Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Authentication Bypass Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Drupal Improper Privilege Management Vulnerability (CVE-2017-6924) CVE-2017-6924 CWE-269 CWE-269 High Drupal Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2017-6381) CVE-2017-6381 CWE-829 CWE-829 High Drupal Incorrect Authorization Vulnerability (CVE-2011-2726) CVE-2011-2726 CWE-863 CWE-863 High Drupal Incorrect Authorization Vulnerability (CVE-2017-6377) CVE-2017-6377 CWE-863 CWE-863 High Drupal Inefficient Regular Expression Complexity Vulnerability (CVE-2022-24729) CVE-2022-24729 CWE-1333 CWE-1333 High Drupal Insufficient Verification of Data Authenticity Vulnerability (CVE-2016-9450) CVE-2016-9450 CWE-345 CWE-345 High Drupal Other Vulnerability (CVE-2005-1871) CVE-2005-1871 High Drupal Other Vulnerability (CVE-2006-2742) CVE-2006-2742 High Drupal Other Vulnerability (CVE-2006-2831) CVE-2006-2831 High Drupal Other Vulnerability (CVE-2006-5476) CVE-2006-5476 High Drupal Other Vulnerability (CVE-2016-3164) CVE-2016-3164 High Drupal Other Vulnerability (CVE-2016-3167) CVE-2016-3167 High Drupal Other Vulnerability (CVE-2022-25275) CVE-2022-25275 High Drupal Other Vulnerability (CVE-2024-22362) CVE-2024-22362 High Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2687) CVE-2011-2687 CWE-264 CWE-264 High Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-3169) CVE-2016-3169 CWE-264 CWE-264 High Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-6211) CVE-2016-6211 CWE-264 CWE-264 High Drupal Reliance on Cookies without Validation and Integrity Checking Vulnerability (CVE-2022-29248) CVE-2022-29248 CWE-565 CWE-565 High Drupal Remote Code Execution (SA-CORE-2018-002) CVE-2018-7600 CWE-94 CWE-94 High Drupal Remote Code Execution (SA-CORE-2018-004) CVE-2018-7602 CWE-94 CWE-94 High Drupal Remote Code Execution Vulnerability (CVE-2020-13671) CVE-2020-13671 High Drupal REST Remote Code Execution CVE-2019-6340 CWE-78 CWE-78 High Drupal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-25277) CVE-2022-25277 CWE-434 CWE-434 High e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-15901) CVE-2018-15901 CWE-352 CWE-352 High e107 Deserialization of Untrusted Data Vulnerability (CVE-2016-10753) CVE-2016-10753 CWE-502 CWE-502 High e107 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2011-1513) CVE-2011-1513 CWE-138 CWE-138 High e107 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-4084) CVE-2009-4084 CWE-138 CWE-138 High e107 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-10378) CVE-2016-10378 CWE-138 CWE-138 High e107 Inadequate Encryption Strength Vulnerability (CVE-2021-27885) CVE-2021-27885 CWE-326 CWE-326 High e107 Other Vulnerability (CVE-2004-2042) CVE-2004-2042 High e107 Other Vulnerability (CVE-2005-1949) CVE-2005-1949 High e107 Other Vulnerability (CVE-2005-1966) CVE-2005-1966 High e107 Other Vulnerability (CVE-2005-2559) CVE-2005-2559 High e107 Other Vulnerability (CVE-2005-3521) CVE-2005-3521 High e107 Other Vulnerability (CVE-2005-4224) CVE-2005-4224 High e107 Other Vulnerability (CVE-2006-4548) CVE-2006-4548 High e107 Other Vulnerability (CVE-2006-5786) CVE-2006-5786 High e107 Other Vulnerability (CVE-2010-2098) CVE-2010-2098 High e107 Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-2099) CVE-2010-2099 CWE-264 CWE-264 High e107 Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-16388) CVE-2018-16388 CWE-434 CWE-434 High Edge Side Include injection CWE-918 CWE-918 High Ektron CMS400.NET ContentRatingGraph.aspx SQL injection CVE-2008-5122 CWE-89 CWE-89 High Ektron CMS Account Hijack CWE-264 CWE-264 High Ektron CMS authentication bypass CVE-2018-12596 CWE-285 CWE-285 High Ektron CMS multiple vulnerabilities CWE-434 CWE-434 High EktronCMS Saxon XSLT parser remote code execution CVE-2015-0931 CWE-78 CWE-78 High Ektron CMS unauthenticated code execution and Local File Read CVE-2012-5357 CVE-2012-5358 CWE-20 CWE-20 High Elasticsearch remote code execution CVE-2014-3120 CWE-78 CWE-78 High Elasticsearch service accessible CWE-200 CWE-200 High elFinder RCE (CVE-2021-32682) CVE-2021-32682 CWE-22 CWE-22 High Elgg Exposure of Private Personal Information to an Unauthorized Actor Vulnerability (CVE-2021-3980) CVE-2021-3980 CWE-359 CWE-359 High Elmah.axd / Errorlog.axd Detected CWE-209 CWE-209 High Email Header Injection CWE-20 CWE-20 High Email Header Injection (AcuSensor) CWE-20 CWE-20 High Email injection CWE-20 CWE-20 High Envoy mishandles dropped and truncated datagrams Issue (CVE-2020-35471) CVE-2020-35471 High Envoy Proxy Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-15225) CVE-2019-15225 CWE-770 CWE-770 High Envoy Proxy Always-Incorrect Control Flow Implementation Vulnerability (CVE-2022-21655) CVE-2022-21655 CWE-670 CWE-670 High Envoy Proxy CVE-2020-25018 Vulnerability (CVE-2020-25018) CVE-2020-25018 High Envoy Proxy CVE-2023-27496 Vulnerability (CVE-2023-27496) CVE-2023-27496 High Envoy Proxy CVE-2024-23324 Vulnerability (CVE-2024-23324) CVE-2024-23324 High Envoy Proxy Excessive Iteration Vulnerability (CVE-2021-32778) CVE-2021-32778 CWE-834 CWE-834 High Envoy Proxy Excessive Iteration Vulnerability (CVE-2021-39204) CVE-2021-39204 CWE-834 CWE-834 High Envoy Proxy Improper Authentication Vulnerability (CVE-2021-21378) CVE-2021-21378 CWE-287 CWE-287 High Envoy Proxy Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2021-32780) CVE-2021-32780 CWE-754 CWE-754 High Envoy Proxy Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2021-39162) CVE-2021-39162 CWE-754 CWE-754 High Envoy Proxy Improper Handling of Exceptional Conditions Vulnerability (CVE-2024-23325) CVE-2024-23325 CWE-755 CWE-755 High Envoy Proxy Improper Handling of Highly Compressed Data (Data Amplification) Vulnerability (CVE-2022-29225) CVE-2022-29225 CWE-409 CWE-409 High Envoy Proxy Improper Input Validation Vulnerability (CVE-2019-9900) CVE-2019-9900 CWE-20 CWE-20 High Envoy Proxy Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2020-12604) CVE-2020-12604 CWE-119 CWE-119 High Envoy Proxy Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2021-32781) CVE-2021-32781 CWE-119 CWE-119 High Envoy Proxy Incomplete Cleanup Vulnerability (CVE-2023-35945) CVE-2023-35945 CWE-459 CWE-459 High Envoy Proxy Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') Vulnerability (CVE-2024-23326) CVE-2024-23326 High Envoy Proxy Incorrect Authorization Vulnerability (CVE-2021-32777) CVE-2021-32777 CWE-863 CWE-863 High Envoy Proxy Incorrect Authorization Vulnerability (CVE-2021-32779) CVE-2021-32779 CWE-863 CWE-863 High 1...12131415...165 13 / 165