Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Missing Update
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Missing Update
This page lists
22224 vulnerabilities
in this category.
Critical: 1394
High: 12186
Medium: 7891
Low: 749
Information: 4
Vulnerability Name
CVE
CWE
Severity
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-26477)
CVE-2023-26477
CWE-94
Critical
WebLogic CVE-2022-21306 Vulnerability (CVE-2022-21306)
CVE-2022-21306
-
Critical
Oracle HTTP Server Out-of-bounds Write Vulnerability (CVE-2021-39275)
CVE-2021-39275
CWE-787
Critical
IBM WebSEAL Missing Authorization Vulnerability (CVE-2020-4499)
CVE-2020-4499
CWE-862
Critical
WebLogic CVE-2021-2075 Vulnerability (CVE-2021-2075)
CVE-2021-2075
-
Critical
Oracle Database Server CVE-2014-6467 Vulnerability (CVE-2014-6467)
CVE-2014-6467
-
Critical
Apache HTTP Server Out-of-bounds Write Vulnerability (CVE-2021-26691)
CVE-2021-26691
CWE-787
Critical
Atlassian Confluence Incorrect Authorization Vulnerability (CVE-2023-22518)
CVE-2023-22518
CWE-863
Critical
PrestaShop Improper Authentication Vulnerability (CVE-2020-4074)
CVE-2020-4074
CWE-287
Critical
Nginx Other Vulnerability (CVE-2016-0746)
CVE-2016-0746
-
Critical
PHP Other Vulnerability (CVE-2000-0967)
CVE-2000-0967
-
Critical
Atlassian Confluence CVE-2023-22515 Vulnerability (CVE-2023-22515)
CVE-2023-22515
-
Critical
Oracle Database Server CVE-2014-6455 Vulnerability (CVE-2014-6455)
CVE-2014-6455
-
Critical
PHP Integer Overflow or Wraparound Vulnerability (CVE-2022-37454)
CVE-2022-37454
CWE-190
Critical
Oracle Database Server CVE-2014-6567 Vulnerability (CVE-2014-6567)
CVE-2014-6567
-
Critical
WordPress Deserialization of Untrusted Data Vulnerability (CVE-2020-36326)
CVE-2020-36326
CWE-502
Critical
Moodle Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-36392)
CVE-2021-36392
CWE-138
Critical
WordPress Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') Vulnerability (CVE-2016-10033)
CVE-2016-10033
CWE-707
Critical
Apache HTTP Server Integer Overflow or Wraparound Vulnerability (CVE-2022-22721)
CVE-2022-22721
CWE-190
Critical
Oracle HTTP Server Integer Overflow or Wraparound Vulnerability (CVE-2022-22721)
CVE-2022-22721
CWE-190
Critical
Apache HTTP Server Other Vulnerability (CVE-1999-1199)
CVE-1999-1199
-
Critical
MediaWiki Improper Restriction of XML External Entity Reference Vulnerability (CVE-2014-9487)
CVE-2014-9487
CWE-611
Critical
Magento CVE-2020-9585 Vulnerability (CVE-2020-9585)
CVE-2020-9585
-
Critical
Spring Cloud Gateway Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression La Vulnerability (CVE-2022-22947)
CVE-2022-22947
CWE-138
Critical
PostgreSQL Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2015-3166)
CVE-2015-3166
CWE-119
Critical
WebLogic Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-22965)
CVE-2022-22965
CWE-94
Critical
Artifactory Improper Privilege Management Vulnerability (CVE-2022-0668)
CVE-2022-0668
CWE-269
Critical
Joomla Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') Vulnerability (CVE-2016-10033)
CVE-2016-10033
CWE-707
Critical
Atlassian Jira Improper Authentication Vulnerability (CVE-2022-0540)
CVE-2022-0540
CWE-287
Critical
Moodle Improper Input Validation Vulnerability (CVE-2021-3943)
CVE-2021-3943
CWE-20
Critical
SharePoint CVE-2023-29357 Vulnerability (CVE-2023-29357)
CVE-2023-29357
-
Critical
Moodle Improper Input Validation Vulnerability (CVE-2022-35649)
CVE-2022-35649
CWE-20
Critical
Oracle HTTP Server Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2022-22720)
CVE-2022-22720
CWE-444
Critical
Artifactory Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2016-10036)
CVE-2016-10036
CWE-434
Critical
Oracle HTTP Server Other Vulnerability (CVE-1999-1125)
CVE-1999-1125
-
Critical
Oracle Database Server CVE-2015-0457 Vulnerability (CVE-2015-0457)
CVE-2015-0457
-
Critical
WordPress Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2016-10045)
CVE-2016-10045
CWE-138
Critical
Craft CMS Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-27903)
CVE-2021-27903
CWE-94
Critical
Joomla Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2016-10045)
CVE-2016-10045
CWE-138
Critical
Magento Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2020-9583)
CVE-2020-9583
CWE-138
Critical
Oracle Database Server CVE-2015-4796 Vulnerability (CVE-2015-4796)
CVE-2015-4796
-
Critical
Moodle CVE-2021-36394 Vulnerability (CVE-2021-36394)
CVE-2021-36394
-
Critical
Apache HTTP Server Improper Handling of Case Sensitivity Vulnerability (CVE-2001-0766)
CVE-2001-0766
CWE-178
Critical
Serendipity Improper Access Control Vulnerability (CVE-2016-10082)
CVE-2016-10082
CWE-284
Critical
Joomla Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-35613)
CVE-2020-35613
CWE-138
Critical
Moodle Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-36393)
CVE-2021-36393
CWE-138
Critical
WordPress Ultimate Member Plugin Improper Privilege Management Vulnerability (CVE-2020-36155)
CVE-2020-36155
CWE-269
Critical
WordPress Ultimate Member Plugin CVE-2020-36157 Vulnerability (CVE-2020-36157)
CVE-2020-36157
-
Critical
Jenkins Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-0788)
CVE-2016-0788
CWE-264
Critical
PHP Use of Externally-Controlled Format String Vulnerability (CVE-2015-8617)
CVE-2015-8617
CWE-134
Critical
Pega Infinity Improper Authentication Vulnerability (CVE-2021-27651)
CVE-2021-27651
CWE-287
Critical
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-0791)
CVE-2016-0791
CWE-200
Critical
Magento Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-9664)
CVE-2020-9664
CWE-94
Critical
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-28333)
CVE-2023-28333
CWE-94
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-36098)
CVE-2022-36098
CWE-707
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-36096)
CVE-2022-36096
CWE-707
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-36094)
CVE-2022-36094
CWE-707
Critical
WebLogic CVE-2021-2136 Vulnerability (CVE-2021-2136)
CVE-2021-2136
-
Critical
Oracle Database Server CVE-2015-4863 Vulnerability (CVE-2015-4863)
CVE-2015-4863
-
Critical
Magento CVE-2020-9632 Vulnerability (CVE-2020-9632)
CVE-2020-9632
-
Critical
Sqlite CVE-2021-20223 Vulnerability (CVE-2021-20223)
CVE-2021-20223
-
Critical
OpenSSL Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-0799)
CVE-2016-0799
CWE-119
Critical
MediaWiki CVE-2023-29141 Vulnerability (CVE-2023-29141)
CVE-2023-29141
-
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-29201)
CVE-2023-29201
CWE-707
Critical
IBMHttpServer Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2015-4947)
CVE-2015-4947
CWE-119
Critical
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2015-4852)
CVE-2015-4852
CWE-502
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-29202)
CVE-2023-29202
CWE-707
Critical
Magento CVE-2020-9631 Vulnerability (CVE-2020-9631)
CVE-2020-9631
-
Critical
Magento Improper Privilege Management Vulnerability (CVE-2020-9630)
CVE-2020-9630
CWE-269
Critical
PHP Other Vulnerability (CVE-2015-6834)
CVE-2015-6834
-
Critical
Perl Out-of-bounds Read Vulnerability (CVE-2015-8608)
CVE-2015-8608
CWE-125
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-29207)
CVE-2023-29207
CWE-707
Critical
Internet Information Services Other Vulnerability (CVE-1999-1376)
CVE-1999-1376
-
Critical
PHP Other Vulnerability (CVE-2015-6835)
CVE-2015-6835
-
Critical
Oracle Database Server CVE-2015-2629 Vulnerability (CVE-2015-2629)
CVE-2015-2629
-
Critical
«
1
...
15
16
17
...
297
»