🚀 Invicti Acquires Kondukto to Deliver Proof-Based Application Security Posture Management
100% Signal 0% Noise
Platform
Platform Overview
ASPM
APIÂ Security
DAST
SAST
SCA
Container Security
AI-Powered AppSec
Cost Savings Calculator
Features
Solutions
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Case Studies
Invicti Learn
Live Training
Partners
Documentation
Get a demo
Web Application Vulnerabilities Index
This page lists
144
vulnerabilities categorized as medium severity that can be detected by Invicti.
Select Category
Critical
High
Medium
Low
Best Practice
Information
Select Vulnerability
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Vulnerability Name
Classification
Severity
Out-of-date Version (e107)
Out-of-date Version (e107)
Information
Out-of-date Version (easyXDM)
Out-of-date Version (easyXDM)
Information
Out-of-date Version (ef.js)
Out-of-date Version (ef.js)
Information
Out-of-date Version (jPlayer)
Out-of-date Version (jPlayer)
Information
Out-of-date Version (jQuery Mask)
Out-of-date Version (jQuery Mask)
Information
Out-of-date Version (jQuery Migrate)
Out-of-date Version (jQuery Migrate)
Information
Out-of-date Version (jQuery Mobile)
Out-of-date Version (jQuery Mobile)
Information
Out-of-date Version (jQuery UI Autocomplete)
Out-of-date Version (jQuery UI Autocomplete)
Information
Out-of-date Version (jQuery UI Dialog)
Out-of-date Version (jQuery UI Dialog)
Information
Out-of-date Version (jQuery UI Tooltip)
Out-of-date Version (jQuery UI Tooltip)
Information
Out-of-date Version (jQuery Validation)
Out-of-date Version (jQuery Validation)
Information
Out-of-date Version (jQuery)
Out-of-date Version (jQuery)
Information
Out-of-date Version (jsTree)
Out-of-date Version (jsTree)
Information
Out-of-date Version (jszip)
Out-of-date Version (jszip)
Information
Out-of-date Version (markdown-it)
Out-of-date Version (markdown-it)
Information
Out-of-date Version (mod_ssl)
Out-of-date Version (mod_ssl)
Information
Out-of-date Version (mustache.js)
Out-of-date Version (mustache.js)
Information
Out-of-date Version (osClass)
Out-of-date Version (osClass)
Information
Out-of-date Version (osCommerce)
Out-of-date Version (osCommerce)
Information
Out-of-date Version (osTicket)
Out-of-date Version (osTicket)
Information
Out-of-date Version (ownCloud)
Out-of-date Version (ownCloud)
Information
Out-of-date Version (pH7CMS)
Out-of-date Version (pH7CMS)
Information
Out-of-date Version (pdf.js)
Out-of-date Version (pdf.js)
Information
Out-of-date Version (phpBB)
Out-of-date Version (phpBB)
Information
Out-of-date Version (phpList)
Out-of-date Version (phpList)
Information
Out-of-date Version (phpMyAdmin)
Out-of-date Version (phpMyAdmin)
Information
Out-of-date Version (prettyPhoto)
Out-of-date Version (prettyPhoto)
Information
Out-of-date Version (qdPM)
Out-of-date Version (qdPM)
Information
Out-of-date Version (slick)
Out-of-date Version (slick)
Information
Out-of-date Version (typeahead.js)
Out-of-date Version (typeahead.js)
Information
Out-of-date Version (webERP)
Out-of-date Version (webERP)
Information
Overly Long Session Timeout
Overly Long Session Timeout
Medium
PHP Identified
PHP Identified
Information
PHP allow_url_fopen Is Enabled
PHP allow_url_fopen Is Enabled
Low
PHP allow_url_include Is Enabled
PHP allow_url_include Is Enabled
Low
PHP display_errors Is Enabled
PHP display_errors Is Enabled
Low
PHP enable_dl Is Enabled
PHP enable_dl Is Enabled
Medium
PHP magic_quotes_gpc Is Disabled
PHP magic_quotes_gpc Is Disabled
Medium
PHP open_basedir Is Not Configured
PHP open_basedir Is Not Configured
Low
PHP register_globals Is Enabled
PHP register_globals Is Enabled
Medium
PHP session.use_only_cookies Is Disabled
PHP session.use_only_cookies Is Disabled
Medium
PHP session.use_trans_sid Is Enabled
PHP session.use_trans_sid Is Enabled
Medium
Pardot Server Identified
Pardot Server Identified
Information
Passive Mixed Content over HTTPS
Passive Mixed Content over HTTPS
Low
Passive Web Backdoor Detected
Passive Web Backdoor Detected
Low
Password Transmitted over HTTP
Password Transmitted over HTTP
High
Password Transmitted over Query String
Password Transmitted over Query String
Medium
Payara Identified
Payara Identified
Information
PdfJs Identified
PdfJs Identified
Information
Perl Identified
Perl Identified
Information
Phaser Identified
Phaser Identified
Information
Phishing by Navigating Browser Tabs
Phishing by Navigating Browser Tabs
Low
Phorum Detected
Phorum Detected
Information
Php Address Book Detected
Php Address Book Detected
Information
PhpFusion Detected
PhpFusion Detected
Information
PhpMyFAQ Detected
PhpMyFAQ Detected
Information
Phusion Passenger Identified
Phusion Passenger Identified
Information
Piwigo Detected
Piwigo Detected
Information
Piwik Detected
Piwik Detected
Information
PixiJs Identified
PixiJs Identified
Information
Play Web Framework Identified
Play Web Framework Identified
Information
Plesk (Linux) Identified
Plesk (Linux) Identified
Information
Plesk (Windows) Identified
Plesk (Windows) Identified
Information
Plone CMS Identified
Plone CMS Identified
Information
Plupload Identified
Plupload Identified
Information
PmWiki Detected
PmWiki Detected
Information
Podcast Generator Detected
Podcast Generator Detected
Information
Polyfill.io Supply Chain Attack
Polyfill.io Supply Chain Attack
High
Polymer Identified
Polymer Identified
Information
Popper.js Identified
Popper.js Identified
Information
Possible Boolean Mongo Db Injection
Possible Boolean Mongo Db Injection
Critical
PossibleBlindMongoDB
PossibleBlindMongoDB
Critical
PrestaShop Detected
PrestaShop Detected
Information
PrettyPhoto Identified
PrettyPhoto Identified
Information
1