Arbitrary Command Injection | |
XML External Entity (XXE) Injection | |
HTTP Request Smuggling | |
Arbitrary Code Injection | |
Improper Input Validation | |
Improper Authentication | |
Arbitrary Code Injection | |
Cross-site Scripting (XSS) | |
Cross-site Scripting (XSS) | |
CVE-2019-15845 | |
Arbitrary Code Injection | |
Arbitrary Code Injection | |
Arbitrary Code Injection | |
Arbitrary Argument Injection | |
Arbitrary Code Injection | |
Directory Traversal | |
CVE-2018-16395 | |
CVE-2018-16396 | |
Directory Traversal | |
Improper Input Validation | |
Use of Externally-Controlled Format String | |
Resource Exhaustion | |
Directory Traversal | |
Cross-site Scripting (XSS) | |
Directory Traversal | |
Improper Input Validation | |
Improper Verification of Cryptographic Signature | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Link Following | |
Deserialization of Untrusted Data | |
Arbitrary Code Injection | |
HTTP Response Splitting | |
Deserialization of Untrusted Data | |
Out-of-Bounds | |
Out-of-Bounds | |
Improper Authentication | |
Origin Validation Error | |
Deserialization of Untrusted Data | |
Improper Input Validation | |
Improper Input Validation | |
Use of Externally-Controlled Format String | |
Arbitrary Code Injection | |