CVE Database - 1997
Browse known vulnerabilities with WAF coverage analysis. See which CVEs are detectable by Web Application Firewalls and their OWASP CRS rules.
3
Matching CVEs
15853
Critical
26962
High
69389
High WAF Coverage
Attack:
Authentication Bypass
(3246)
CSRF
(7960)
Code Injection
(4249)
Command Injection
(3187)
Cross-Site Scripting (XSS)
(37475)
HTTP Response Splitting
(79)
Incorrect Authorization
(2764)
Input Validation
(8673)
Insecure Deserialization
(2555)
Missing Authorization
(7641)
OS Command Injection
(5400)
Open Redirect
(1432)
Path Traversal
(6855)
Privilege Escalation
(2590)
Remote File Inclusion
(1113)
Resource Exhaustion
(2791)
SQL Injection
(14737)
SSRF
(2370)
Unrestricted File Upload
(3980)
XXE
(1206)
CVE-1999-0036
HIGH
7.20
CVSS 2.0
IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.
Unrestricted File Upload
WAF: Medium
CVE-1999-0039
HIGH
7.50
CVSS 2.0
webdist CGI program (webdist.cgi) in SGI IRIX allows remote attackers to execute arbitrary commands via shell metacharacters in the distloc parameter.
Command Injection
WAF: High
CVE-1999-0265
MEDIUM
5.00
CVSS 2.0
ICMP redirect messages may crash or lock up a host.
Improper Input Validation
WAF: Medium