Atomicorp WAF Research Notes
Research Update - 2026-07-17
Atomicorp WAF Research Notes document selected engineering observations, testing results, attack-pattern analysis, and WAF rule interactions.
The entries published in this update represent research notes produced during ongoing analysis activities.
These notes are not intended to represent the full set of vulnerabilities mitigated by Atomicorp products and should not be interpreted as a coverage matrix, certification list, or census of protected CVEs.
Atomicorp WAF protections are primarily designed around attack techniques and exploit behaviors rather than individual vulnerability identifiers. A published research note documents a positive research finding related to that CVE. If a CVE is absent from these notes, no conclusion should be drawn about protection status.
Presence means a positive research finding was published. Absence means no conclusion should be drawn.
CVE Notes Published in This Update
| CVE | Vulnerability Name | Rules Observed |
|---|---|---|
| CVE-2015-1635 | Microsoft Windows 'HTTP.sys' - Remote Code Execution | 363434 |
| CVE-2016-4337 | Ktools Photostore 4.7.5 - Blind SQL Injection | 390726 , 392647 |
| CVE-2017-16935 | Ametys CMS 4.0.2 - Password Reset | 345493 , 390724 |
| CVE-2017-5689 | Intel Active Management Technology - System Privileges | 390726 , 392647 |
| CVE-2019-25141 | Easy WP SMTP <= 1.3.9 - Missing Authorization to Arbitrary Options Update | 390726 , 392647 |
| CVE-2020-29047 | WP Hotel Booking < 1.10.4 - PHP Object Injection | 330889 |
| CVE-2022-0788 | WordPress WP Fundraising Donation and Crowdfunding Platform <1.5.0 - SQL Injection | 340016 , 380026 , 380122 , 390727 , 392648 |
| CVE-2023-27350 | PaperCut - Unauthenticated Remote Code Execution | 390727 , 392648 |
| CVE-2026-35273 | Oracle PeopleSoft PeopleTools PSEMHUB - Pre-Auth Java Deserialization RCE | 331032 |
| CVE-2022-26833 | Open Automation Software OAS Platform V16.00.0121 - Missing Authentication | 390726 , 392647 |
| CVE-2026-4810 | Google ADK-Python - Unauthenticated Builder Endpoint | 390726 , 392647 |
| CVE-2014-7884 | ArcSight Logger - Arbitrary File Upload / Code Execution | 390726 , 392647 |
| CVE-2017-6823 | Fiyo CMS 2.0.6.1 - Privilege Escalation | 345493 , 390724 |
| CVE-2024-48248 | NAKIVO Backup and Replication Solution - Unauthenticated Arbitrary File Read | 344360 , 390726 , 392647 |
| CVE-2024-30188 | Apache DolphinScheduler >= 3.1.0, < 3.2.2 Resource File Read And Write | 340162 , 340165 , 344360 , 347009 , 390726 , 392647 |
| CVE-2018-11222 | Pandora FMS <=7.0NG.722 - Remote Code Execution | 390726 , 392647 |
| CVE-2018-1306 | Apache Portals Pluto 3.0.0 - Remote Code Execution | 390727 , 392648 |
| CVE-2015-4027 | Acunetix WVS 10 - Local Privilege Escalation | 330791 , 340152 , 390726 , 392647 |
| CVE-2025-5298 | Campcodes Online Hospital Management System 1.0 - SQL Injection | 390726 , 392647 |
| CVE-2013-4865 | MiCasaVerde VeraLite 1.5.408 - Multiple Vulnerabilities | 330791 , 340121 , 340152 , 344360 , 344370 , 390636 , 390726 , 392647 |
| CVE-2023-45826 | Leantime < 2.4 - Authenticated SQL Injection | 340017 , 340159 , 341245 , 390726 , 392647 |
| CVE-2025-54249 | Adobe Experience Manager ≤ 6.5.23.0 – SSRF | 390726 , 392647 |
| CVE-2025-10493 | Chained Quiz 1.3.5 - Unauthenticated Insecure Direct Object Reference via Cookie | 390726 , 392647 |
| CVE-2015-4425 | Pimcore CMS Build 3450 - Directory Traversal | 390726 , 392647 |