CVE Database - 1996
Browse known vulnerabilities with WAF coverage analysis. See which CVEs are detectable by Web Application Firewalls and their OWASP CRS rules.
3
Matching CVEs
15853
Critical
26962
High
69389
High WAF Coverage
Attack:
Authentication Bypass
(3246)
CSRF
(7960)
Code Injection
(4249)
Command Injection
(3187)
Cross-Site Scripting (XSS)
(37475)
HTTP Response Splitting
(79)
Incorrect Authorization
(2764)
Input Validation
(8673)
Insecure Deserialization
(2555)
Missing Authorization
(7641)
OS Command Injection
(5400)
Open Redirect
(1432)
Path Traversal
(6855)
Privilege Escalation
(2590)
Remote File Inclusion
(1113)
Resource Exhaustion
(2791)
SQL Injection
(14737)
SSRF
(2370)
Unrestricted File Upload
(3980)
XXE
(1206)
CVE-1999-0043
HIGH
10.00
CVSS 2.0
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
OS Command Injection
WAF: High
CVE-1999-0509
HIGH
10.00
CVSS 2.0
Perl, sh, csh, or other shell interpreters are installed in the cgi-bin directory on a WWW site, which allows remote attackers to execute arbitrary commands.
Code Injection
WAF: Medium
CVE-1999-0067
HIGH
10.00
CVSS 2.0
phf CGI program allows remote command execution through shell metacharacters.
OS Command Injection
WAF: High