Vulnerability Name CVE Severity
Apache Axis2 web services enumeration
Apache mod_negotiation filename bruteforcing
Apache Solr endpoint
Apache stronghold-info enabled
Apache stronghold-status enabled
Arbitrary File Read on Nuxt.js Development Server
ASP.NET debugging enabled
ASP.NET path disclosure
Atlassian Jira Manage Filters information disclosure
ColdFusion path disclosures
Composer installed.json publicly accessible
Documentation files
Envoy Metadata disclosure
Error messages
Error page path disclosure
F5 BIG-IP Cookie Information Disclosure
FrontPage Identified
Gitlab user disclosure
HTML Form found in redirect page
IIS Path disclosure
Information Disclosure (Microsoft Office)
Insecure transition from HTTPS to HTTP in form post
Internet Information Server returns IP address in HTTP header (Content-Location)
JBoss web service console
Jenkins open people list
Jenkins user enumeration
Jira Unauthorized User Enumeration via UserPickerBrowser
Joe Editor DEADJOE file
Microsoft IIS Server service.cnf file found
MySQL username disclosure
Nuxt.js Running in Development Mode
OData feed accessible anonymously
Oracle Reports Services RWServlet environment variables disclosure
PHP display_errors Is Enabled
Possible sensitive directories
Possible sensitive files
Possible SQL Statement in comment
Possible username or password disclosure
Possible virtual host found
Programming Error Messages
Sensitive pages could be cached
Session ID in URL
Snoop Servlet information disclosure
Stack Trace Disclosure (Apache MyFaces)
Stack Trace Disclosure (ASP.NET)
Stack Trace Disclosure (CakePHP)
Stack Trace Disclosure (CherryPy)
Stack Trace Disclosure (Grails)
Stack Trace Disclosure (GWT)
Stack Trace Disclosure (NodeJS)
Stack Trace Disclosure (Ruby-Sinatra Framework)
Stack Trace Disclosure (Tomcat)
Symfony debug mode enabled
Tomcat status page
TRACE/TRACK Method Detected
Typo3 debug mode enabled
Typo3 sensitive files
Unrestricted access to a monitoring system
Unrestricted access to NGINX+ Status module
Unrestricted access to Prometheus
Unrestricted access to Prometheus Metrics
Version Disclosure (ASP.NET)
Version Disclosure (ASP.NET MVC)
Version Disclosure (PHP)
Whoops error handler component detected
WordPress full path disclosure
WordPress REST API User Enumeration
[Possible] Internal IP Address Disclosure