Product CVE Scanners (Web)
When a CVE is published for a popular web product, attackers scan the internet within hours. These product-specific scanners let you check whether your WordPress plugins, CMS, or web framework is vulnerable before exploitation happens.
Important Product CVEs (Web) Scanners
WordPress Plugin Vulnerabilities Scanner
Detects vulnerabilities in WordPress plugins that can expose websites to serious security risks. Identifies common plugin flaws such as Remote Code Execution (RCE), SQL injection, and insecure file handling.
Apache OFBiz Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Apache OFBiz affects v. prior to 8.12.03. This scanner helps in identifying potential RCE flaws associated with the Apache Log4j library in Apache OFBiz.
WordPress WooCommerce Google Shopping Cross-Site Scripting Scanner
Targets the search GET parameter in WooCommerce Google Shopping plugin versions < 1.2.4, allowing attackers to inject malicious scripts.
WordPress Zero Spam SQL Injection Scanner
Detects 'SQL Injection' vulnerability in WordPress Zero Spam affecting versions <= 2.1.1.
WordPress WP Statistics Plugin SQL Injection Scanner
Detects 'SQL Injection' vulnerability in WordPress WP Statistics Plugin affects v. 13.0.7.
WordPress Hide Security Enhancer Local File Inclusion Scanner
Detects 'Local File Inclusion (LFI)' vulnerability in WordPress Hide Security Enhancer affects v. 1.3.9.2 or less.
CNVD-2021-09650 Scanner
Detects 'Remote Code Execution' vulnerability in Ruijie EWEB Network Management System.
ECTouch SQL Injection Scanner
Targets user input parameters in ECTouch 2's mobile commerce modules, allowing attackers to execute arbitrary SQL queries and extract sensitive database contents.
GoAnywhere Managed File Transfer Remote Code Execution (RCE) Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in GoAnywhere Managed File Transfer.
CNVD-2021-26422 Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in eYouMail.
Cisco CloudCenter Suite Log4j Remote Code Execution Vulnerability Scanner
Detects 'Remote Code Execution (Apache Log4j)' vulnerability in Cisco CloudCenter Suite
CNVD-2021-30167 Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in UFIDA NC.
Duomi CMS SQL Injection Scanner
Detects 'SQL Injection (SQLi)' vulnerability in Duomi CMS.
Fastjson 1.2.41 Remote Code Execution Vulnerability Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Fastjson version 1.2.41
CNVD-2020-46552 Scanner
Detects 'Remote Code Execution' vulnerability in Sangfor EDR.
YonYou KSOA SQL Injection Scanner
Detects 'SQL Injection' vulnerability in YonYou KSOA.
Sonicwall Network Security Manager Remote Code Execution Scanner
Targets the Apache Log4j JNDI endpoint in Sonicwall NSM, allowing attackers to execute arbitrary commands remotely.
JamF (Log4j) - Remote Code Execution
JamF is susceptible to remote code execution via the Apache log4j library. Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker-controlled LDAP and other JNDI-related endpoints. An attacker who can control log messages or log message parameters can execute arbitrary code loaded from LDAP servers when message lookup substitution is enabled. From log4j 2.15.0, this behavior has been disabled by default. From version 2.16.0 (along with 2.12.2, 2.12.3, and 2.3.1), this functionality has been completely removed. Note that this vulnerability is specific to log4j-core and does not affect log4net, log4cxx, or other Apache Logging Services projects.
Mirai Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Mirai. The vulnerability allows potential threat actors to execute arbitrary commands via unsanitized parameters in the CGI login script.
Citrix XenApp Remote Code Execution Scanner
Detects 'Remote Code Execution' vulnerability in Citrix XenApp.
CVE-2020-6287 Scanner
CVE-2020-6287 scanner - Improper Access Control vulnerability in SAP NetWeaver Application Server
PowerCreator CMS Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in PowerCreator CMS.
Windmill/Nextcloud Flow < 1.603.3 - Unauthenticated Path Traversal
Windmill
Maccmsv10 Backdoor Remote Code Execution Vulnerability Scanner
Detects 'Backdoor Remote Code Execution' vulnerability in Maccmsv10
Ruijie EG Remote Code Execution Scanner
Detects 'Remote Code Execution' vulnerability in Ruijie EG.
AEM - Adobe Experience Manager CRX Bypass Vulnerability Scanner
Online AEM CRX Bypass Vulnerability Scanner
SimpleHelp <=5.5.15 - OIDC JWT Authentication Bypass
SimpleHelp
WordPress Product Slider Pro for WooCommerce < 3.5.4 - Supply Chain Backdoor RCE
Improper Validation of Specified Quantity in Input vulnerability in ShapedPlugin, LLC Product Slider Pro for WooCommerce allows Malicious Software Implanted. This issue affects Product Slider Pro for WooCommerce: from n/a before 3.5.4.
NocoBase - VM Sandbox Escape to Remote Code Execution
NocoBase Workflow Script Node executes user-supplied JavaScript inside a Node.js vm sandbox with a custom require allowlist controlled by WORKFLOW_SCRIPT_MODULES env var. The console object passed into the sandbox context exposes host-realm WritableWorkerStdio stream objects via console._stdout and console._stderr. An authenticated attacker can traverse the prototype chain (console._stdout.constructor.constructor to Function to process to child_process) to escape the sandbox and achieve Remote Code Execution as root.
VMware HCX - Remote Code Execution (Apache Log4j)
VMware HCX is susceptible to remote code execution via the Apache Log4j framework. An attacker can execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system without entering necessary credentials.
Okta Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Okta.
OpenShift Remote Code Execution (RCE) Scanner
Detects 'Remote Code Execution' vulnerability in OpenShift.
CVE-2025-32432 Scanner
CVE-2025-32432 Scanner - Remote Code Execution (RCE) vulnerability in CraftCMS
Kaseya VSA < 9.5.7 - Credential Disclosure via Windows Agent
Kaseya VSA before 9.5.7 allows credential disclosure, as exploited in the wild in July 2021. By default Kaseya VSA on premise offers a download page where the clients for the installation can be downloaded. The default URL for this page is https://x.x.x.x/dl.asp When an attacker download a client for Windows and installs it, the file KaseyaD.ini is generated (C:\Program Files (x86)\Kaseya\XXXXXXXXXX\KaseyaD.ini) which contains an Agent_Guid and AgentPassword This Agent_Guid and AgentPassword can be used to log in on dl.asp (https://x.x.x.x/dl.asp?un=840997037507813&pw=113cc622839a4077a84837485ced6b93e440bf66d44057713cb2f95e503a06d9) This request authenticates the client and returns a sessionId cookie that can be used in subsequent attacks to bypass authentication. Security issues discovered --- * Unauthenticated download page leaks credentials * Credentials of agent software can be used to obtain a sessionId (cookie) that can be used for services not intended for use by agents * dl.asp accepts credentials via a GET request * Access to KaseyaD.ini gives an attacker access to sufficient information to penetrate the Kaseya installation and its clients. Impact --- Via the page /dl.asp enough information can be obtained to give an attacker a sessionId that can be used to execute further (semi-authenticated) attacks against the system.
ElementsKit Lite <3.7.9 - Unauthenticated Mailchimp Proxy
The ElementsKit Elementor Addons Lite (elementskit-lite) plugin for WordPress before 3.7.9 registers the REST route /wp-json/elementskit/v1/widget/mailchimp/subscribe with no authentication or capability check (CWE-306). The handler accepts client-supplied Mailchimp API credentials and a `list` parameter and issues upstream Mailchimp API requests, letting an unauthenticated attacker use the site as an open proxy to Mailchimp.
Ivanti MobileIron (Log4j) - Remote Code Execution
Ivanti MobileIron is susceptible to remote code execution via the Apache Log4j2 library. Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker-controlled LDAP and other JNDI-related endpoints. An attacker who can control log messages or log message parameters can execute arbitrary code loaded from LDAP servers when message lookup substitution is enabled.
CVE-2014-8877 Scanner
Detects 'Code Injection' vulnerability in CreativeMinds CM Downloads Manager plugin for Wordpress affects v. before 2.0.4.
CVE-2023-20198 Scanner
CVE-2023-20198 scanner - Authentication Bypass vulnerability in Cisco IOS XE
CVE-2024-32651 Scanner
CVE-2024-32651 scanner - Server Side Template Injection (SSTI) vulnerability in Change Detection
FineCMS SQL Injection Scanner
Detects 'SQL Injection' vulnerability in FineCMS affects v. 5.0.10.
OpenNMS - JNDI Remote Code Execution (Apache Log4j)
OpenNMS JNDI is susceptible to remote code execution via Apache Log4j 2.14.1 and before. An attacker who can control log messages or log message parameters can execute arbitrary code loaded from LDAP servers when message lookup substitution is enabled.
Cisco WebEx Log4j Remote Code Execution Vulnerability Scanner
Cisco WebEx Log4j RCE Vulnerability Detection
WS_FTP Server - Insecure Deserialization
In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a pre-authenticated attacker could leverage a .NET deserialization vulnerability in the Ad Hoc Transfer module to execute remote commands on the underlying WS_FTP Server operating system.
Ruijie EG Easy Gateway Remote Code Execution Scanner
Detects 'Remote Code Execution (RCE)' vulnerability in Ruijie EG Easy Gateway.
CVE-2019-11510 Scanner
CVE-2019-11510 scanner - Arbitrary File Read vulnerability in Pulse Secure Pulse Connect Secure (PCS)
LaRecipe < 2.8.1 Remote Code Execution via SSTI
LaRecipe is an application that allows users to create documentation with Markdown inside a Laravel app. Versions prior to 2.8.1 are vulnerable to Server-Side Template Injection (SSTI), which could potentially lead to Remote Code Execution (RCE) in vulnerable configurations.
PbootCMS Database File Exposure SQL Injection Scanner
Detects 'SQL Injection' vulnerability in PbootCMS affects v. 2.0.7.
Online Prestashop Blocktestimonial Modules Unrestricted File Upload vulnerability scanner
This scanner detects Unrestricted File Upload vulnerability in your Prestashop Blocktestimonial Modules assets.
Nacos 1.x Authentication Bypass Vulnerability Scanner
Detect a critical authentication bypass vulnerability in Nacos 1.x, which could allow unauthorized access and manipulation of application data, including adding new users without authentication.
CVE-2022-25226 Scanner
CVE-2022-25226 Scanner - Authentication Bypass vulnerability in ThinVNC
Cisco vManage (Log4j) - Remote Code Execution
Cisco vManage is susceptible to remote code execution via the Apache Log4j framework. An attacker can execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system without entering necessary credentials. More information is available in the cisco-sa-apache-log4j-qRuKNEbd advisory.
CVE-2021-22205 Scanner
CVE-2021-22205 scanner - Remote Code Execution (RCE) vulnerability in GitLab
Cisco IOS XE Implant Detection Vulnerability Scanner
Detects 'Backdoor' vulnerability in Cisco IOS XE.
CVE-2019-7609 Scanner
CVE-2019-7609 scanner - Code Injection vulnerability in Kibana
9Router <= 0.4.36 - Unauthenticated RCE
9Router
Run all Product CVEs (Web) checks at once.
S4E covers 5,518+ scanners in this category with continuous monitoring and full remediation guidance.
Start Free Scan →