🚀 Invicti Acquires Kondukto to Deliver Proof-Based Application Security Posture Management
100% Signal 0% Noise
Platform
Platform Overview
ASPM
APIÂ Security
DAST
SAST
SCA
Container Security
AI-Powered AppSec
Features
Solutions
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Cost Savings Calc
Live Training
Partners
Documentation
Get a demo
Web Application Vulnerabilities Index
This page lists
144
vulnerabilities categorized as medium severity that can be detected by Invicti.
Select Category
Critical
High
Medium
Low
Best Practice
Information
Select Vulnerability
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Vulnerability Name
Classification
Severity
Pega Identified
Pega Identified
Information
Perl Identified
Perl Identified
Information
pH7CMS Detected
pH7CMS Detected
Information
Phaser Identified
Phaser Identified
Information
Phishing by Navigating Browser Tabs
Phishing by Navigating Browser Tabs
Low
Php Address Book Detected
Php Address Book Detected
Information
PHP allow_url_fopen Is Enabled
PHP allow_url_fopen Is Enabled
Low
PHP allow_url_include Is Enabled
PHP allow_url_include Is Enabled
Low
phpBB Detected
phpBB Detected
Information
PHP display_errors Is Enabled
PHP display_errors Is Enabled
Low
PHP enable_dl Is Enabled
PHP enable_dl Is Enabled
Medium
PhpFusion Detected
PhpFusion Detected
Information
PHP Identified
PHP Identified
Information
phpinfo() Output Detected
phpinfo() Output Detected
Low
phpList Detected
phpList Detected
Information
phpLiteAdmin Detected
phpLiteAdmin Detected
Information
phpMoAdmin Detected
phpMoAdmin Detected
Information
phpMyAdmin Detected
phpMyAdmin Detected
Information
PhpMyFAQ Detected
PhpMyFAQ Detected
Information
PHP open_basedir Is Not Configured
PHP open_basedir Is Not Configured
Low
PHP register_globals Is Enabled
PHP register_globals Is Enabled
Medium
PHP session.use_only_cookies Is Disabled
PHP session.use_only_cookies Is Disabled
Medium
PHP session.use_trans_sid Is Enabled
PHP session.use_trans_sid Is Enabled
Medium
Phusion Passenger Identified
Phusion Passenger Identified
Information
Piwigo Detected
Piwigo Detected
Information
Piwik Detected
Piwik Detected
Information
PixiJs Identified
PixiJs Identified
Information
Play Web Framework Identified
Play Web Framework Identified
Information
Plesk (Linux) Identified
Plesk (Linux) Identified
Information
Plesk (Windows) Identified
Plesk (Windows) Identified
Information
Plone CMS Identified
Plone CMS Identified
Information
Plupload Identified
Plupload Identified
Information
PmWiki Detected
PmWiki Detected
Information
Podcast Generator Detected
Podcast Generator Detected
Information
Polyfill.io Supply Chain Attack
Polyfill.io Supply Chain Attack
High
Polymer Identified
Polymer Identified
Information
Popper.js Identified
Popper.js Identified
Information
PrestaShop Detected
PrestaShop Detected
Information
PrettyPhoto Identified
PrettyPhoto Identified
Information
Private Burp Collaborator Server Identified
Private Burp Collaborator Server Identified
Information
Private Json Web Key Set Disclosure
Private Json Web Key Set Disclosure
Critical
Programming Error Message
Programming Error Message
Low
Programming Error Message (Ruby)
Programming Error Message (Ruby)
Low
ProjectSend Detected
ProjectSend Detected
Information
Prototypejs Identified
Prototypejs Identified
Information
Prototype Pollution
Prototype Pollution
Information
Python Identified
Python Identified
Information
Python WSGIserver Identified
Python WSGIserver Identified
Information
qdPM Detected
qdPM Detected
Information
Question2Answer Detected
Question2Answer Detected
Information
Ramda Identified
Ramda Identified
Information
React Identified
React Identified
Information
Readme/Help File Detected
Readme/Help File Detected
Information
Referrer-Policy Needs Proper Fallback
Referrer-Policy Needs Proper Fallback
Information
Referrer-Policy Not Implemented
Referrer-Policy Not Implemented
Best Practice
Reflected File Download
Reflected File Download
Low
RegreSSHion Attack (CVE-2024-6387)
RegreSSHion Attack (CVE-2024-6387)
Critical
Remote Code Execution and DoS in HTTP.sys (IIS)
Remote Code Execution and DoS in HTTP.sys (IIS)
Critical
Remote Code Execution (Spring4Shell)
Remote Code Execution (Spring4Shell)
Critical
Remote File Inclusion
Remote File Inclusion
Critical
RequireJs Identified
RequireJs Identified
Information
Resin Application Server Identified
Resin Application Server Identified
Information
Respondjs Identified
Respondjs Identified
Information
Restlet Framework Identified
Restlet Framework Identified
Information
Retired Hash Function in SAML Response
Retired Hash Function in SAML Response
Information
RevealJs Identified
RevealJs Identified
Information
Reverse Proxy Detected (Apache Traffic Server)
Reverse Proxy Detected (Apache Traffic Server)
Information
Reverse Proxy Detected (Citrix Netscaler)
Reverse Proxy Detected (Citrix Netscaler)
Information
Reverse Proxy Detected (Envoy)
Reverse Proxy Detected (Envoy)
Information
Reverse Proxy Detected (F5 BIG-IP)
Reverse Proxy Detected (F5 BIG-IP)
Information
Reverse Proxy Detected (HAProxy)
Reverse Proxy Detected (HAProxy)
Information
Reverse Proxy Detected (Skipper)
Reverse Proxy Detected (Skipper)
Information
Revive Adserver Detected
Revive Adserver Detected
Information
Revoked SSL Certificate
Revoked SSL Certificate
Medium
1