Vulnerabilities > Acunetix

DATE CVE VULNERABILITY TITLE RISK
2017-07-27 CVE-2017-11674 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Acunetix web vulnerability Scanner 8
Reporter.exe in Acunetix 8 allows remote attackers to cause a denial of service (application crash) via a malformed PRE file, related to a "Read Access Violation starting at reporter!madTraceProcess."
network
acunetix CWE-119
4.3
2017-07-27 CVE-2017-11673 Improper Input Validation vulnerability in Acunetix web vulnerability Scanner 8
Reporter.exe in Acunetix 8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed PRE file, related to a "User Mode Write AV starting at reporter!madTraceProcess."
network
low complexity
acunetix CWE-20
7.5
2015-12-17 CVE-2015-4027 Permissions, Privileges, and Access Controls vulnerability in Acunetix web vulnerability Scanner
The AcuWVSSchedulerv10 service in Acunetix Web Vulnerability Scanner (WVS) before 10 build 20151125 allows local users to gain privileges via a command parameter in the reporttemplate property in a params JSON object to api/addScan.
local
low complexity
acunetix CWE-264
7.2
2014-04-27 CVE-2014-2994 Buffer Errors vulnerability in Acunetix web vulnerability Scanner 8
Stack-based buffer overflow in Acunetix Web Vulnerability Scanner (WVS) 8 build 20120704 allows remote attackers to execute arbitrary code via an HTML file containing an IMG element with a long URL (src attribute).
network
low complexity
acunetix CWE-119
critical
10.0
2007-01-09 CVE-2007-0120 Remote Denial of Service vulnerability in Acunetix Web Vulnerability Scanner
Acunetix Web Vulnerability Scanner (WVS) 4.0 Build 20060717 and earlier allows remote attackers to cause a denial of service (application crash) via multiple HTTP requests containing invalid Content-Length values.
local
acunetix
1.9