Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Liferay Portal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-10795)
CVE-2018-10795
CWE-434
High
concrete5 Server-Side Request Forgery (SSRF) Vulnerability (CVE-2018-13790)
CVE-2018-13790
CWE-918
High
SharePoint Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-1102)
CVE-2020-1102
CWE-434
High
WordPress Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-14028)
CVE-2018-14028
CWE-434
High
WordPress Server-Side Request Forgery (SSRF) Vulnerability (CVE-2016-4029)
CVE-2016-4029
CWE-918
High
Dot CMS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-4040)
CVE-2016-4040
CWE-138
High
Plone CMS Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-4041)
CVE-2016-4041
CWE-264
High
Squid Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4051)
CVE-2016-4051
CWE-119
High
Squid Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4052)
CVE-2016-4052
CWE-119
High
Squid Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4054)
CVE-2016-4054
CWE-119
High
SharePoint NULL Pointer Dereference Vulnerability (CVE-2020-1069)
CVE-2020-1069
CWE-476
High
SharePoint Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-1024)
CVE-2020-1024
CWE-434
High
Roundcube Cross-site Request Forgery (CSRF) Vulnerability (CVE-2016-4069)
CVE-2016-4069
-
High
PHP Numeric Errors Vulnerability (CVE-2016-4070)
CVE-2016-4070
-
High
Play Framework Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-13864)
CVE-2018-13864
CWE-22
High
SharePoint Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-1023)
CVE-2020-1023
CWE-434
High
PHP Out-of-bounds Write Vulnerability (CVE-2019-6977)
CVE-2019-6977
CWE-787
High
Atlassian Jira Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-4319)
CVE-2016-4319
CWE-352
High
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4342)
CVE-2016-4342
CWE-119
High
PHP Other Vulnerability (CVE-2016-4343)
CVE-2016-4343
-
High
Nginx Other Vulnerability (CVE-2016-4450)
CVE-2016-4450
-
High
Python Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4472)
CVE-2016-4472
CWE-119
High
WebERP Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-7755)
CVE-2019-7755
CWE-138
High
Magento Session Fixation Vulnerability (CVE-2019-7849)
CVE-2019-7849
CWE-384
High
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7854)
CVE-2019-7854
CWE-639
High
Magento Cryptographic Issues Vulnerability (CVE-2019-7858)
CVE-2019-7858
-
High
Squid Insufficient Verification of Data Authenticity Vulnerability (CVE-2016-4553)
CVE-2016-4553
CWE-345
High
Squid Insufficient Verification of Data Authenticity Vulnerability (CVE-2016-4554)
CVE-2016-4554
CWE-345
High
Squid Improper Input Validation Vulnerability (CVE-2016-4555)
CVE-2016-4555
CWE-20
High
Squid Other Vulnerability (CVE-2016-4556)
CVE-2016-4556
-
High
Squid Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-3948)
CVE-2016-3948
CWE-119
High
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2018-14630)
CVE-2018-14630
CWE-94
High
Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-19216)
CVE-2020-19216
CWE-138
High
WebLogic CVE-2016-3505 Vulnerability (CVE-2016-3505)
CVE-2016-3505
-
High
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-3169)
CVE-2016-3169
CWE-264
High
SharePoint CVE-2020-1446 Vulnerability (CVE-2020-1446)
CVE-2020-1446
-
High
Drupal Data Processing Errors Vulnerability (CVE-2016-3171)
CVE-2016-3171
-
High
PHP Improper Input Validation Vulnerability (CVE-2016-3185)
CVE-2016-3185
CWE-20
High
SharePoint Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-3282)
CVE-2016-3282
CWE-119
High
W3 Total Cache CVE-2019-6715 Vulnerability (CVE-2019-6715)
CVE-2019-6715
-
High
MySQL CVE-2016-3440 Vulnerability (CVE-2016-3440)
CVE-2016-3440
-
High
SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2020-1439)
CVE-2020-1439
CWE-502
High
MySQL CVE-2016-3471 Vulnerability (CVE-2016-3471)
CVE-2016-3471
-
High
MySQL CVE-2016-3477 Vulnerability (CVE-2016-3477)
CVE-2016-3477
-
High
SharePoint CVE-2020-1338 Vulnerability (CVE-2020-1338)
CVE-2020-1338
-
High
SharePoint CVE-2020-1335 Vulnerability (CVE-2020-1335)
CVE-2020-1335
-
High
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-15132)
CVE-2018-15132
CWE-200
High
PHP NULL Pointer Dereference Vulnerability (CVE-2018-14884)
CVE-2018-14884
CWE-476
High
Squid Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-3947)
CVE-2016-3947
CWE-119
High
PHP Integer Overflow or Wraparound Vulnerability (CVE-2018-14883)
CVE-2018-14883
CWE-190
High
SharePoint CVE-2020-1295 Vulnerability (CVE-2020-1295)
CVE-2020-1295
-
High
SharePoint CVE-2020-1218 Vulnerability (CVE-2020-1218)
CVE-2020-1218
-
High
SharePoint Download of Code Without Integrity Check Vulnerability (CVE-2020-1210)
CVE-2020-1210
CWE-494
High
SharePoint Download of Code Without Integrity Check Vulnerability (CVE-2020-1200)
CVE-2020-1200
CWE-494
High
SharePoint CVE-2020-1181 Vulnerability (CVE-2020-1181)
CVE-2020-1181
-
High
SharePoint CVE-2020-1178 Vulnerability (CVE-2020-1178)
CVE-2020-1178
-
High
Jenkins Other Vulnerability (CVE-2016-3726)
CVE-2016-3726
-
High
SharePoint Other Vulnerability (CVE-2020-1147)
CVE-2020-1147
-
High
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-3734)
CVE-2016-3734
CWE-352
High
Python Missing Initialization of Resource Vulnerability (CVE-2018-14647)
CVE-2018-14647
CWE-909
High
Piwigo Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2016-3735)
CVE-2016-3735
CWE-335
High
Moodle Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-6970)
CVE-2019-6970
CWE-918
High
Django Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-6975)
CVE-2019-6975
CWE-770
High
Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-19217)
CVE-2020-19217
CWE-138
High
Magento Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2019-7859)
CVE-2019-7859
CWE-22
High
Drupal Other Vulnerability (CVE-2016-3167)
CVE-2016-3167
-
High
MySQL CVE-2016-5625 Vulnerability (CVE-2016-5625)
CVE-2016-5625
-
High
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-5406)
CVE-2016-5406
CWE-264
High
PostgreSQL NULL Pointer Dereference Vulnerability (CVE-2016-5423)
CVE-2016-5423
CWE-476
High
PostgreSQL Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2016-5424)
CVE-2016-5424
CWE-94
High
Apache Tomcat Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-17527)
CVE-2020-17527
CWE-200
High
Apache Traffic Server HTTP Request Smuggling Vulnerability (CVE-2020-17509 )
CVE-2020-17509
-
High
Apache Traffic Server Memory Disclosure Vulnerability (CVE-2020-17508)
CVE-2020-17508
-
High
SharePoint CVE-2020-17089 Vulnerability (CVE-2020-17089)
CVE-2020-17089
-
High
GlassFish CVE-2016-5519 Vulnerability (CVE-2016-5519)
CVE-2016-5519
-
High
«
1
...
41
42
43
...
181
»