Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Drupal Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2005-1921) CVE-2005-1921 CWE-94 CWE-94 High Drupal Improper Input Validation Vulnerability (CVE-2007-6299) CVE-2007-6299 CWE-20 CWE-20 High Drupal Improper Input Validation Vulnerability (CVE-2022-24775) CVE-2022-24775 CWE-20 CWE-20 High Drupal Improper Input Validation Vulnerability (CVE-2022-25271) CVE-2022-25271 CWE-20 CWE-20 High Drupal Improper Input Validation Vulnerability (CVE-2022-25273) CVE-2022-25273 CWE-20 CWE-20 High Drupal Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2020-36193) CVE-2020-36193 CWE-22 CWE-22 High Drupal Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2022-39261) CVE-2022-39261 CWE-22 CWE-22 High Drupal Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-28949) CVE-2020-28949 CWE-138 CWE-138 High Drupal Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2020-13664) CVE-2020-13664 CWE-138 CWE-138 High Drupal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-2999) CVE-2008-2999 CWE-138 CWE-138 High Drupal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-3223) CVE-2008-3223 CWE-138 CWE-138 High Drupal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3704) CVE-2014-3704 CWE-138 CWE-138 High Drupal Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-6659) CVE-2015-6659 CWE-138 CWE-138 High Drupal Improper Privilege Management Vulnerability (CVE-2017-6924) CVE-2017-6924 CWE-269 CWE-269 High Drupal Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2017-6381) CVE-2017-6381 CWE-829 CWE-829 High Drupal Incorrect Authorization Vulnerability (CVE-2011-2726) CVE-2011-2726 CWE-863 CWE-863 High Drupal Incorrect Authorization Vulnerability (CVE-2017-6377) CVE-2017-6377 CWE-863 CWE-863 High Drupal Inefficient Regular Expression Complexity Vulnerability (CVE-2022-24729) CVE-2022-24729 CWE-1333 CWE-1333 High Drupal Insufficient Verification of Data Authenticity Vulnerability (CVE-2016-9450) CVE-2016-9450 CWE-345 CWE-345 High Drupal Other Vulnerability (CVE-2005-1871) CVE-2005-1871 High Drupal Other Vulnerability (CVE-2006-2742) CVE-2006-2742 High Drupal Other Vulnerability (CVE-2006-2831) CVE-2006-2831 High Drupal Other Vulnerability (CVE-2006-5476) CVE-2006-5476 High Drupal Other Vulnerability (CVE-2016-3164) CVE-2016-3164 High Drupal Other Vulnerability (CVE-2016-3167) CVE-2016-3167 High Drupal Other Vulnerability (CVE-2022-25275) CVE-2022-25275 High Drupal Other Vulnerability (CVE-2024-22362) CVE-2024-22362 High Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2687) CVE-2011-2687 CWE-264 CWE-264 High Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-3169) CVE-2016-3169 CWE-264 CWE-264 High Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-6211) CVE-2016-6211 CWE-264 CWE-264 High Drupal Reliance on Cookies without Validation and Integrity Checking Vulnerability (CVE-2022-29248) CVE-2022-29248 CWE-565 CWE-565 High Drupal Remote Code Execution (SA-CORE-2018-002) CVE-2018-7600 CWE-94 CWE-94 High Drupal Remote Code Execution (SA-CORE-2018-004) CVE-2018-7602 CWE-94 CWE-94 High Drupal Remote Code Execution Vulnerability (CVE-2020-13671) CVE-2020-13671 High Drupal REST Remote Code Execution CVE-2019-6340 CWE-78 CWE-78 High Drupal Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-25277) CVE-2022-25277 CWE-434 CWE-434 High e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-15901) CVE-2018-15901 CWE-352 CWE-352 High e107 Deserialization of Untrusted Data Vulnerability (CVE-2016-10753) CVE-2016-10753 CWE-502 CWE-502 High e107 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2011-1513) CVE-2011-1513 CWE-138 CWE-138 High e107 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-4084) CVE-2009-4084 CWE-138 CWE-138 High e107 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2016-10378) CVE-2016-10378 CWE-138 CWE-138 High e107 Inadequate Encryption Strength Vulnerability (CVE-2021-27885) CVE-2021-27885 CWE-326 CWE-326 High e107 Other Vulnerability (CVE-2004-2042) CVE-2004-2042 High e107 Other Vulnerability (CVE-2005-1949) CVE-2005-1949 High e107 Other Vulnerability (CVE-2005-1966) CVE-2005-1966 High e107 Other Vulnerability (CVE-2005-2559) CVE-2005-2559 High e107 Other Vulnerability (CVE-2005-3521) CVE-2005-3521 High e107 Other Vulnerability (CVE-2005-4224) CVE-2005-4224 High e107 Other Vulnerability (CVE-2006-4548) CVE-2006-4548 High e107 Other Vulnerability (CVE-2006-5786) CVE-2006-5786 High e107 Other Vulnerability (CVE-2010-2098) CVE-2010-2098 High e107 Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-2099) CVE-2010-2099 CWE-264 CWE-264 High e107 Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-16388) CVE-2018-16388 CWE-434 CWE-434 High Edge Side Include injection CWE-918 CWE-918 High Ektron CMS400.NET ContentRatingGraph.aspx SQL injection CVE-2008-5122 CWE-89 CWE-89 High Ektron CMS Account Hijack CWE-264 CWE-264 High Ektron CMS authentication bypass CVE-2018-12596 CWE-285 CWE-285 High Ektron CMS multiple vulnerabilities CWE-434 CWE-434 High EktronCMS Saxon XSLT parser remote code execution CVE-2015-0931 CWE-78 CWE-78 High Ektron CMS unauthenticated code execution and Local File Read CVE-2012-5357 CVE-2012-5358 CWE-20 CWE-20 High Elasticsearch remote code execution CVE-2014-3120 CWE-78 CWE-78 High Elasticsearch service accessible CWE-200 CWE-200 High elFinder RCE (CVE-2021-32682) CVE-2021-32682 CWE-22 CWE-22 High Elgg Exposure of Private Personal Information to an Unauthorized Actor Vulnerability (CVE-2021-3980) CVE-2021-3980 CWE-359 CWE-359 High Elmah.axd / Errorlog.axd Detected CWE-209 CWE-209 High Email Header Injection CWE-20 CWE-20 High Email Header Injection (AcuSensor) CWE-20 CWE-20 High Email injection CWE-20 CWE-20 High Envoy mishandles dropped and truncated datagrams Issue (CVE-2020-35471) CVE-2020-35471 High Envoy Proxy Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-15225) CVE-2019-15225 CWE-770 CWE-770 High Envoy Proxy Always-Incorrect Control Flow Implementation Vulnerability (CVE-2022-21655) CVE-2022-21655 CWE-670 CWE-670 High Envoy Proxy CVE-2020-25018 Vulnerability (CVE-2020-25018) CVE-2020-25018 High Envoy Proxy CVE-2023-27496 Vulnerability (CVE-2023-27496) CVE-2023-27496 High Envoy Proxy CVE-2024-23324 Vulnerability (CVE-2024-23324) CVE-2024-23324 High Envoy Proxy CVE-2024-45807 Vulnerability (CVE-2024-45807) CVE-2024-45807 High 1...12131415...168 13 / 168