Vulnerability Name CVE Severity
Liferay Portal Use of Password Hash With Insufficient Computational Effort Vulnerability (CVE-2024-25607) CVE-2024-25607
Liferay Portal Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2021-33321) CVE-2021-33321
Liferay TunnelServlet Deserialization Remote Code Execution
Liferay version older than 7.0
Liferay version older than 7.1
Liferay XMLRPC Blind SSRF
lightbox2 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-9441) CVE-2014-9441
Lighttpd Cryptographic Issues Vulnerability (CVE-2013-1427) CVE-2013-1427
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-1111) CVE-2008-1111
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-1270) CVE-2008-1270
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-4359) CVE-2008-4359
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-4360) CVE-2008-4360
Lighttpd Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-2324) CVE-2014-2324
Lighttpd Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-19052) CVE-2018-19052
Lighttpd Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2015-3200) CVE-2015-3200
Lighttpd Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-2323) CVE-2014-2323
Lighttpd Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2007-4727) CVE-2007-4727
Lighttpd Inadequate Encryption Strength Vulnerability (CVE-2013-4508) CVE-2013-4508
Lighttpd Integer Overflow or Wraparound Vulnerability (CVE-2019-11072) CVE-2019-11072
Lighttpd Missing Release of Memory after Effective Lifetime Vulnerability (CVE-2022-41556) CVE-2022-41556
Lighttpd NULL Pointer Dereference Vulnerability (CVE-2022-37797) CVE-2022-37797
Lighttpd Other Vulnerability (CVE-2005-0453) CVE-2005-0453
Lighttpd Other Vulnerability (CVE-2006-0760) CVE-2006-0760
Lighttpd Other Vulnerability (CVE-2006-0814) CVE-2006-0814
Lighttpd Other Vulnerability (CVE-2007-1869) CVE-2007-1869
Lighttpd Other Vulnerability (CVE-2007-1870) CVE-2007-1870
Lighttpd Other Vulnerability (CVE-2007-3946) CVE-2007-3946
Lighttpd Other Vulnerability (CVE-2007-3947) CVE-2007-3947
Lighttpd Other Vulnerability (CVE-2007-3948) CVE-2007-3948
Lighttpd Other Vulnerability (CVE-2007-3949) CVE-2007-3949
Lighttpd Other Vulnerability (CVE-2007-3950) CVE-2007-3950
Lighttpd Other Vulnerability (CVE-2008-1531) CVE-2008-1531
Lighttpd Other Vulnerability (CVE-2011-4362) CVE-2011-4362
Lighttpd Out-of-bounds Write Vulnerability (CVE-2022-22707) CVE-2022-22707
Lighttpd Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4559) CVE-2013-4559
Lighttpd Resource Management Errors Vulnerability (CVE-2008-0983) CVE-2008-0983
Lighttpd Resource Management Errors Vulnerability (CVE-2008-4298) CVE-2008-4298
Lighttpd Resource Management Errors Vulnerability (CVE-2010-0295) CVE-2010-0295
Lighttpd Resource Management Errors Vulnerability (CVE-2012-5533) CVE-2012-5533
Lighttpd Uncontrolled Resource Consumption Vulnerability (CVE-2022-30780) CVE-2022-30780
Lighttpd Use After Free Vulnerability (CVE-2013-4560) CVE-2013-4560
lighttpd v1.4.34 SQL injection and path traversal CVE-2014-2323 CVE-2014-2324
LimeSurvey CVE-2008-2570 Vulnerability (CVE-2008-2570) CVE-2008-2570
LimeSurvey CVE-2009-1604 Vulnerability (CVE-2009-1604) CVE-2009-1604
LimeSurvey CVE-2019-16176 Vulnerability (CVE-2019-16176) CVE-2019-16176
LimeSurvey CVE-2019-16180 Vulnerability (CVE-2019-16180) CVE-2019-16180
LimeSurvey CVE-2019-16181 Vulnerability (CVE-2019-16181) CVE-2019-16181
LimeSurvey Deserialization of Untrusted Data Vulnerability (CVE-2018-17057) CVE-2018-17057
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3752) CVE-2011-3752
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-7556) CVE-2018-7556
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-16177) CVE-2019-16177
LimeSurvey Improper Certificate Validation Vulnerability (CVE-2019-16179) CVE-2019-16179
LimeSurvey Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-5573) CVE-2007-5573
LimeSurvey Improper Input Validation Vulnerability (CVE-2019-15640) CVE-2019-15640
LimeSurvey Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-1000659) CVE-2018-1000659
LimeSurvey Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2019-9960) CVE-2019-9960
LimeSurvey Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2020-11455) CVE-2020-11455
LimeSurvey Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2019-16184) CVE-2019-16184
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-2571) CVE-2008-2571
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-5256) CVE-2011-5256
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-4995) CVE-2012-4995
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-5016) CVE-2014-5016
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-18358) CVE-2017-18358
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-17003) CVE-2018-17003
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-20322) CVE-2018-20322
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-16172) CVE-2019-16172
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-16173) CVE-2019-16173
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-16178) CVE-2019-16178
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-16182) CVE-2019-16182
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-17660) CVE-2019-17660
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-11456) CVE-2020-11456
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-16192) CVE-2020-16192
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-23710) CVE-2020-23710
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-25797) CVE-2020-25797
LimeSurvey Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-25798) CVE-2020-25798