Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-5674)
CVE-2013-5674
CWE-94
High
phpList Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-35708)
CVE-2020-35708
CWE-138
High
Liferay Portal Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-33338)
CVE-2021-33338
CWE-352
High
Oracle JRE CVE-2013-5775 Vulnerability (CVE-2013-5775)
CVE-2013-5775
-
High
WordPress Access of Resource Using Incompatible Type ('Type Confusion') Vulnerability (CVE-2019-17675)
CVE-2019-17675
CWE-843
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2021-32567)
CVE-2021-32567
CWE-20
High
Nginx Improper Encoding or Escaping of Output Vulnerability (CVE-2013-4547)
CVE-2013-4547
CWE-116
High
Undertow Missing Authorization Vulnerability (CVE-2019-10184)
CVE-2019-10184
CWE-862
High
PostgreSQL Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-10208)
CVE-2019-10208
CWE-138
High
Nginx Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-0088)
CVE-2014-0088
CWE-119
High
Oracle JRE CVE-2021-2388 Vulnerability (CVE-2021-2388)
CVE-2021-2388
-
High
Squid Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-18679)
CVE-2019-18679
CWE-200
High
WebLogic CVE-2021-2378 Vulnerability (CVE-2021-2378)
CVE-2021-2378
-
High
WebLogic CVE-2021-2376 Vulnerability (CVE-2021-2376)
CVE-2021-2376
-
High
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-10186)
CVE-2019-10186
CWE-352
High
WebLogic Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2021-2351)
CVE-2021-2351
CWE-327
High
Nginx Out-of-bounds Write Vulnerability (CVE-2014-0133)
CVE-2014-0133
CWE-787
High
OpenSSL Out-of-bounds Read Vulnerability (CVE-2014-0160)
CVE-2014-0160
CWE-125
High
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0185)
CVE-2014-0185
CWE-264
High
OpenSSL Inadequate Encryption Strength Vulnerability (CVE-2014-0224)
CVE-2014-0224
CWE-326
High
Jboss EAP Inadequate Encryption Strength Vulnerability (CVE-2014-0224)
CVE-2014-0224
CWE-326
High
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0050)
CVE-2014-0050
CWE-264
High
Jboss EAP Missing Authorization Vulnerability (CVE-2019-10184)
CVE-2019-10184
CWE-862
High
Python Inadequate Encryption Strength Vulnerability (CVE-2014-0224)
CVE-2014-0224
CWE-326
High
Apache Tomcat Resource Management Errors Vulnerability (CVE-2014-0230)
CVE-2014-0230
-
High
PHP Other Vulnerability (CVE-2014-0236)
CVE-2014-0236
-
High
Jboss EAP Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') Vulnerability (CVE-2019-10174)
CVE-2019-10174
CWE-470
High
Jboss EAP Improper Restriction of XML External Entity Reference Vulnerability (CVE-2019-10172)
CVE-2019-10172
CWE-611
High
PostgreSQL Out-of-bounds Write Vulnerability (CVE-2019-10164)
CVE-2019-10164
CWE-787
High
WebLogic CVE-2021-2157 Vulnerability (CVE-2021-2157)
CVE-2021-2157
-
High
Oracle JRE CVE-2014-0446 Vulnerability (CVE-2014-0446)
CVE-2014-0446
-
High
Oracle JRE CVE-2014-0448 Vulnerability (CVE-2014-0448)
CVE-2014-0448
-
High
Oracle JRE CVE-2014-0451 Vulnerability (CVE-2014-0451)
CVE-2014-0451
-
High
Oracle JRE CVE-2014-0452 Vulnerability (CVE-2014-0452)
CVE-2014-0452
-
High
PostgreSQL Improper Input Validation Vulnerability (CVE-2019-10210)
CVE-2019-10210
CWE-20
High
Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-30224)
CVE-2021-30224
CWE-352
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2021-32566)
CVE-2021-32566
CWE-20
High
SharePoint CVE-2021-31963 Vulnerability (CVE-2021-31963)
CVE-2021-31963
-
High
Apache Traffic Server Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2021-32565)
CVE-2021-32565
CWE-444
High
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2013-6420)
CVE-2013-6420
CWE-119
High
Moodle Uncontrolled Resource Consumption Vulnerability (CVE-2021-32476)
CVE-2021-32476
CWE-400
High
Moodle Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-32474)
CVE-2021-32474
CWE-138
High
MediaWiki Improper Input Validation Vulnerability (CVE-2013-6453)
CVE-2013-6453
CWE-20
High
Ruby Inadequate Encryption Strength Vulnerability (CVE-2021-32066)
CVE-2021-32066
CWE-326
High
MongoDb Out-of-bounds Write Vulnerability (CVE-2021-32040)
CVE-2021-32040
CWE-787
High
MongoDb Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2021-32036)
CVE-2021-32036
CWE-770
High
Jboss EAP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2021-32027)
CVE-2021-32027
CWE-119
High
PostgreSQL Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2021-32027)
CVE-2021-32027
CWE-119
High
Joomla Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-18650)
CVE-2019-18650
CWE-352
High
SharePoint CVE-2021-31964 Vulnerability (CVE-2021-31964)
CVE-2021-31964
-
High
Squid Out-of-bounds Write Vulnerability (CVE-2019-18676)
CVE-2019-18676
CWE-787
High
Apache Tomcat Improper Handling of Exceptional Conditions Vulnerability (CVE-2021-30639)
CVE-2021-30639
CWE-755
High
SharePoint Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-31950)
CVE-2021-31950
CWE-918
High
SharePoint CVE-2021-31948 Vulnerability (CVE-2021-31948)
CVE-2021-31948
-
High
Chamilo Improper Input Validation Vulnerability (CVE-2021-31933)
CVE-2021-31933
CWE-20
High
ReviveAdserver Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2013-7149)
CVE-2013-7149
CWE-138
High
Apache HTTP Server NULL Pointer Dereference Vulnerability (CVE-2021-31618)
CVE-2021-31618
CWE-476
High
MediaWiki Improper Input Validation Vulnerability (CVE-2021-31555)
CVE-2021-31555
CWE-20
High
Python Improper Input Validation Vulnerability (CVE-2013-7338)
CVE-2013-7338
CWE-20
High
PHP-Fusion Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2013-7375)
CVE-2013-7375
CWE-138
High
Perl Numeric Errors Vulnerability (CVE-2013-7422)
CVE-2013-7422
-
High
Django Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-31542)
CVE-2021-31542
CWE-434
High
MySQL Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-0001)
CVE-2014-0001
CWE-119
High
Sqlite Out-of-bounds Read Vulnerability (CVE-2021-31239)
CVE-2021-31239
CWE-125
High
Lighttpd Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4559)
CVE-2013-4559
CWE-264
High
Lighttpd Inadequate Encryption Strength Vulnerability (CVE-2013-4508)
CVE-2013-4508
CWE-326
High
TYPO3 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2013-1842)
CVE-2013-1842
CWE-138
High
Grafana Improper Authentication Vulnerability (CVE-2021-39226)
CVE-2021-39226
CWE-287
High
Jboss EAP Uncontrolled Resource Consumption Vulnerability (CVE-2021-3629)
CVE-2021-3629
CWE-400
High
Nginx Improper Certificate Validation Vulnerability (CVE-2021-3618)
CVE-2021-3618
CWE-295
High
WebLogic Improper Certificate Validation Vulnerability (CVE-2021-3450)
CVE-2021-3450
CWE-295
High
OpenSSL Improper Certificate Validation Vulnerability (CVE-2021-3450)
CVE-2021-3450
CWE-295
High
Apache HTTP Server CVE-2013-2249 Vulnerability (CVE-2013-2249)
CVE-2013-2249
-
High
SugarCRM Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-17305)
CVE-2019-17305
CWE-94
High
ZenCart Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2021-3291)
CVE-2021-3291
CWE-138
High
«
1
...
28
29
30
...
181
»