Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity PHP Safedir restriction bypass vulnerabilities CWE-20 CWE-20 High PHP Server-Side Request Forgery (SSRF) Vulnerability (CVE-2017-7272) CVE-2017-7272 CWE-918 CWE-918 High phpThumb() fltr[] parameter command injection vulnerability CVE-2010-1598 CWE-20 CWE-20 High PHP Uncontrolled Resource Consumption Vulnerability (CVE-2011-3336) CVE-2011-3336 CWE-400 CWE-400 High PHP Uncontrolled Resource Consumption Vulnerability (CVE-2017-11142) CVE-2017-11142 CWE-400 CWE-400 High PHP Uncontrolled Resource Consumption Vulnerability (CVE-2023-0662) CVE-2023-0662 CWE-400 CWE-400 High PHPUnit Remote Code Execution CVE-2017-9841 CWE-94 CWE-94 High PHP Use After Free Vulnerability (CVE-2015-1351) CVE-2015-1351 CWE-416 CWE-416 High PHP Use After Free Vulnerability (CVE-2015-6831) CVE-2015-6831 CWE-416 CWE-416 High PHP Use After Free Vulnerability (CVE-2017-12934) CVE-2017-12934 CWE-416 CWE-416 High PHP Use of Externally-Controlled Format String Vulnerability (CVE-2011-1153) CVE-2011-1153 CWE-134 CWE-134 High PHP Use of Uninitialized Resource Vulnerability (CVE-2015-3414) CVE-2015-3414 CWE-908 CWE-908 High PHP version older than 4.4.1 CVE-2005-3388 CVE-2006-0097 CWE-1104 CWE-1104 High PHP version older than 5.2.1 CVE-2007-1376 CVE-2007-1380 CVE-2007-1453 CVE-2007-1454 CWE-1104 CWE-1104 High PHP version older than 5.2.3 CVE-2007-1900 CVE-2007-2756 CVE-2007-2872 CWE-1104 CWE-1104 High PHP version older than 5.2.5 CVE-2007-4840 CVE-2007-4887 CVE-2007-5898 CVE-2007-5899 CVE-2007-5900 CWE-1104 CWE-1104 High PHP version older than 5.2.6 CVE-2007-4850 CVE-2008-0599 CVE-2008-0674 CVE-2008-1384 CVE-2008-2050 CVE-2008-2051 CWE-1104 CWE-1104 High PHP version older than 5.2.8 CVE-2008-2371 CVE-2008-2665 CVE-2008-2666 CVE-2008-2829 CVE-2008-3658 CVE-2008-3659 CVE-2008-3660 CWE-1104 CWE-1104 High PHP Zend_Hash_Del_Key_Or_Index vulnerability CVE-2006-3017 CWE-702 CWE-702 High Phusion Passenger Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2018-12029) CVE-2018-12029 CWE-362 CWE-362 High Phusion Passenger Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-12027) CVE-2018-12027 CWE-200 CWE-200 High Phusion Passenger Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2018-12028) CVE-2018-12028 CWE-732 CWE-732 High Phusion Passenger Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-10345) CVE-2016-10345 CWE-264 CWE-264 High Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-1468) CVE-2013-1468 CWE-352 CWE-352 High Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-10678) CVE-2017-10678 CWE-352 CWE-352 High Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-10680) CVE-2017-10680 CWE-352 CWE-352 High Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-10681) CVE-2017-10681 CWE-352 CWE-352 High Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-17774) CVE-2017-17774 CWE-352 CWE-352 High Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-17827) CVE-2017-17827 CWE-352 CWE-352 High Piwigo Exposure of Resource to Wrong Sphere Vulnerability (CVE-2022-26267) CVE-2022-26267 CWE-668 CWE-668 High Piwigo Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-10679) CVE-2017-10679 CWE-200 CWE-200 High Piwigo Improper Access Control Vulnerability (CVE-2016-10084) CVE-2016-10084 CWE-284 CWE-284 High Piwigo Improper Access Control Vulnerability (CVE-2016-10085) CVE-2016-10085 CWE-284 CWE-284 High Piwigo Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2012-2208) CVE-2012-2208 CWE-22 CWE-22 High Piwigo Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2021-40553) CVE-2021-40553 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-2933) CVE-2009-2933 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-9115) CVE-2014-9115 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-1441) CVE-2015-1441 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-19215) CVE-2020-19215 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-19216) CVE-2020-19216 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-19217) CVE-2020-19217 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-27973) CVE-2021-27973 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-40313) CVE-2021-40313 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-40317) CVE-2021-40317 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-26266) CVE-2022-26266 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-32297) CVE-2022-32297 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2023-26876) CVE-2023-26876 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2023-27233) CVE-2023-27233 CWE-138 CWE-138 High Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2023-37270) CVE-2023-37270 CWE-138 CWE-138 High Piwigo Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2016-3735) CVE-2016-3735 CWE-335 CWE-335 High Play Framework Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2022-31023) CVE-2022-31023 CWE-209 CWE-209 High Play Framework Improper Input Validation Vulnerability (CVE-2015-2156) CVE-2015-2156 CWE-20 CWE-20 High Play Framework Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-13864) CVE-2018-13864 CWE-22 CWE-22 High Play Framework Inadequate Encryption Strength Vulnerability (CVE-2019-17598) CVE-2019-17598 CWE-326 CWE-326 High Play Framework Out-of-bounds Write Vulnerability (CVE-2020-27196) CVE-2020-27196 CWE-787 CWE-787 High Play Framework Uncontrolled Recursion Vulnerability (CVE-2020-26882) CVE-2020-26882 CWE-674 CWE-674 High Play Framework Uncontrolled Recursion Vulnerability (CVE-2020-26883) CVE-2020-26883 CWE-674 CWE-674 High Play Framework Uncontrolled Resource Consumption Vulnerability (CVE-2022-31018) CVE-2022-31018 CWE-400 CWE-400 High PleskLin Exposure of Resource to Wrong Sphere Vulnerability (CVE-2023-43784) CVE-2023-43784 CWE-668 CWE-668 High PleskLin Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-1557) CVE-2012-1557 CWE-138 CWE-138 High PleskLin Other Vulnerability (CVE-2013-0133) CVE-2013-0133 High PleskLin Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4878) CVE-2013-4878 CWE-264 CWE-264 High PleskWin Exposure of Resource to Wrong Sphere Vulnerability (CVE-2023-43784) CVE-2023-43784 CWE-668 CWE-668 High PleskWin Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-1557) CVE-2012-1557 CWE-138 CWE-138 High PleskWin Other Vulnerability (CVE-2013-0133) CVE-2013-0133 High PleskWin Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4878) CVE-2013-4878 CWE-264 CWE-264 High Plone arbitrary code execution CVE-2011-3587 CWE-78 CWE-78 High Plone CMS Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-7293) CVE-2015-7293 CWE-352 CWE-352 High Plone CMS CVE-2011-0720 Vulnerability (CVE-2011-0720) CVE-2011-0720 High Plone CMS CVE-2011-2528 Vulnerability (CVE-2011-2528) CVE-2011-2528 High Plone CMS CVE-2024-23756 Vulnerability (CVE-2024-23756) CVE-2024-23756 High Plone CMS Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-5741) CVE-2007-5741 CWE-94 CWE-94 High Plone CMS Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2012-5493) CVE-2012-5493 CWE-94 CWE-94 High Plone CMS Improper Input Validation Vulnerability (CVE-2015-7318) CVE-2015-7318 CWE-20 CWE-20 High Plone CMS Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-32633) CVE-2021-32633 CWE-22 CWE-22 High 1...40414243...168 41 / 168