Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-6496) CVE-2012-6496 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3482) CVE-2014-3482 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3483) CVE-2014-3483 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17916) CVE-2017-17916 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17917) CVE-2017-17917 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17919) CVE-2017-17919 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17920) CVE-2017-17920 CWE-138 CWE-138 High Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22792) CVE-2023-22792 CWE-1333 CWE-1333 High Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795 CWE-1333 CWE-1333 High Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2024-26142) CVE-2024-26142 CWE-1333 CWE-1333 High Ruby on Rails Other Vulnerability (CVE-2013-0333) CVE-2013-0333 High Ruby on Rails Other Vulnerability (CVE-2021-22904) CVE-2021-22904 High Ruby on Rails Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-0449) CVE-2011-0449 CWE-264 CWE-264 High Ruby on Rails Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3514) CVE-2014-3514 CWE-264 CWE-264 High Ruby on Rails Resource Management Errors Vulnerability (CVE-2015-7581) CVE-2015-7581 High Ruby on Rails Resource Management Errors Vulnerability (CVE-2016-0751) CVE-2016-0751 High Ruby on Rails SQL injection CVE-2012-2695 CWE-89 CWE-89 High Ruby on Rails Uncontrolled Resource Consumption Vulnerability (CVE-2021-22880) CVE-2021-22880 CWE-400 CWE-400 High Ruby on Rails Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-8162) CVE-2020-8162 CWE-434 CWE-434 High Ruby on Rails weak/known secret token CVE-2013-0156 CWE-200 CWE-200 High Ruby Other Vulnerability (CVE-2021-41817) CVE-2021-41817 High Ruby Out-of-bounds Read Vulnerability (CVE-2022-28739) CVE-2022-28739 CWE-125 CWE-125 High Ruby Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-3655) CVE-2008-3655 CWE-264 CWE-264 High Ruby Resource Management Errors Vulnerability (CVE-2008-2664) CVE-2008-2664 High Ruby Resource Management Errors Vulnerability (CVE-2008-3656) CVE-2008-3656 High Ruby Resource Management Errors Vulnerability (CVE-2008-4310) CVE-2008-4310 High Ruby Resource Management Errors Vulnerability (CVE-2014-6438) CVE-2014-6438 High Ruby Uncontrolled Resource Consumption Vulnerability (CVE-2018-8777) CVE-2018-8777 CWE-400 CWE-400 High Ruby Use of Externally-Controlled Format String Vulnerability (CVE-2018-8778) CVE-2018-8778 CWE-134 CWE-134 High Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-11818) CVE-2020-11818 CWE-352 CWE-352 High Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-30224) CVE-2021-30224 CWE-352 CWE-352 High Rukovoditel Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-45020) CVE-2022-45020 CWE-707 CWE-707 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13587) CVE-2020-13587 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13588) CVE-2020-13588 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13589) CVE-2020-13589 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13590) CVE-2020-13590 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13591) CVE-2020-13591 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13592) CVE-2020-13592 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-43288) CVE-2022-43288 CWE-138 CWE-138 High Rukovoditel Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-20166) CVE-2018-20166 CWE-434 CWE-434 High SAML Consumer Service XML entity injection (XXE) CWE-611 CWE-611 High SAML Consumer Service XSLT injection CWE-91 CWE-91 High SAML Consumer Service XSS vulnerability CWE-80 CWE-80 High SAML Response without signature CWE-16 CWE-16 High SAML Respose signature exclusion CWE-16 CWE-16 High Sangfor NGAF Authentication Bypass CWE-287 CWE-287 High SAP B2B/B2C CRM Local File Inclusion CWE-22 CWE-22 High SAP BO BIP XXE (CVE-2022-28213) CVE-2022-28213 CWE-112 CWE-112 High SAP Hybris Deserialization RCE CVE-2019-0344 CWE-502 CWE-502 High SAP IGS XXE (CVE-2018-2392, CVE-2018-2393) CVE-2018-2393 CWE-611 CWE-611 High SAP Knowledge Management and Collaboration (KMC) incorrect permissions CWE-285 CWE-285 High SAP Management Console get user list CWE-200 CWE-200 High SAP Management Console list logfiles CWE-200 CWE-200 High SAP NetWeaver ConfigServlet remote command execution CWE-94 CWE-94 High SAP NetWeaver ipcpricing server side request forgery CWE-918 CWE-918 High SAP NetWeaver RECON CVE-2020-6287 CVE-2020-6287 CWE-287 CWE-287 High SAP NW DI SSRF vulnerability (CVE-2021-33690) CVE-2021-33690 CWE-918 CWE-918 High SAP Portal directory traversal vulnerability CWE-22 CWE-22 High SAP weak/predictable user credentials CWE-200 CWE-200 High SearchBlox Local File Inclusion (CVE-2020-35580) CVE-2020-35580 CWE-22 CWE-22 High Securepoint UTM (CVE-2023-22620, CVE-2023-22897) CVE-2023-22620 CVE-2023-22897 CWE-863 CWE-863 High Security update: Hotfix available for ColdFusion CVE-2013-0625 CVE-2013-0629 CVE-2013-0631 CVE-2013-0632 CWE-255 CWE-255 High Security vulnerability in MySQL/MariaDB sql/password.c CVE-2012-2122 CWE-287 CWE-287 High Seo Panel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-10839) CVE-2017-10839 CWE-138 CWE-138 High Seo Panel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-28419) CVE-2021-28419 CWE-138 CWE-138 High Seo Panel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-34117) CVE-2021-34117 CWE-138 CWE-138 High Serendipity Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-5475) CVE-2017-5475 CWE-352 CWE-352 High Serendipity Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-5476) CVE-2017-5476 CWE-352 CWE-352 High Serendipity Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-8101) CVE-2017-8101 CWE-352 CWE-352 High Serendipity Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2332) CVE-2012-2332 CWE-138 CWE-138 High Serendipity Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2762) CVE-2012-2762 CWE-138 CWE-138 High Serendipity Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-5609) CVE-2017-5609 CWE-138 CWE-138 High Serendipity Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-1000129) CVE-2017-1000129 CWE-138 CWE-138 High Serendipity Other Vulnerability (CVE-2005-1134) CVE-2005-1134 High Serendipity Other Vulnerability (CVE-2005-1450) CVE-2005-1450 High 1...45464748...169 46 / 169