| 42896 | Xerver HTTP Response Splitting | medium |
| 42821 | IBM WebSphere Application Server 7.0 < Fix Pack 7 | medium |
| 42799 | Broken Web Servers | info |
| 42150 | NaviCOPA Encoded Space Request Source Code Disclosure | medium |
| 42057 | Web Server Allows Password Auto-Completion | low |
| 42052 | Apache 2.2.x < 2.2.14 Multiple Vulnerabilities | high |
| 41646 | NaviCOPA ::$DATA Extension Request Source Code Disclosure | medium |
| 41608 | nginx HTTP Request Multiple Vulnerabilities | high |
| 41057 | IBM WebSphere Application Server < 6.1.0.27 Multiple Vulnerabilities | medium |
| 40823 | IBM WebSphere Application Server 7.0 < Fix Pack 5 | medium |
| 40665 | Protected Web Page Detection | info |
| 40467 | Apache 2.2.x < 2.2.12 Multiple Vulnerabilities | high |
| 40353 | DD-WRT HTTP Daemon Metacharacter Injection Remote Code Execution | high |
| 39618 | Sun Java System Web Server ::$DATA Extension Request JSP Resource Disclosure | medium |
| 39479 | Apache Tomcat Cross-Application File Manipulation | medium |
| 39463 | HTTP Server Cookies Set | info |
| 39450 | IBM WebSphere Application Server < 6.1.0.25 Multiple Vulnerabilities | medium |
| 39446 | Apache Tomcat Detection | info |
| 39420 | MikroTik RouterOS with Blank Password (HTTP) | critical |
| 39330 | Sun GlassFish Enterprise < 2.1 Patch 02 Denial of Service | low |
| 39328 | Vulture Reverse Proxy Detection | info |
| 39006 | lighttpd PHP File Trailing Slash Request Source Disclosure | medium |
| 38978 | IBM WebSphere Application Server < 6.0.2.35 Multiple Vulnerabilities | medium |
| 38808 | Microsoft IIS WebDAV Unicode Request Directory Security Bypass | high |
| 38761 | A-A-S Application Access Server Default Admin Password | critical |
| 38760 | A-A-S Application Access Server Detection | info |
| 38157 | Microsoft SharePoint Server Detection | info |
| 36161 | IBM WebSphere Application Server < 6.1.0.23 Multiple Flaws | high |
| 36133 | IBM WebSphere Application Server 7.0 < Fix Pack 3 | high |
| 36132 | IBM WebSphere Application Server < 6.0.2.33 Multiple Vulnerabilities | high |
| 36101 | mod_perl Apache::Status URI XSS | low |
| 36100 | mod_perl Apache::Status Info Disclosure | medium |
| 35760 | Novell eDirectory < 8.8 SP3 FTF3 iMonitor HTTP Accept-Language Header Overflow | critical |
| 35725 | Novell GroupWise MTA Web Console Accessible | high |
| 35724 | TeamSpeak Server Administration Detection | info |
| 35659 | IBM WebSphere Application Server 6.1 < Fix Pack 21 Multiple Flaws | medium |
| 35619 | NaviCOPA < 3.01 6th February 2009 Multiple Vulnerabilities | critical |
| 35588 | NaviCOPA Trailing Dot Source Code Disclosure | medium |
| 35374 | Oracle WebLogic Server Plug-in Remote Overflow (1166189) | critical |
| 35082 | IBM WebSphere Application Server 7.0 < Fix Pack 1 | medium |
| 34970 | Apache Tomcat Manager Common Administrative Credentials | critical |
| 34851 | Polycom Videoconferencing Unit Detection | info |
| 34850 | Web Server Uses Basic Authentication Without HTTPS | low |
| 34781 | Oracle WebLogic Server mod_wl Invalid Parameter Remote Overflow (1150354) | critical |
| 34501 | IBM WebSphere Application Server < 6.0.2.31 Multiple Vulnerabilities | medium |
| 34489 | CCProxy < 6.62 HTTP Proxy CONNECT Request Handling Remote Overflow | critical |
| 34474 | Broken Web Server Detection | info |
| 34460 | Unsupported Web Server Detection | critical |
| 34433 | Apache mod_proxy_ftp Directory Component Wildcard Character Globbing XSS | medium |
| 34362 | Trend Micro OfficeScan Client Traversal Arbitrary File Access | medium |