device Servers and their configuration settings in digital assets.
Siemens S7 PLC Detection Scanner
This scanner detects the presence of Siemens S7 PLC devices in digital assets. It collects device-specific information like hardware, version, and system name to aid in inventory and security management.
MMS Protocol Technology Detection Scanner
This scanner detects the use of MMS Protocol (IEC 61850-8-1) technology in digital assets.
Modbus SCADA Devices Detection Scanner
This scanner detects the use of Modbus SCADA Devices in digital assets. It identifies device information, including vendor and firmware details, to help understand the deployment and configuration.
BACNet Devices Technology Detection Scanner
This scanner detects the use of BACNet Devices and enumerates device information using standard requests. It helps identify and gather essential information for device management and security.
Apache Tika - XXE Injection
Apache Tika versions 1.13 through 3.2.1 are vulnerable to XXE via malicious XFA in PDFs, allowing file read and SSRF attacks.
CVE-2011-2523 Scanner
Detects 'Backdoor' vulnerability in VSFTPD affects v. 2.3.4.
CVE-2017-14942 Scanner
CVE-2017-14942 Scanner - Authentication Bypass vulnerability in Intelbras WRN 150
EyesOfNetwork - Hardcoded API Key
An issue was discovered in EyesOfNetwork 5.3. The installation uses the same API key (hardcoded as EONAPI_KEY in include/api_functions.php for API version 2.4.2) by default for all installations, hence allowing an attacker to calculate/guess the admin access token.
CVE-2023-43208 Scanner
CVE-2023-43208 Scanner - Remote Code Execution vulnerability in NextGen Healthcare Mirth Connect
Apache Tika - XML External Entity Injection
Apache Tika tika-core (1.13-3.2.1), tika-pdf-module (2.0.0-3.2.1), and tika-parsers (1.13-1.28.5) contain an XML External Entity injection caused by processing crafted XFA files inside PDFs, letting attackers perform XXE attacks remotely, exploit requires crafted PDF input.
CVE-2021-33045 Scanner
CVE-2021-33045 Scanner - Authentication Bypass vulnerability in Dahua IPC/VTH/VTO
CVE-2023-34039 Scanner
Detects 'Remote Code Execution' vulnerability in VMWare Aria Operations affects v. 6.0 to 6.10.
CVE-2024-38077 Scanner
CVE-2024-38077 scanner - Remote Code Execution vulnerability in Windows Server Remote Desktop Licensing Service
CVE-2024-3080 Scanner
CVE-2024-3080 Scanner - Missing Authorization vulnerability in ASUS DSL-AC88U
Apache Tomcat Tribes EncryptInterceptor Bypass - Remote Code Execution
Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor. This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116.
Run all Product CVEs (Network) checks at once.
S4E covers 192+ scanners in this category with continuous monitoring and full remediation guidance.
Start Free Scan →