Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Serendipity URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-5474)
CVE-2017-5474
CWE-601
Medium
MySQL CVE-2017-3641 Vulnerability (CVE-2017-3641)
CVE-2017-3641
-
Medium
MySQL CVE-2017-3639 Vulnerability (CVE-2017-3639)
CVE-2017-3639
-
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5488)
CVE-2017-5488
CWE-707
Medium
MySQL CVE-2017-3464 Vulnerability (CVE-2017-3464)
CVE-2017-3464
-
Medium
MySQL CVE-2017-3457 Vulnerability (CVE-2017-3457)
CVE-2017-3457
-
Medium
MySQL CVE-2017-3458 Vulnerability (CVE-2017-3458)
CVE-2017-3458
-
Medium
MySQL CVE-2017-3459 Vulnerability (CVE-2017-3459)
CVE-2017-3459
-
Medium
MySQL CVE-2017-3460 Vulnerability (CVE-2017-3460)
CVE-2017-3460
-
Medium
MySQL CVE-2017-3461 Vulnerability (CVE-2017-3461)
CVE-2017-3461
-
Medium
MySQL CVE-2017-3462 Vulnerability (CVE-2017-3462)
CVE-2017-3462
-
Medium
MySQL CVE-2017-3463 Vulnerability (CVE-2017-3463)
CVE-2017-3463
-
Medium
MySQL CVE-2017-3465 Vulnerability (CVE-2017-3465)
CVE-2017-3465
-
Medium
MySQL CVE-2017-3638 Vulnerability (CVE-2017-3638)
CVE-2017-3638
-
Medium
MySQL CVE-2017-3529 Vulnerability (CVE-2017-3529)
CVE-2017-3529
-
Medium
MySQL CVE-2017-3600 Vulnerability (CVE-2017-3600)
CVE-2017-3600
-
Medium
MySQL CVE-2017-3633 Vulnerability (CVE-2017-3633)
CVE-2017-3633
-
Medium
MySQL CVE-2017-3634 Vulnerability (CVE-2017-3634)
CVE-2017-3634
-
Medium
MySQL CVE-2017-3635 Vulnerability (CVE-2017-3635)
CVE-2017-3635
-
Medium
MySQL CVE-2017-3636 Vulnerability (CVE-2017-3636)
CVE-2017-3636
-
Medium
MySQL CVE-2017-3637 Vulnerability (CVE-2017-3637)
CVE-2017-3637
-
Medium
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-5487)
CVE-2017-5487
CWE-200
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5490)
CVE-2017-5490
CWE-707
Medium
MySQL CVE-2017-3455 Vulnerability (CVE-2017-3455)
CVE-2017-3455
-
Medium
concrete5 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6908)
CVE-2017-6908
CWE-707
Medium
WordPress Improper Input Validation Vulnerability (CVE-2017-6815)
CVE-2017-6815
CWE-20
Medium
WordPress Incorrect Authorization Vulnerability (CVE-2017-6816)
CVE-2017-6816
CWE-863
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6817)
CVE-2017-6817
CWE-707
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6818)
CVE-2017-6818
CWE-707
Medium
WordPress Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-6819)
CVE-2017-6819
CWE-352
Medium
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6820)
CVE-2017-6820
CWE-707
Medium
concrete5 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6905)
CVE-2017-6905
CWE-707
Medium
Drupal Improper Input Validation Vulnerability (CVE-2017-6921)
CVE-2017-6921
CWE-20
Medium
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-6514)
CVE-2017-6514
CWE-200
Medium
Drupal Files or Directories Accessible to External Parties Vulnerability (CVE-2017-6922)
CVE-2017-6922
CWE-552
Medium
Drupal Missing Authorization Vulnerability (CVE-2017-6923)
CVE-2017-6923
CWE-862
Medium
Drupal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6927)
CVE-2017-6927
CWE-707
Medium
Drupal Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2017-6928)
CVE-2017-6928
CWE-732
Medium
Drupal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6929)
CVE-2017-6929
CWE-707
Medium
Drupal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-6931)
CVE-2017-6931
CWE-434
Medium
Drupal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-6932)
CVE-2017-6932
CWE-601
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6814)
CVE-2017-6814
CWE-707
Medium
ATutor Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6483)
CVE-2017-6483
CWE-707
Medium
WordPress Insecure Default Initialization of Resource Vulnerability (CVE-2017-5491)
CVE-2017-5491
CWE-1188
Medium
ReviveAdserver Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5832)
CVE-2017-5832
CWE-707
Medium
b2evolution Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5494)
CVE-2017-5494
CWE-707
Medium
Plone CMS Use of Externally-Controlled Format String Vulnerability (CVE-2017-5524)
CVE-2017-5524
CWE-134
Medium
b2evolution Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5553)
CVE-2017-5553
CWE-707
Medium
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5608)
CVE-2017-5608
CWE-707
Medium
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-5610)
CVE-2017-5610
CWE-200
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5612)
CVE-2017-5612
CWE-707
Medium
ReviveAdserver Session Fixation Vulnerability (CVE-2017-5831)
CVE-2017-5831
CWE-384
Medium
ReviveAdserver Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5833)
CVE-2017-5833
CWE-707
Medium
Dotclear Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6446)
CVE-2017-6446
CWE-707
Medium
ownCloud Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-5866)
CVE-2017-5866
CWE-200
Medium
ownCloud Uncontrolled Resource Consumption Vulnerability (CVE-2017-5867)
CVE-2017-5867
CWE-400
Medium
OpenVPN AS Improper Neutralization of CRLF Sequences ('CRLF Injection') Vulnerability (CVE-2017-5868)
CVE-2017-5868
CWE-707
Medium
Dot CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5875)
CVE-2017-5875
CWE-707
Medium
Dot CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5876)
CVE-2017-5876
CWE-707
Medium
Dot CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5877)
CVE-2017-5877
CWE-707
Medium
Dot CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-6003)
CVE-2017-6003
CWE-707
Medium
TYPO3 Cleartext Transmission of Sensitive Information Vulnerability (CVE-2017-6370)
CVE-2017-6370
CWE-319
Medium
MySQL CVE-2017-3456 Vulnerability (CVE-2017-3456)
CVE-2017-3456
-
Medium
MySQL CVE-2017-3454 Vulnerability (CVE-2017-3454)
CVE-2017-3454
-
Medium
concrete5 Improper Input Validation Vulnerability (CVE-2017-18195)
CVE-2017-18195
CWE-20
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-1762)
CVE-2017-1762
CWE-707
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-1629)
CVE-2017-1629
CWE-707
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-1653)
CVE-2017-1653
CWE-707
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-1655)
CVE-2017-1655
CWE-707
Medium
IBM RTC Incorrect Authorization Vulnerability (CVE-2017-1700)
CVE-2017-1700
CWE-863
Medium
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1725)
CVE-2017-1725
CWE-200
Medium
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1734)
CVE-2017-1734
CWE-200
Medium
IBM RTC Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-1753)
CVE-2017-1753
CWE-94
Medium
phpList Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-20033)
CVE-2017-20033
CWE-707
Medium
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1570)
CVE-2017-1570
CWE-200
Medium
«
1
...
143
144
145
...
181
»