Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/
Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Oracle JRE CVE-2013-2420 Vulnerability (CVE-2013-2420)
CVE-2013-2420
-
Critical
PHP Improper Input Validation Vulnerability (CVE-2016-4071)
CVE-2016-4071
CWE-20
Critical
Python Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2008-1887)
CVE-2008-1887
CWE-120
Critical
Oracle Application Server CVE-2008-1824 Vulnerability (CVE-2008-1824)
CVE-2008-1824
-
Critical
Oracle Database Server CVE-2008-1821 Vulnerability (CVE-2008-1821)
CVE-2008-1821
-
Critical
Oracle Database Server CVE-2008-1818 Vulnerability (CVE-2008-1818)
CVE-2008-1818
-
Critical
Oracle Database Server CVE-2008-1817 Vulnerability (CVE-2008-1817)
CVE-2008-1817
-
Critical
Oracle Application Server CVE-2008-1814 Vulnerability (CVE-2008-1814)
CVE-2008-1814
-
Critical
Oracle Database Server CVE-2008-1814 Vulnerability (CVE-2008-1814)
CVE-2008-1814
-
Critical
Oracle Application Server CVE-2008-1812 Vulnerability (CVE-2008-1812)
CVE-2008-1812
-
Critical
Magento Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2016-4010)
CVE-2016-4010
CWE-138
Critical
phpMyFAQ Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-5227)
CVE-2023-5227
CWE-434
Critical
Internet Information Services Integer Overflow or Wraparound Vulnerability (CVE-2008-1446)
CVE-2008-1446
CWE-190
Critical
SharePoint Improper Input Validation Vulnerability (CVE-2020-1025)
CVE-2020-1025
CWE-20
Critical
PHP Improper Input Validation Vulnerability (CVE-2016-4072)
CVE-2016-4072
CWE-20
Critical
e107 Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2008-1989)
CVE-2008-1989
CWE-94
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4073)
CVE-2016-4073
CWE-119
Critical
Moodle Other Vulnerability (CVE-2023-5550)
CVE-2023-5550
-
Critical
PHP Numeric Errors Vulnerability (CVE-2016-4344)
CVE-2016-4344
-
Critical
PHP Numeric Errors Vulnerability (CVE-2016-4345)
CVE-2016-4345
-
Critical
PHP Numeric Errors Vulnerability (CVE-2016-4346)
CVE-2016-4346
-
Critical
PHP Use After Free Vulnerability (CVE-2016-4473)
CVE-2016-4473
CWE-416
Critical
PHP Improper Input Validation Vulnerability (CVE-2016-4537)
CVE-2016-4537
CWE-20
Critical
PHP Improper Input Validation Vulnerability (CVE-2016-4538)
CVE-2016-4538
CWE-20
Critical
phpMyFAQ Insufficient Session Expiration Vulnerability (CVE-2023-5865)
CVE-2023-5865
CWE-613
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4539)
CVE-2016-4539
CWE-119
Critical
PHP Other Vulnerability (CVE-2016-4540)
CVE-2016-4540
-
Critical
PHP Other Vulnerability (CVE-2016-4541)
CVE-2016-4541
-
Critical
PHP Incorrect Calculation of Buffer Size Vulnerability (CVE-2008-0599)
CVE-2008-0599
CWE-131
Critical
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2016-3690)
CVE-2016-3690
CWE-502
Critical
GlassFish CVE-2016-3607 Vulnerability (CVE-2016-3607)
CVE-2016-3607
-
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4543)
CVE-2016-4543
CWE-119
Critical
PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-3065)
CVE-2016-3065
CWE-264
Critical
Ruby Other Vulnerability (CVE-2016-2337)
CVE-2016-2337
-
Critical
Ruby Out-of-bounds Write Vulnerability (CVE-2016-2338)
CVE-2016-2338
CWE-787
Critical
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-2339)
CVE-2016-2339
CWE-119
Critical
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-2355)
CVE-2016-2355
CWE-138
Critical
SharePoint Resource Management Errors Vulnerability (CVE-2008-3006)
CVE-2008-3006
-
Critical
WeBid Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-47397)
CVE-2023-47397
CWE-94
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-2554)
CVE-2016-2554
CWE-119
Critical
ATutor Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-2555)
CVE-2016-2555
CWE-138
Critical
OpenSSL Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-2842)
CVE-2016-2842
CWE-119
Critical
IBM WebSEAL Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2016-3028)
CVE-2016-3028
CWE-138
Critical
Ruby Integer Overflow or Wraparound Vulnerability (CVE-2008-2663)
CVE-2008-2663
CWE-190
Critical
Ruby Numeric Errors Vulnerability (CVE-2008-2662)
CVE-2008-2662
-
Critical
PHP Incorrect Conversion between Numeric Types Vulnerability (CVE-2016-3074)
CVE-2016-3074
CWE-681
Critical
WebLogic CVE-2016-3586 Vulnerability (CVE-2016-3586)
CVE-2016-3586
-
Critical
ownCloud Improper Authentication Vulnerability (CVE-2023-49105)
CVE-2023-49105
CWE-287
Critical
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-3078)
CVE-2016-3078
CWE-190
Critical
phpMyFAQ Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2023-4006)
CVE-2023-4006
CWE-1236
Critical
PHP Double Free Vulnerability (CVE-2016-3132)
CVE-2016-3132
CWE-415
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-3141)
CVE-2016-3141
CWE-119
Critical
LimeSurvey CVE-2008-2570 Vulnerability (CVE-2008-2570)
CVE-2008-2570
-
Critical
WordPress Improper Input Validation Vulnerability (CVE-2008-2392)
CVE-2008-2392
CWE-20
Critical
WebLogic CVE-2016-3499 Vulnerability (CVE-2016-3499)
CVE-2016-3499
-
Critical
PHP Insufficient Entropy Vulnerability (CVE-2008-2108)
CVE-2008-2108
CWE-331
Critical
WebLogic CVE-2016-3510 Vulnerability (CVE-2016-3510)
CVE-2016-3510
-
Critical
WebLogic CVE-2016-3551 Vulnerability (CVE-2016-3551)
CVE-2016-3551
-
Critical
PHP CVE-2008-2051 Vulnerability (CVE-2008-2051)
CVE-2008-2051
-
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2008-2050)
CVE-2008-2050
CWE-119
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4542)
CVE-2016-4542
CWE-119
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4544)
CVE-2016-4544
CWE-119
Critical
Dolphin Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2008-3167)
CVE-2008-3167
CWE-94
Critical
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5770)
CVE-2016-5770
CWE-190
Critical
WebLogic CVE-2016-5531 Vulnerability (CVE-2016-5531)
CVE-2016-5531
-
Critical
WebLogic CVE-2016-5535 Vulnerability (CVE-2016-5535)
CVE-2016-5535
-
Critical
Oracle Database Server CVE-2016-5555 Vulnerability (CVE-2016-5555)
CVE-2016-5555
-
Critical
ProjectSend Incorrect Authorization Vulnerability (CVE-2024-11680)
CVE-2024-11680
CWE-863
Critical
Python Integer Overflow or Wraparound Vulnerability (CVE-2016-5636)
CVE-2016-5636
CWE-190
Critical
phpMyAdmin Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-5703)
CVE-2016-5703
CWE-138
Critical
WordPress Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2007-6013)
CVE-2007-6013
CWE-327
Critical
WordPress Ultimate Member Plugin Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2024-1071)
CVE-2024-1071
CWE-138
Critical
phpMyAdmin Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2016-5734)
CVE-2016-5734
CWE-94
Critical
MongoDb Improper Certificate Validation Vulnerability (CVE-2024-1351)
CVE-2024-1351
CWE-295
Critical
PHP Double Free Vulnerability (CVE-2016-5768)
CVE-2016-5768
CWE-415
Critical
1
2
3
4
...
181
»