Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Oracle Database Server CVE-2007-2118 Vulnerability (CVE-2007-2118)
CVE-2007-2118
-
High
Oracle Database Server Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2007-2113)
CVE-2007-2113
CWE-138
High
PHP Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-5658)
CVE-2008-5658
CWE-22
High
XOOPS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-5665)
CVE-2008-5665
CWE-138
High
Joomla Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2008-5671)
CVE-2008-5671
CWE-94
High
WordPress Improper Input Validation Vulnerability (CVE-2008-5695)
CVE-2008-5695
CWE-20
High
Internet Information Services Other Vulnerability (CVE-2007-2897)
CVE-2007-2897
-
High
Opencart CVE-2024-21519 Vulnerability (CVE-2024-21519)
CVE-2024-21519
-
High
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-4094)
CVE-2008-4094
CWE-138
High
Jetty Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
CVE-2023-44487
CWE-400
High
phpMyAdmin Improper Input Validation Vulnerability (CVE-2008-4096)
CVE-2008-4096
CWE-20
High
MediaWiki Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2023-45371)
CVE-2023-45371
CWE-770
High
Joomla Numeric Errors Vulnerability (CVE-2008-4102)
CVE-2008-4102
-
High
Angular Inefficient Regular Expression Complexity Vulnerability (CVE-2024-21490)
CVE-2024-21490
CWE-1333
High
Opencart Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2024-21514)
CVE-2024-21514
CWE-138
High
Joomla Improper Input Validation Vulnerability (CVE-2008-4105)
CVE-2008-4105
CWE-20
High
MediaWiki Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2023-45363)
CVE-2023-45363
CWE-835
High
Ruby Resource Management Errors Vulnerability (CVE-2008-4310)
CVE-2008-4310
-
High
XWiki Improper Encoding or Escaping of Output Vulnerability (CVE-2023-45135)
CVE-2023-45135
CWE-116
High
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-4359)
CVE-2008-4359
CWE-200
High
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-4360)
CVE-2008-4360
CWE-200
High
XOOPS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-4433)
CVE-2008-4433
CWE-138
High
Kong Server Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
CVE-2023-44487
CWE-400
High
Opencart Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2024-21518)
CVE-2024-21518
CWE-22
High
Jenkins CVE-2023-44487 Vulnerability (CVE-2023-44487)
CVE-2023-44487
-
High
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-4625)
CVE-2008-4625
CWE-138
High
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
CVE-2023-44487
CWE-400
High
Caddy Web Server Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
CVE-2023-44487
CWE-400
High
Apache Traffic Server CVE-2023-44487 Vulnerability (CVE-2023-44487)
CVE-2023-44487
-
High
Nginx Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
CVE-2023-44487
CWE-400
High
Open Resty Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
CVE-2023-44487
CWE-400
High
Drupal CVE-2008-4793 Vulnerability (CVE-2008-4793)
CVE-2008-4793
-
High
Python Integer Overflow or Wraparound Vulnerability (CVE-2008-4864)
CVE-2008-4864
CWE-190
High
Jboss EAP Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
CVE-2023-44487
CWE-400
High
Apache Tomcat CVE-2023-44487 Vulnerability (CVE-2023-44487)
CVE-2023-44487
-
High
PHP Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2311)
CVE-2012-2311
CWE-138
High
XWiki Server-Side Request Forgery (SSRF) Vulnerability (CVE-2023-48240)
CVE-2023-48240
CWE-918
High
WebLogic CVE-2024-21182 Vulnerability (CVE-2024-21182)
CVE-2024-21182
-
High
PHP-Fusion Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-5946)
CVE-2008-5946
CWE-138
High
WebLogic Missing Authentication for Critical Function Vulnerability (CVE-2024-21007)
CVE-2024-21007
CWE-306
High
PostgreSQL CVE-2024-0985 Vulnerability (CVE-2024-0985)
CVE-2024-0985
-
High
PHP Other Vulnerability (CVE-2007-5424)
CVE-2007-5424
-
High
Apache HTTP Server Resource Management Errors Vulnerability (CVE-2007-6423)
CVE-2007-6423
-
High
Plone CMS Improper Restriction of Rendered UI Layers or Frames Vulnerability (CVE-2024-0669)
CVE-2024-0669
CWE-1021
High
PostgreSQL Improper Authentication Vulnerability (CVE-2007-6601)
CVE-2007-6601
CWE-287
High
Microsoft SQL Server CVE-2024-0056 Vulnerability (CVE-2024-0056)
CVE-2024-0056
-
High
Atlassian Jira Permissions, Privileges, and Access Controls Vulnerability (CVE-2007-6619)
CVE-2007-6619
CWE-264
High
Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2007-6666)
CVE-2007-6666
CWE-138
High
Wordpress Plugin Backup Migration Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2023-7002)
CVE-2023-7002
CWE-138
High
Ext JS Server-Side Request Forgery (SSRF) Vulnerability (CVE-2007-6758)
CVE-2007-6758
CWE-918
High
Internet Information Services CVE-2008-0074 Vulnerability (CVE-2008-0074)
CVE-2008-0074
-
High
WebLogic CVE-2024-21006 Vulnerability (CVE-2024-21006)
CVE-2024-21006
-
High
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-0145)
CVE-2008-0145
CWE-264
High
Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-10234)
CVE-2024-10234
CWE-707
High
OpenSSL Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2008-0166)
CVE-2008-0166
CWE-338
High
WordPress Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-0194)
CVE-2008-0194
CWE-22
High
Microsoft SQL Server Permissions, Privileges, and Access Controls Vulnerability (CVE-2007-5090)
CVE-2007-5090
CWE-264
High
WP Plugin Contact Form 7 Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-6449)
CVE-2023-6449
CWE-434
High
MySQL Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2008-0226)
CVE-2008-0226
CWE-119
High
CherryPy Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-0252)
CVE-2008-0252
CWE-22
High
Wordpress Plugin Backup Migration CVE-2023-6271 Vulnerability (CVE-2023-6271)
CVE-2023-6271
-
High
Wordpress Plugin Backup Migration Files or Directories Accessible to External Parties Vulnerability (CVE-2023-6266)
CVE-2023-6266
CWE-552
High
MyBB Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-0383)
CVE-2008-0383
CWE-138
High
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-5966)
CVE-2023-5966
CWE-434
High
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-5965)
CVE-2023-5965
CWE-434
High
PostgreSQL Integer Overflow or Wraparound Vulnerability (CVE-2023-5869)
CVE-2023-5869
CWE-190
High
Oracle Database Server CVE-2007-5505 Vulnerability (CVE-2007-5505)
CVE-2007-5505
-
High
Oracle Database Server Resource Management Errors Vulnerability (CVE-2007-5506)
CVE-2007-5506
-
High
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2007-4894)
CVE-2007-4894
CWE-138
High
Oracle Database Server CVE-2007-5520 Vulnerability (CVE-2007-5520)
CVE-2007-5520
-
High
Oracle Database Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2007-5554)
CVE-2007-5554
CWE-200
High
Oracle Application Server CVE-2007-5525 Vulnerability (CVE-2007-5525)
CVE-2007-5525
-
High
Oracle JRE CVE-2024-20918 Vulnerability (CVE-2024-20918)
CVE-2024-20918
-
High
Jboss EAP Uncontrolled Resource Consumption Vulnerability (CVE-2024-1635)
CVE-2024-1635
CWE-400
High
phpBB Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2007-5688)
CVE-2007-5688
CWE-138
High
«
1
...
52
53
54
...
181
»