Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Telerik Web UI Inadequate Encryption Strength Vulnerability (CVE-2017-11317)
CVE-2017-11317
CWE-326
Critical
Telerik Web UI Improper Input Validation Vulnerability (CVE-2017-11357)
CVE-2017-11357
CWE-20
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-11362)
CVE-2017-11362
CWE-119
Critical
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2017-12149)
CVE-2017-12149
CWE-502
Critical
Oracle JRE CVE-2017-10285 Vulnerability (CVE-2017-10285)
CVE-2017-10285
-
Critical
Drupal CVE-2020-13665 Vulnerability (CVE-2020-13665)
CVE-2020-13665
-
Critical
Jboss EAP Improper Restriction of XML External Entity Reference Vulnerability (CVE-2017-12629)
CVE-2017-12629
CWE-611
Critical
Perl Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-12814)
CVE-2017-12814
CWE-119
Critical
Perl Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-12883)
CVE-2017-12883
CWE-119
Critical
PHP Use After Free Vulnerability (CVE-2017-12932)
CVE-2017-12932
CWE-416
Critical
phpMyAdmin Other Vulnerability (CVE-2007-0203)
CVE-2007-0203
-
Critical
PHP Out-of-bounds Read Vulnerability (CVE-2017-12933)
CVE-2017-12933
CWE-125
Critical
CrushFTP Server Deserialization of Untrusted Data Vulnerability (CVE-2017-14035)
CVE-2017-14035
CWE-502
Critical
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14064)
CVE-2017-14064
CWE-119
Critical
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-14238)
CVE-2017-14238
CWE-138
Critical
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-14242)
CVE-2017-14242
CWE-138
Critical
osTicket Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-14396)
CVE-2017-14396
CWE-138
Critical
Joomla Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') Vulnerability (CVE-2017-14596)
CVE-2017-14596
CWE-138
Critical
Oracle JRE CVE-2017-10346 Vulnerability (CVE-2017-10346)
CVE-2017-10346
-
Critical
Oracle Database Server CVE-2017-10282 Vulnerability (CVE-2017-10282)
CVE-2017-10282
-
Critical
Oracle Database Server CVE-2007-2116 Vulnerability (CVE-2007-2116)
CVE-2007-2116
-
Critical
ATutor Improper Privilege Management Vulnerability (CVE-2017-1000003)
CVE-2017-1000003
CWE-269
Critical
Oracle Database Server CVE-2007-2114 Vulnerability (CVE-2007-2114)
CVE-2007-2114
-
Critical
MySQL CVE-2016-9841 Vulnerability (CVE-2016-9841)
CVE-2016-9841
-
Critical
MySQL CVE-2016-9843 Vulnerability (CVE-2016-9843)
CVE-2016-9843
-
Critical
phpMyAdmin Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-9849)
CVE-2016-9849
CWE-264
Critical
phpMyAdmin 7PK - Security Features Vulnerability (CVE-2016-9865)
CVE-2016-9865
-
Critical
phpMyAdmin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-9866)
CVE-2016-9866
CWE-352
Critical
PHP Out-of-bounds Read Vulnerability (CVE-2016-9935)
CVE-2016-9935
CWE-125
Critical
PHP Use After Free Vulnerability (CVE-2016-9936)
CVE-2016-9936
CWE-416
Critical
MediaWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2017-0372)
CVE-2017-0372
CWE-138
Critical
Ruby Use of Externally-Controlled Format String Vulnerability (CVE-2017-0898)
CVE-2017-0898
CWE-134
Critical
RubyGems Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-0899)
CVE-2017-0899
CWE-94
Critical
RubyGems Deserialization of Untrusted Data Vulnerability (CVE-2017-0903)
CVE-2017-0903
CWE-502
Critical
ATutor Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2017-1000002)
CVE-2017-1000002
CWE-22
Critical
ATutor Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-1000004)
CVE-2017-1000004
CWE-138
Critical
Atlassian Jira Deserialization of Untrusted Data Vulnerability (CVE-2020-14172)
CVE-2020-14172
CWE-502
Critical
GlassFish Improper Authentication Vulnerability (CVE-2017-1000030)
CVE-2017-1000030
CWE-287
Critical
Python Integer Overflow or Wraparound Vulnerability (CVE-2017-1000158)
CVE-2017-1000158
CWE-190
Critical
Jenkins Deserialization of Untrusted Data Vulnerability (CVE-2017-1000353)
CVE-2017-1000353
CWE-502
Critical
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1000362)
CVE-2017-1000362
CWE-200
Critical
PHP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-1581)
CVE-2007-1581
CWE-94
Critical
b2evolution Improper Input Validation Vulnerability (CVE-2017-1000423)
CVE-2017-1000423
CWE-20
Critical
Jenkins Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2024-23897)
CVE-2024-23897
CWE-22
Critical
PostgreSQL Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2024-24213)
CVE-2024-24213
CWE-138
Critical
PHP Other Vulnerability (CVE-2007-1399)
CVE-2007-1399
-
Critical
PHP Numeric Errors Vulnerability (CVE-2007-1383)
CVE-2007-1383
-
Critical
GibbonEdu Improper Neutralization of Special Elements Used in a Template Engine Vulnerability (CVE-2024-24724)
CVE-2024-24724
CWE-138
Critical
math.js Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-1001002)
CVE-2017-1001002
CWE-94
Critical
WebLogic CVE-2017-10137 Vulnerability (CVE-2017-10137)
CVE-2017-10137
-
Critical
WebLogic CVE-2020-2551 Vulnerability (CVE-2020-2551)
CVE-2020-2551
-
Critical
Apache Traffic Server CVE-2015-5168 Vulnerability (CVE-2015-5168)
CVE-2015-5168
-
Critical
ReviveAdserver Deserialization of Untrusted Data Vulnerability (CVE-2017-5830)
CVE-2017-5830
CWE-502
Critical
HSQLDB CVE-2022-41853 Vulnerability (CVE-2022-41853)
CVE-2022-41853
-
Critical
Dolibarr Incorrect Default Permissions Vulnerability (CVE-2022-40871)
CVE-2022-40871
CWE-276
Critical
Oracle JRE CVE-2013-2383 Vulnerability (CVE-2013-2383)
CVE-2013-2383
-
Critical
Oracle JRE CVE-2013-2384 Vulnerability (CVE-2013-2384)
CVE-2013-2384
-
Critical
phpList Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2021-3188)
CVE-2021-3188
CWE-1236
Critical
Python Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2021-3177)
CVE-2021-3177
CWE-120
Critical
Oracle JRE CVE-2013-2414 Vulnerability (CVE-2013-2414)
CVE-2013-2414
-
Critical
WeBid Server-Side Request Forgery (SSRF) Vulnerability (CVE-2022-41477)
CVE-2022-41477
CWE-918
Critical
PrestaShop Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-3110)
CVE-2021-3110
CWE-138
Critical
Apache HTTP Server Out-of-bounds Write Vulnerability (CVE-2021-39275)
CVE-2021-39275
CWE-787
Critical
Oracle JRE CVE-2013-2421 Vulnerability (CVE-2013-2421)
CVE-2013-2421
-
Critical
Oracle JRE CVE-2013-2422 Vulnerability (CVE-2013-2422)
CVE-2013-2422
-
Critical
Oracle HTTP Server Out-of-bounds Write Vulnerability (CVE-2021-39275)
CVE-2021-39275
CWE-787
Critical
Oracle JRE CVE-2013-2425 Vulnerability (CVE-2013-2425)
CVE-2013-2425
-
Critical
Moodle CVE-2022-40314 Vulnerability (CVE-2022-40314)
CVE-2022-40314
-
Critical
Oracle JRE CVE-2013-2426 Vulnerability (CVE-2013-2426)
CVE-2013-2426
-
Critical
Ruby Inadequate Encryption Strength Vulnerability (CVE-2011-4121)
CVE-2011-4121
CWE-326
Critical
OpenSSL Resource Management Errors Vulnerability (CVE-2011-4109)
CVE-2011-4109
-
Critical
Oracle JRE CVE-2013-2427 Vulnerability (CVE-2013-2427)
CVE-2013-2427
-
Critical
Oracle JRE CVE-2013-2428 Vulnerability (CVE-2013-2428)
CVE-2013-2428
-
Critical
Oracle JRE CVE-2013-2431 Vulnerability (CVE-2013-2431)
CVE-2013-2431
-
Critical
Oracle JRE CVE-2013-2432 Vulnerability (CVE-2013-2432)
CVE-2013-2432
-
Critical
«
1
...
6
7
8
...
181
»