HTTP Request Smuggling | |
Session Fixation | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Deserialization of Untrusted Data | |
CVE-2020-1938 | |
CVE-2018-1304 | |
CVE-2018-1305 | |
Improper Certificate Validation | |
Insecure Default Initialization of Resource | |
Open Redirect | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Insufficient Verification of Data Authenticity | |
Unrestricted Upload of File with Dangerous Type | |
Information Exposure | |
Unrestricted Upload of File with Dangerous Type | |
Incorrect Authorization | |
CVE-2016-5018 | |
CVE-2016-6796 | |
CVE-2016-6794 | |
Information Exposure | |
Improper Handling of Exceptional Conditions | |
Exposure of Resource to Wrong Sphere | |
Error Handling | |
Improper Input Validation | |
Cross-site Request Forgery (CSRF) | |
Access Restriction Bypass | |
Improper Input Validation | |
CVE-2015-5346 | |
Directory Traversal | |
Directory Traversal | |
Information Exposure | |
Improper Access Control | |
Access Restriction Bypass | |
Incorrect Default Permissions | |
Access Restriction Bypass | |
Improper Access Control | |
Improper Data Handling | |
Access Restriction Bypass | |
Numeric Errors | |
Access Restriction Bypass | |
Numeric Errors | |
CVE-2014-0186 | |
Improper Input Validation | |
Improper Input Validation | |