VendorsAcunetixweb_vulnerability_scannerall versions
Vulnerabilities

Acunetix Web Vulnerability Scanner

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2014-2994
Stack-based buffer overflow in Acunetix Web Vulnerability Scanner (WVS) 8 build 20120704 allows remote attackers to execute arbitrary code via an HTML file containing an IMG element with a long URL (src attribute).
Published 2014-04-27 · Modified
10.01 PoCEPSS 0.264
CVE-2017-11673
Reporter.exe in Acunetix 8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed PRE file, related to a "User Mode Write AV starting at reporter!madTraceProcess."
Published 2017-07-27 · Modified
9.8EPSS 0.027
CVE-2015-4027
The AcuWVSSchedulerv10 service in Acunetix Web Vulnerability Scanner (WVS) before 10 build 20151125 allows local users to gain privileges via a command parameter in the reporttemplate property in a params JSON object to api/addScan.
Published 2015-12-17 · Modified
7.21 PoCEPSS 0.011
CVE-2017-11674
Reporter.exe in Acunetix 8 allows remote attackers to cause a denial of service (application crash) via a malformed PRE file, related to a "Read Access Violation starting at reporter!madTraceProcess."
Published 2017-07-27 · Modified
5.5EPSS 0.018
CVE-2007-0120
Acunetix Web Vulnerability Scanner (WVS) 4.0 Build 20060717 and earlier allows remote attackers to cause a denial of service (application crash) via multiple HTTP requests containing invalid Content-Length values.
Published 2007-01-09 · Modified
1.91 PoCEPSS 0.018