Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Magento CVE-2019-7876 Vulnerability (CVE-2019-7876)
CVE-2019-7876
-
High
Joomla Improper Privilege Management Vulnerability (CVE-2018-11323)
CVE-2018-11323
CWE-269
High
Joomla Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-11322)
CVE-2018-11322
CWE-434
High
WebLogic Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2018-11040)
CVE-2018-11040
CWE-829
High
SharePoint CVE-2020-17016 Vulnerability (CVE-2020-17016)
CVE-2020-17016
-
High
SharePoint Origin Validation Error Vulnerability (CVE-2020-16952)
CVE-2020-16952
CWE-346
High
Apache Traffic Server Resource Management Errors Vulnerability (CVE-2016-5396)
CVE-2016-5396
-
High
SharePoint Origin Validation Error Vulnerability (CVE-2020-16951)
CVE-2020-16951
CWE-346
High
MyBB Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2324)
CVE-2012-2324
CWE-138
High
Magento Improper Input Validation Vulnerability (CVE-2019-7885)
CVE-2019-7885
CWE-20
High
PostgreSQL Incorrect Authorization Vulnerability (CVE-2018-10925)
CVE-2018-10925
CWE-863
High
PostgreSQL Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-10915)
CVE-2018-10915
CWE-138
High
Varnish Cache Reachable Assertion Vulnerability (CVE-2019-15892)
CVE-2019-15892
CWE-617
High
Jolokia Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-10899)
CVE-2018-10899
CWE-352
High
Liferay DXP Deserialization of Untrusted Data Vulnerability (CVE-2020-15842)
CVE-2020-15842
CWE-502
High
phpMyAdmin Resource Management Errors Vulnerability (CVE-2016-5706)
CVE-2016-5706
-
High
Liferay Portal Deserialization of Untrusted Data Vulnerability (CVE-2020-15842)
CVE-2020-15842
CWE-502
High
Liferay Portal CVE-2020-15841 Vulnerability (CVE-2020-15841)
CVE-2020-15841
-
High
Moodle CVE-2018-10891 Vulnerability (CVE-2018-10891)
CVE-2018-10891
-
High
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-5739)
CVE-2016-5739
CWE-200
High
Magento Cryptographic Issues Vulnerability (CVE-2019-7886)
CVE-2019-7886
-
High
PHP Out-of-bounds Write Vulnerability (CVE-2016-5399)
CVE-2016-5399
CWE-787
High
Opencart Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-11494)
CVE-2018-11494
CWE-22
High
Magento Cryptographic Issues Vulnerability (CVE-2019-7860)
CVE-2019-7860
-
High
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2016-4978)
CVE-2016-4978
CWE-502
High
Opencart Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-13067)
CVE-2018-13067
CWE-352
High
WordPress Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-12895)
CVE-2018-12895
CWE-22
High
Joomla Improper Input Validation Vulnerability (CVE-2018-12712)
CVE-2018-12712
CWE-20
High
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-7861)
CVE-2019-7861
CWE-434
High
phpMyAdmin Improper Authentication Vulnerability (CVE-2018-12613)
CVE-2018-12613
CWE-287
High
Jetty Session Fixation Vulnerability (CVE-2018-12538)
CVE-2018-12538
CWE-384
High
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7865)
CVE-2019-7865
CWE-352
High
Phusion Passenger Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2018-12029)
CVE-2018-12029
CWE-362
High
Phusion Passenger Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2018-12028)
CVE-2018-12028
CWE-732
High
Phusion Passenger Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-12027)
CVE-2018-12027
CWE-200
High
Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-19215)
CVE-2020-19215
CWE-138
High
CakePHP Improper Input Validation Vulnerability (CVE-2016-4793)
CVE-2016-4793
CWE-20
High
Dot CMS Other Vulnerability (CVE-2016-4803)
CVE-2016-4803
-
High
Apache HTTP Server Improper Access Control Vulnerability (CVE-2016-4979)
CVE-2016-4979
CWE-284
High
Apache Tomcat Improper Access Control Vulnerability (CVE-2016-5388)
CVE-2016-5388
CWE-284
High
Dot CMS Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-18875)
CVE-2020-18875
CWE-138
High
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2018-12023)
CVE-2018-12023
CWE-502
High
TYPO3 7PK - Security Features Vulnerability (CVE-2016-5091)
CVE-2016-5091
-
High
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2018-12022)
CVE-2018-12022
CWE-502
High
PHP Out-of-bounds Read Vulnerability (CVE-2016-5093)
CVE-2016-5093
CWE-125
High
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5094)
CVE-2016-5094
CWE-190
High
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5095)
CVE-2016-5095
CWE-190
High
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5096)
CVE-2016-5096
CWE-190
High
Perl Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2018-12015)
CVE-2018-12015
CWE-59
High
Apache Traffic Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-11783)
CVE-2018-11783
CWE-200
High
Drupal Improper Access Control Vulnerability (CVE-2016-5385)
CVE-2016-5385
CWE-284
High
PHP Improper Access Control Vulnerability (CVE-2016-5385)
CVE-2016-5385
CWE-284
High
Apache HTTP Server CVE-2016-5387 Vulnerability (CVE-2016-5387)
CVE-2016-5387
-
High
Magento Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-7871)
CVE-2019-7871
CWE-94
High
SharePoint CVE-2020-1447 Vulnerability (CVE-2020-1447)
CVE-2020-1447
-
High
SharePoint CVE-2020-1448 Vulnerability (CVE-2020-1448)
CVE-2020-1448
-
High
Jenkins Missing Release of Resource after Effective Lifetime Vulnerability (CVE-2018-1999043)
CVE-2018-1999043
CWE-772
High
PostgreSQL Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2020-21469)
CVE-2020-21469
CWE-120
High
Joomla CVE-2018-17856 Vulnerability (CVE-2018-17856)
CVE-2018-17856
-
High
phpMyAdmin Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2020-22278)
CVE-2020-22278
CWE-1236
High
PHP Numeric Errors Vulnerability (CVE-2016-10158)
CVE-2016-10158
-
High
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-10159)
CVE-2016-10159
CWE-190
High
Joomla Improper Privilege Management Vulnerability (CVE-2018-17855)
CVE-2018-17855
CWE-269
High
PHP Out-of-bounds Read Vulnerability (CVE-2016-10161)
CVE-2016-10161
CWE-125
High
PHP NULL Pointer Dereference Vulnerability (CVE-2016-10162)
CVE-2016-10162
CWE-476
High
Phusion Passenger Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-10345)
CVE-2016-10345
CWE-264
High
e107 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-10378)
CVE-2016-10378
CWE-138
High
PHP Improper Input Validation Vulnerability (CVE-2016-10397)
CVE-2016-10397
CWE-20
High
ATutor Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-10400)
CVE-2016-10400
CWE-22
High
Riot.js Resource Management Errors Vulnerability (CVE-2016-10527)
CVE-2016-10527
-
High
PHP Improper Input Validation Vulnerability (CVE-2016-10712)
CVE-2016-10712
CWE-20
High
Opencart Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-20491)
CVE-2020-20491
CWE-138
High
Piwigo Improper Access Control Vulnerability (CVE-2016-10084)
CVE-2016-10084
CWE-284
High
Osclass Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-10751)
CVE-2016-10751
CWE-22
High
e107 Deserialization of Untrusted Data Vulnerability (CVE-2016-10753)
CVE-2016-10753
CWE-502
High
«
1
...
42
43
44
...
181
»