Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Java Unspesificed Vulnerability (CVE-2019-2816) CVE-2019-2816 Medium Java Unspesificed Vulnerability (CVE-2019-2821) CVE-2019-2821 Medium Java Unspesificed Vulnerability (CVE-2020-14803) CVE-2020-14803 Medium JBoss Application Server Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-3609) CVE-2011-3609 CWE-352 CWE-352 Medium JBoss Application Server Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-3606) CVE-2011-3606 CWE-707 CWE-707 Medium JBoss Application Server Privilege Escalation Vulnerability (CVE-2007-1354) CVE-2007-1354 Medium Jboss EAP 7PK - Security Features Vulnerability (CVE-2015-5178) CVE-2015-5178 Medium Jboss EAP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2018-10237) CVE-2018-10237 CWE-770 CWE-770 Medium Jboss EAP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-9516) CVE-2019-9516 CWE-770 CWE-770 Medium Jboss EAP Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2014-0226) CVE-2014-0226 CWE-362 CWE-362 Medium Jboss EAP Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2019-3805) CVE-2019-3805 CWE-362 CWE-362 Medium Jboss EAP Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2021-3597) CVE-2021-3597 CWE-362 CWE-362 Medium Jboss EAP Configuration Vulnerability (CVE-2008-3519) CVE-2008-3519 Medium Jboss EAP Configuration Vulnerability (CVE-2013-4128) CVE-2013-4128 Medium Jboss EAP Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-3878) CVE-2010-3878 CWE-352 CWE-352 Medium Jboss EAP Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-5188) CVE-2015-5188 CWE-352 CWE-352 Medium Jboss EAP Cryptographic Issues Vulnerability (CVE-2012-5575) CVE-2012-5575 Medium Jboss EAP Cryptographic Issues Vulnerability (CVE-2014-0035) CVE-2014-0035 Medium Jboss EAP CVE-2011-1483 Vulnerability (CVE-2011-1483) CVE-2011-1483 Medium Jboss EAP CVE-2012-4529 Vulnerability (CVE-2012-4529) CVE-2012-4529 Medium Jboss EAP CVE-2013-1862 Vulnerability (CVE-2013-1862) CVE-2013-1862 Medium Jboss EAP CVE-2013-1896 Vulnerability (CVE-2013-1896) CVE-2013-1896 Medium Jboss EAP CVE-2013-4210 Vulnerability (CVE-2013-4210) CVE-2013-4210 Medium Jboss EAP CVE-2018-1304 Vulnerability (CVE-2018-1304) CVE-2018-1304 Medium Jboss EAP CVE-2021-32029 Vulnerability (CVE-2021-32029) CVE-2021-32029 Medium Jboss EAP CVE-2022-2764 Vulnerability (CVE-2022-2764) CVE-2022-2764 Medium Jboss EAP CVE-2023-4061 Vulnerability (CVE-2023-4061) CVE-2023-4061 Medium Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2016-9585) CVE-2016-9585 CWE-502 CWE-502 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-4112) CVE-2013-4112 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-3481) CVE-2014-3481 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-7853) CVE-2014-7853 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-1849) CVE-2015-1849 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6311) CVE-2016-6311 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-7061) CVE-2016-7061 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-2582) CVE-2017-2582 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-12167) CVE-2017-12167 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-14642) CVE-2018-14642 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-14820) CVE-2019-14820 CWE-200 CWE-200 Medium Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-14885) CVE-2019-14885 CWE-200 CWE-200 Medium Jboss EAP Improper Access Control Vulnerability (CVE-2013-4213) CVE-2013-4213 CWE-284 CWE-284 Medium Jboss EAP Improper Authentication Vulnerability (CVE-2011-4085) CVE-2011-4085 CWE-287 CWE-287 Medium Jboss EAP Improper Authentication Vulnerability (CVE-2012-0874) CVE-2012-0874 CWE-287 CWE-287 Medium Jboss EAP Improper Authentication Vulnerability (CVE-2020-14299) CVE-2020-14299 CWE-287 CWE-287 Medium Jboss EAP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-0248) CVE-2014-0248 CWE-94 CWE-94 Medium Jboss EAP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-3518) CVE-2014-3518 CWE-94 CWE-94 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2010-1871) CVE-2010-1871 CWE-20 CWE-20 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2011-4314) CVE-2011-4314 CWE-20 CWE-20 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2011-4575) CVE-2011-4575 CWE-20 CWE-20 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2014-0034) CVE-2014-0034 CWE-20 CWE-20 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2018-1000873) CVE-2018-1000873 CWE-20 CWE-20 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2019-12400) CVE-2019-12400 CWE-20 CWE-20 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2020-1732) CVE-2020-1732 CWE-20 CWE-20 Medium Jboss EAP Improper Input Validation Vulnerability (CVE-2020-10693) CVE-2020-10693 CWE-20 CWE-20 Medium Jboss EAP Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2017-2595) CVE-2017-2595 CWE-22 CWE-22 Medium Jboss EAP Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-1047) CVE-2018-1047 CWE-22 CWE-22 Medium Jboss EAP Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-10862) CVE-2018-10862 CWE-22 CWE-22 Medium Jboss EAP Improper Neutralization of CRLF Sequences ('CRLF Injection') Vulnerability (CVE-2016-4993) CVE-2016-4993 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') Vulnerability (CVE-2018-1067) CVE-2018-1067 CWE-113 CWE-113 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-0455) CVE-2008-0455 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-2405) CVE-2009-2405 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-6495) CVE-2013-6495 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-10934) CVE-2018-10934 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-3872) CVE-2019-3872 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2019-10219) CVE-2019-10219 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-10688) CVE-2020-10688 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-3536) CVE-2021-3536 CWE-707 CWE-707 Medium Jboss EAP Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-14900) CVE-2019-14900 CWE-138 CWE-138 Medium Jboss EAP Improper Privilege Management Vulnerability (CVE-2019-14838) CVE-2019-14838 CWE-269 CWE-269 Medium Jboss EAP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2011-4610) CVE-2011-4610 CWE-119 CWE-119 Medium Jboss EAP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2015-5220) CVE-2015-5220 CWE-119 CWE-119 Medium Jboss EAP Improper Validation of Integrity Check Value Vulnerability (CVE-2023-48795) CVE-2023-48795 CWE-354 CWE-354 Medium Jboss EAP Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2017-2666) CVE-2017-2666 CWE-444 CWE-444 Medium Jboss EAP Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-10687) CVE-2020-10687 CWE-444 CWE-444 Medium Jboss EAP Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-10719) CVE-2020-10719 CWE-444 CWE-444 Medium Jboss EAP Incorrect Authorization Vulnerability (CVE-2014-0169) CVE-2014-0169 CWE-863 CWE-863 Medium 1...23242526...106 24 / 106