🚀 Invicti Acquires Kondukto to Deliver Proof-Based Application Security Posture Management
100% Signal 0% Noise
Platform
Platform Overview
ASPM
APIÂ Security
DAST
SAST
SCA
Container Security
AI-Powered AppSec
Cost Savings Calculator
Features
Solutions
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Live Training
Partners
Documentation
Get a demo
Web Application Vulnerabilities Index
This page lists
144
vulnerabilities categorized as medium severity that can be detected by Invicti.
Select Category
Critical
High
Medium
Low
Best Practice
Information
Select Vulnerability
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Vulnerability Name
Classification
Severity
Backup Source Code Detected
Backup Source Code Detected
High
Base Tag Hijacking
Base Tag Hijacking
Medium
Bash Command Injection Vulnerability (Shellshock Bug)
Bash Command Injection Vulnerability (Shellshock Bug)
Critical
Basic Authorization Required
Basic Authorization Required
Information
Basic Authorization over HTTP
Basic Authorization over HTTP
High
BitNinja Captcha Server Identified
BitNinja Captcha Server Identified
Information
Blind Command Injection
Blind Command Injection
Critical
Blind Cross-site Scripting
Blind Cross-site Scripting
High
Blind MongoDB Injection
Blind MongoDB Injection
High
Blind SQL Injection
Blind SQL Injection
Critical
Bluebird Identified
Bluebird Identified
Information
Bluebird Identified
Bluebird Identified
Information
Bomgar Remote Support Software Detected
Bomgar Remote Support Software Detected
Information
Boolean Based MongoDB Injection
Boolean Based MongoDB Injection
High
Boolean Based MongoDB Injection
Boolean Based MongoDB Injection
High
Boolean Based SQL Injection
Boolean Based SQL Injection
Critical
Bootbox Identified
Bootbox Identified
Information
Bootbox Identified
Bootbox Identified
Information
Bootstrap3DateTimePicker Identified
Bootstrap3DateTimePicker Identified
Information
Bootstrap3DateTimePicker Identified
Bootstrap3DateTimePicker Identified
Information
BootstrapSelect Identified
BootstrapSelect Identified
Information
BootstrapSelect Identified
BootstrapSelect Identified
Information
BootstrapTable Identified
BootstrapTable Identified
Information
BootstrapTable Identified
BootstrapTable Identified
Information
BootstrapToggle Identified
BootstrapToggle Identified
Information
BootstrapToggle Identified
BootstrapToggle Identified
Information
BootstrapTypeahead Identified
BootstrapTypeahead Identified
Information
BootstrapTypeahead Identified
BootstrapTypeahead Identified
Information
Bootstrapjs Identified
Bootstrapjs Identified
Information
Bootstrapjs Identified
Bootstrapjs Identified
Information
CDN Detected (Airee)
CDN Detected (Airee)
Information
CDN Detected (Akamai)
CDN Detected (Akamai)
Information
CDN Detected (Arvan Cloud)
CDN Detected (Arvan Cloud)
Information
CDN Detected (Azure CDN)
CDN Detected (Azure CDN)
Information
CDN Detected (CDN77)
CDN Detected (CDN77)
Information
CDN Detected (Fastly)
CDN Detected (Fastly)
Information
CDN Detected (Fireblade)
CDN Detected (Fireblade)
Information
CDN Detected (Google Cloud CDN)
CDN Detected (Google Cloud CDN)
Information
CDN Detected (Incapsula)
CDN Detected (Incapsula)
Information
CDN Detected (Instart)
CDN Detected (Instart)
Information
CDN Detected (Instart)
CDN Detected (Instart)
Information
CDN Detected (JsDelivr)
CDN Detected (JsDelivr)
Information
CDN Detected (KeyCDN)
CDN Detected (KeyCDN)
Information
CDN Detected (MaxCDN)
CDN Detected (MaxCDN)
Information
CDN Detected (Netlify)
CDN Detected (Netlify)
Information
CDN Detected (PowerCDN)
CDN Detected (PowerCDN)
Information
CDN Detected (Qrator)
CDN Detected (Qrator)
Information
CDN Detected (StackPath)
CDN Detected (StackPath)
Information
CDN Detected (Sucuri)
CDN Detected (Sucuri)
Information
CDN Detected (West263)
CDN Detected (West263)
Information
CVE-2024-6297 WordPress Plugin Backdoor
CVE-2024-6297 WordPress Plugin Backdoor
Critical
CVE-2024-6297 WordPress Plugin Backdoor
CVE-2024-6297 WordPress Plugin Backdoor
Critical
CVS Detected
CVS Detected
Medium
Caddy Web Server Identified
Caddy Web Server Identified
Information
CakePHP Framework Identified
CakePHP Framework Identified
Information
CanvasJS Identified
CanvasJS Identified
Information
CanvasJS Identified
CanvasJS Identified
Information
Cdnjs Identified
Cdnjs Identified
Information
Certificate is Signed Using a Weak Signature Algorithm
Certificate is Signed Using a Weak Signature Algorithm
High
Chamilo Detected
Chamilo Detected
Information
Chartjs Identified
Chartjs Identified
Information
Chartjs Identified
Chartjs Identified
Information
Cherokee Identified
Cherokee Identified
Information
CherryPy Identified
CherryPy Identified
Information
Ckeditor Identified
Ckeditor Identified
Information
Ckeditor Identified
Ckeditor Identified
Information
Claroline Detected
Claroline Detected
Information
ClipBucket Detected
ClipBucket Detected
Information
Cloudflare Bot Management
Cloudflare Bot Management
Information
Cloudflare Browser Insights
Cloudflare Browser Insights
Information
Cloudflare Identified
Cloudflare Identified
Information
Code Evaluation (ASP)
Code Evaluation (ASP)
Critical
Code Evaluation (Apache Struts S02-53)
Code Evaluation (Apache Struts S02-53)
Critical
Code Evaluation (Apache Struts)
Code Evaluation (Apache Struts)
Critical
1