CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2024-46292 HIGH

mod_security: denial of service via name paramter

CVSS 7.5 EPSS 0.82% Oct 9, 2024
CVE-2019-13464 HIGH

An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) 3.0.2. Use of X.Filename instead of X_Filename can bypass some PHP Script Uploads rules, becau…

CVSS 7.5 EPSS 1.47% Jul 9, 2019
CVE-2019-11391 MEDIUM

An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf allows remote attackers to cause…

CVSS 5.3 EPSS 1.63% Apr 21, 2019
CVE-2019-11390 MEDIUM

An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf allows remote attackers to cause…

CVSS 5.3 EPSS 1.67% Apr 21, 2019
CVE-2019-11389 MEDIUM

An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf allows remote attackers to cause…

CVSS 5.3 EPSS 1.67% Apr 21, 2019
CVE-2019-11388 MEDIUM

An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-932-APPLICATION-ATTACK-RCE.conf allows remote attackers to cause…

CVSS 5.3 EPSS 1.63% Apr 21, 2019
CVE-2019-11387 MEDIUM

An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf allows remote attackers to caus…

CVSS 5.3 EPSS 2.38% Apr 21, 2019
CVE-2007-1359 MEDIUM

Interpretation conflict in ModSecurity (mod_security) 2.1.0 and earlier allows remote attackers to bypass request rules via application/x-www-form-urlencoded P…

CVSS 6.8 EPSS 6.62% Mar 8, 2007
CVE-2003-1171 HIGH

Heap-based buffer overflow in the sec_filter_out function in mod_security 1.7RC1 through 1.7.1 in Apache 2 allows remote attackers to execute arbitrary code vi…

CVSS 7.5 EPSS 4.63% May 10, 2005
CVE-2004-1765 HIGH

Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary…

CVSS 7.5 EPSS 4.67% Mar 10, 2005

Showing 1 to 10 CVEs · page 1