| Off-by-one Error | |
| Improper Check for Certificate Revocation | |
| Improper Authentication | |
| Improper Authentication | |
| Cross-site Scripting (XSS) | <0:8.0.18-15_patch_00.ep7.el7 |
| Information Exposure | <0:8.0.18-25_patch_00.ep7.el7 |
| Information Exposure | |
| Allocation of Resources Without Limits or Throttling | |
| Arbitrary Code Injection | |
| Memory Leak | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Deserialization of Untrusted Data | |
| SQL Injection | |
| Deserialization of Untrusted Data | |
| Improper Input Validation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Deserialization of Untrusted Data | |
| Improper Access Control | |
| Improper Input Validation | |
| Improper Access Control | |
| Improper Access Control | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Out-of-bounds Read | |
| Information Exposure | |
| Improper Input Validation | |
| Insufficient Verification of Data Authenticity | |
| Improper Input Validation | |
| Incorrect Privilege Assignment | |
| Exposure of Resource to Wrong Sphere | |
| Error Handling | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Files or Directories Accessible to External Parties | <0:8.0.18-61_patch_01.ep7.el7 |
| Authentication Bypass | <0:8.0.18-61_patch_01.ep7.el7 |
| Improper Authentication | <0:8.0.18-61_patch_01.ep7.el7 |
| Cross-site Request Forgery (CSRF) | <0:8.0.18-61_patch_01.ep7.el7 |
| Allocation of Resources Without Limits or Throttling | <0:8.0.18-52_patch_01.ep7.el7 |
| Improper Input Validation | |
| Improper Authentication | <0:8.0.18-61_patch_01.ep7.el7 |
| Directory Traversal | <0:8.0.18-52_patch_01.ep7.el7 |
| Resource Exhaustion | |
| Improper Access Control | |
| Improper Input Validation | <0:8.0.18-62_patch_01.ep7.el7 |
| CVE-2015-5346 | <0:8.0.18-61_patch_01.ep7.el7 |
| Improper Input Validation | <0:8.0.18-62_patch_01.ep7.el7 |
| Encoding Error | <0:8.0.18-52_patch_01.ep7.el7 |
| NULL Pointer Dereference | <0:8.0.18-25_patch_00.ep7.el7 |
| NULL Pointer Dereference | <0:8.0.18-52_patch_01.ep7.el7 |
| Improper Authentication | <0:8.0.18-52_patch_01.ep7.el7 |
| HTTP Request Smuggling | |
| Deserialization of Untrusted Data | |
| Uncontrolled Recursion | |
| Improper Input Validation | |
| Improper Access Control | |
| Resource Injection | |
| Deserialization of Untrusted Data | |
| Information Exposure | |
| Covert Timing Channel | |
| Improper Access Control | |
| Security Features | |
| Information Exposure | |
| Security Features | |
| Deserialization of Untrusted Data | |
| Access Restriction Bypass | |
| Improper Authorization | |
| Resource Exhaustion | |
| Session Fixation | |
| Improper Access Control | |
| Cross-site Scripting (XSS) | |