Vulnerability Search Dorks
Search for hosts affected by specific CVEs and known vulnerabilities.
Log4Shell (Log4j RCE)
highApache Log4j remote code execution. One of the most critical vulnerabilities in recent years.
EternalBlue (SMB)
highMS17-010 SMB vulnerability used by WannaCry and NotPetya ransomware.
ProxyShell (Exchange)
highMicrosoft Exchange ProxyShell chain allowing unauthenticated RCE.
Spring4Shell
highSpring Framework RCE affecting Java applications with specific configurations.
Fortinet SSL VPN
highFortinet FortiOS path traversal allowing credential file disclosure.
Pulse Secure VPN
highPulse Secure VPN arbitrary file read vulnerability.
Any Vulnerable Host
mediumAll hosts with at least one known CVE detected by Zondex scanners.
Critical Vulns Only
highHosts with more than 5 known vulnerabilities — high risk targets.