Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
MySQL CVE-2015-0499 Vulnerability (CVE-2015-0499)
CVE-2015-0499
-
Low
Drupal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-0274)
CVE-2008-0274
CWE-707
Low
Drupal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-3741)
CVE-2008-3741
CWE-707
Low
Python Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4944)
CVE-2011-4944
CWE-264
Low
Python Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-4940)
CVE-2011-4940
CWE-707
Low
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-0827)
CVE-2012-0827
CWE-264
Low
Joomla CVE-2017-14595 Vulnerability (CVE-2017-14595)
CVE-2017-14595
-
Low
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-5256)
CVE-2011-5256
CWE-707
Low
MySQL CVE-2015-0506 Vulnerability (CVE-2015-0506)
CVE-2015-0506
-
Low
Jboss EAP Credentials Management Errors Vulnerability (CVE-2012-0034)
CVE-2012-0034
-
Low
MySQL CVE-2012-0114 Vulnerability (CVE-2012-0114)
CVE-2012-0114
-
Low
Oracle Application Server CVE-2008-2619 Vulnerability (CVE-2008-2619)
CVE-2008-2619
-
Low
MySQL CVE-2012-0117 Vulnerability (CVE-2012-0117)
CVE-2012-0117
-
Low
GlassFish CVE-2012-0081 Vulnerability (CVE-2012-0081)
CVE-2012-0081
-
Low
MySQL CVE-2012-0075 Vulnerability (CVE-2012-0075)
CVE-2012-0075
-
Low
Oracle Database Server CVE-2008-2590 Vulnerability (CVE-2008-2590)
CVE-2008-2590
-
Low
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-0216)
CVE-2015-0216
CWE-707
Low
Oracle Database Server CVE-2008-2587 Vulnerability (CVE-2008-2587)
CVE-2008-2587
-
Low
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-0287)
CVE-2012-0287
CWE-707
Low
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-0212)
CVE-2015-0212
CWE-707
Low
Oracle Database Server CVE-2015-0370 Vulnerability (CVE-2015-0370)
CVE-2015-0370
-
Low
MySQL CVE-2015-0374 Vulnerability (CVE-2015-0374)
CVE-2015-0374
-
Low
phpMyAdmin Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-2960)
CVE-2008-2960
CWE-707
Low
MySQL CVE-2012-0492 Vulnerability (CVE-2012-0492)
CVE-2012-0492
-
Low
Envoy Proxy Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-11767)
CVE-2020-11767
CWE-200
Low
MySQL CVE-2012-0493 Vulnerability (CVE-2012-0493)
CVE-2012-0493
-
Low
MySQL CVE-2012-0494 Vulnerability (CVE-2012-0494)
CVE-2012-0494
-
Low
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-1924)
CVE-2008-1924
CWE-200
Low
Apache HTTP Server Improper Input Validation Vulnerability (CVE-2012-0021)
CVE-2012-0021
CWE-20
Low
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-0130)
CVE-2015-0130
CWE-707
Low
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-0123)
CVE-2015-0123
CWE-707
Low
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-0122)
CVE-2015-0122
CWE-707
Low
phpMyAdmin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-3197)
CVE-2008-3197
CWE-352
Low
MySQL CVE-2015-0505 Vulnerability (CVE-2015-0505)
CVE-2015-0505
-
Low
MySQL CVE-2015-0507 Vulnerability (CVE-2015-0507)
CVE-2015-0507
-
Low
Oracle JRE CVE-2024-21085 Vulnerability (CVE-2024-21085)
CVE-2024-21085
-
Low
Oracle Database Server CVE-2024-20995 Vulnerability (CVE-2024-20995)
CVE-2024-20995
-
Low
phpMyAdmin Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-8326)
CVE-2014-8326
CWE-707
Low
Oracle JRE CVE-2024-20955 Vulnerability (CVE-2024-20955)
CVE-2024-20955
-
Low
SharePoint Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-1633)
CVE-2015-1633
CWE-707
Low
SharePoint Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-1636)
CVE-2015-1636
CWE-707
Low
OpenSSL Improper Input Validation Vulnerability (CVE-2015-1787)
CVE-2015-1787
CWE-20
Low
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1253)
CVE-2012-1253
CWE-707
Low
SharePoint Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-5026)
CVE-2008-5026
CWE-707
Low
Apache Tomcat Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2007-5461)
CVE-2007-5461
CWE-22
Low
ZenCart Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1413)
CVE-2012-1413
CWE-707
Low
MySQL CVE-2017-3467 Vulnerability (CVE-2017-3467)
CVE-2017-3467
-
Low
MySQL CVE-2017-3468 Vulnerability (CVE-2017-3468)
CVE-2017-3468
-
Low
MySQL CVE-2017-3320 Vulnerability (CVE-2017-3320)
CVE-2017-3320
-
Low
Drupal Resource Management Errors Vulnerability (CVE-2012-1588)
CVE-2012-1588
-
Low
Oracle JRE Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2024-21011)
CVE-2024-21011
CWE-770
Low
Oracle JRE Incorrect Default Permissions Vulnerability (CVE-2024-21012)
CVE-2024-21012
CWE-276
Low
GlassFish CVE-2017-3626 Vulnerability (CVE-2017-3626)
CVE-2017-3626
-
Low
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-5250)
CVE-2008-5250
CWE-707
Low
Jenkins Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2015-1807)
CVE-2015-1807
CWE-22
Low
Jenkins Improper Input Validation Vulnerability (CVE-2015-1808)
CVE-2015-1808
CWE-20
Low
XWiki CVE-2007-4898 Vulnerability (CVE-2007-4898)
CVE-2007-4898
-
Low
Vanilla Forums Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2019-9889)
CVE-2019-9889
CWE-22
Low
TYPO3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1606)
CVE-2012-1606
CWE-707
Low
Oracle JRE CVE-2024-21068 Vulnerability (CVE-2024-21068)
CVE-2024-21068
-
Low
Oracle JRE CVE-2017-10345 Vulnerability (CVE-2017-10345)
CVE-2017-10345
-
Low
MySQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-3319)
CVE-2017-3319
CWE-200
Low
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-2603)
CVE-2017-2603
CWE-200
Low
Oracle Database Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-3240)
CVE-2017-3240
CWE-200
Low
MySQL CVE-2015-0511 Vulnerability (CVE-2015-0511)
CVE-2015-0511
-
Low
Jetty Improper Input Validation Vulnerability (CVE-2022-2047)
CVE-2022-2047
CWE-20
Low
Oracle Application Server CVE-2008-3986 Vulnerability (CVE-2008-3986)
CVE-2008-3986
-
Low
ownCloud Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-9042)
CVE-2014-9042
CWE-707
Low
Oracle Application Server CVE-2008-3987 Vulnerability (CVE-2008-3987)
CVE-2008-3987
-
Low
Apache HTTP Server Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2007-6421)
CVE-2007-6421
CWE-707
Low
Grafana Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2024-10452)
CVE-2024-10452
CWE-639
Low
silverstripeCMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-0976)
CVE-2012-0976
CWE-707
Low
PostgreSQL Insufficient Verification of Data Authenticity Vulnerability (CVE-2024-10977)
CVE-2024-10977
CWE-345
Low
MySQL Other Vulnerability (CVE-2007-6303)
CVE-2007-6303
-
Low
GlassFish Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-3239)
CVE-2017-3239
CWE-200
Low
«
1
...
176
177
178
...
181
»