On this page

Atomicorp WAF Rule 390716

Rule Summary

Description

This rule detects behavior identified by its current alert as “URL file extension is restricted by policy”. It evaluates during the request body phase and denies matching traffic with HTTP status 403.

This is a selected list of documented research observations, not an exhaustive coverage matrix. Absence of a CVE does not imply absence of protection.

CVEVulnerabilityProductCVSSSeverity
CVE-2017-11165DataTaker DT80 dEX 1.50.012 - Information Disclosuredt80 dex firmware9.8 (v3.1)Critical
CVE-2017-14942Intelbras WRN 150 - Authentication Bypasswrn1509.8 (v3.0)Critical
CVE-2017-8225GoAhead Camera - Credential Disclosurewireless ip camera (p2p) firmware9.8 (v3.0)Critical
CVE-2018-0127Cisco RV132W/RV134W Router - Information Disclosurerv132w firmware9.8 (v3.1)Critical
CVE-2018-7251Anchor CMS 0.12.3 - Error Log Exposureanchor9.8 (v3.0)Critical
CVE-2019-19781Citrix ADC and Gateway - Directory Traversalapplication delivery controller firmware9.8 (v3.1)Critical
CVE-2022-34045WAVLINK WN530HG4 - Improper Access Controlwl-wn530hg4 firmware9.8 (v3.1)Critical
CVE-2023-34362MOVEit Transfer - Remote Code Executionmoveit cloud9.8 (v3.1)Critical
CVE-2024-32238H3C ER8300G2-X - Password Disclosure-9.8 (v3.1)Critical
CVE-2024-44000LiteSpeed Cache <= 6.4.1 - Sensitive Information Exposurelitespeed cache9.8 (v3.1)Critical
CVE-2024-7332TOTOLINK CP450 v4.1.0cu.747_B20191224 - Hard-Coded Password Vulnerabilitycp450 firmware9.3 (v4.0)Critical
CVE-2024-8752WebIQ 2.15.9 - Directory Traversalwebiq9.3 (v4.0)Critical
CVE-2024-52875Kerio Control v9.2.5 - CRLF Injectionkerio control8.8 (v3.1)High
CVE-2021-47795GeoVision GeoWebServer <= 5.3.3 - Local File Inclusion / Cross-Site Scriptinggeowebserver8.7 (v4.0)High
CVE-2023-7327Ozeki 10 SMS Gateway 10.3.208 - Arbitrary File ReadOzeki SMS Gateway8.7 (v4.0)High
CVE-2023-43662ShokoServer System - Local File Inclusion (LFI)shokoserver8.6 (v3.1)High
CVE-2018-12455Intelbras NPLUG 1.0.0.14 - Authentication Bypassnplug8.1 (v3.0)High
CVE-2017-1000028Oracle GlassFish Server Open Source Edition 4.1 - Local File Inclusionglassfish server7.5 (v3.0)High
CVE-2017-16806Ulterius Server < 1.9.5.0 - Directory Traversalulterius server7.5 (v3.0)High
CVE-2018-10201Ncomputing vSPace Pro 10 and 11 - Directory Traversalvspace pro7.5 (v3.0)High
CVE-2018-8727Mirasys DVMS Workstation <=5.12.6 - Local File Inclusiondvms workstation7.5 (v3.0)High
CVE-2019-14322Pallets Werkzeug <0.15.5 - Local File InclusionWindows7.5 (v3.1)High
CVE-2019-19822TOTOLINK/Realtek Routers - Information Disclosurea3002ru firmware7.5 (v3.1)High
CVE-2019-19823TOTOLINK/Realtek Routers - Information Disclosurea3002ru firmware7.5 (v3.1)High
CVE-2020-10973WAVLINK - Access Controlwn530hg4 firmware7.5 (v3.1)High
CVE-2020-14864Oracle Fusion - Directory Traversal/Local File Inclusionbusiness intelligence7.5 (v3.1)High
CVE-2021-34805FAUST iServer 9.0.018.018.4 - Local File Inclusionfaust iserver7.5 (v3.1)High
CVE-2021-40150Reolink E1 Zoom Camera <=3.0.0.716 - Information Disclosuree1 zoom firmware7.5 (v3.1)High
CVE-2021-40661IND780 - Local File Inclusionind780 firmware7.5 (v3.1)High
CVE-2022-23854AVEVA InTouch Access Anywhere Secure Gateway - Local File Inclusionintouch access anywhere7.5 (v3.1)High
CVE-2022-27043Yearning - Directory Traversalyearning7.5 (v3.1)High
CVE-2023-2766Weaver OA 9.5 - Information Disclosureweaver office automation7.5 (v3.1)High
CVE-2023-39026FileMage Gateway - Directory TraversalWindows7.5 (v3.1)High
CVE-2023-40600EWWW Image Optimizer <= 7.2.0 - Unauthenticated Information Disclosureimage optimizer7.5 (v3.1)High
CVE-2023-43261Milesight Routers - Information Disclosureur517.5 (v3.1)High
CVE-2023-44982WordPress Perfect Images (WP Retina 2x) < 6.4.6 - Sensitive Information Exposureperfect images7.5 (v3.1)High
CVE-2023-6750WordPress WP Clone <= 2.4.2 - Database Backup Exposureclone7.5 (v3.1)High
CVE-2024-12008W3 Total Cache < 2.8.2 - Log File Exposurew3 total cache7.5 (v3.1)High
CVE-2024-20440Cisco Smart Licensing Utility UnAuthenticated Logs Exposure Leaking Plaintext Credentialssmart license utility7.5 (v3.1)High
CVE-2024-36991Splunk Enterprise - Local File Inclusionsplunk7.5 (v3.1)High
CVE-2024-6049Lawo AG vsm LTC Time Sync (vTimeSync) - Path Traversalvsm LTC Time Sync (vTimeSync)7.5 (v3.1)High
CVE-2025-14437WordPress Hummingbird <= 3.18.0 - Sensitive Information Exposure via Log Filehummingbird-performance7.5 (v3.1)High
CVE-2025-31125Vite Development Server - Path Traversalvite7.5 (v3.1)High
CVE-2026-28414Gradio - Absolute Path Traversalgradio7.5 (v3.1)High
CVE-2017-9416Odoo 8.0/9.0/10.0 - Local File Inclusionodoo6.5 (v3.0)Medium
CVE-2018-18762SaltOS Erp Crm 3.1 r8126 - Database File Downloadsaltos6.5 (v3.0)Medium
CVE-2026-12898All-in-One WP Migration and Backup < 7.106 - Arbitrary Log File Writeall-in-one-wp-migration6.5 (v3.1)Medium
CVE-2019-17504Kirona-DRS 5.5.3.5 - Information Disclosuredynamic resource scheduling6.1 (v3.1)Medium
CVE-2018-1271Spring MVC Framework - Local File Inclusionspring framework5.9 (v3.1)Medium
CVE-2021-40149Reolink E1 Zoom Camera <=3.0.0.716 - Private Key Disclosuree1 zoom5.9 (v3.1)Medium
CVE-2024-13609WordPress 1 Click Migration Plugin < 2.3 - Information Exposure1 click migration5.9 (v3.1)Medium
CVE-2017-9965Schneider Electric Pelco VideoXpert Enterprise 2.0 - Path Traversalpelco videoxpert5.8 (v3.0)Medium
CVE-2018-16133Cybrotech CyBroHttpServer 1.0.3 - Directory Traversalcybrohttpserver5.3 (v3.0)Medium
CVE-2019-17503Kirona-DRS 5.5.3.5 - Information Disclosuredynamic resource scheduling5.3 (v3.1)Medium
CVE-2022-25356Alt-n/MDaemon Security Gateway <=8.5.0 - XML Injectionsecuritygateway5.3 (v3.1)Medium
CVE-2024-8852All-in-One WP Migration < 7.87 - Unauthenticated Information Disclosureall-in-one wp migration5.3 (v3.1)Medium
CVE-2025-322571 Click WordPress Migration <= 2.2 - Unauthenticated Information Disclsoure1-click-migration5.3 (v3.1)Medium
CVE-2025-9985Featured Image from URL (FIFU) <= 5.2.7 - Unauthenticated Information Exposure via Log FileFeatured Image from URL (FIFU)5.3 (v3.1)Medium
CVE-2026-50230Lyrion Music Server <= 9.2.0 - Cross-Site ScriptingLyrion Music Server5.1 (v4.0)Medium
CVE-2001-1341Solare Datensysteme Solar-Log Devices 2.8.4-56/3.5.2-85 - Multiple Vulnerabilitiesipc at chip embedded-webserver5.0 (v2.0)Medium
CVE-2022-40843Tenda AC1200 V-W15Ev2 - Authentication Bypassac1200 v-w15ev24.9 (v3.1)Medium
CVE-2008-1547Microsoft OWA Exchange Server 2003 - 'redir.asp' Open Redirectionexchange server4.3 (v2.0)Medium

Observed CWEs

These CWEs are recorded on published CVEs in the selected observations associated with this rule. They are observational relationships, not a claim that the rule universally blocks every vulnerability assigned to a CWE.

CWERelated Published CVEs
CWE-22CVE-2019-19781 , CVE-2024-8752 , CVE-2021-47795 , CVE-2023-7327 , CVE-2023-43662 , CVE-2017-1000028 , CVE-2017-16806 , CVE-2018-10201 , CVE-2018-8727 , CVE-2019-14322 , CVE-2020-14864 , CVE-2021-34805 , CVE-2021-40661 , CVE-2022-23854 , CVE-2022-27043 , CVE-2023-39026 , CVE-2024-36991 , CVE-2026-28414 , CVE-2017-9416 , CVE-2026-12898 , CVE-2018-1271 , CVE-2017-9965 , CVE-2018-16133
CWE-23CVE-2022-23854
CWE-32CVE-2024-6049
CWE-35CVE-2024-36991
CWE-36CVE-2026-28414
CWE-79CVE-2019-17504 , CVE-2026-50230
CWE-89CVE-2023-34362
CWE-91CVE-2022-25356
CWE-113CVE-2024-52875
CWE-200CVE-2017-11165 , CVE-2018-0127 , CVE-2018-7251 , CVE-2023-40600 , CVE-2023-44982 , CVE-2024-12008 , CVE-2025-31125 , CVE-2018-18762 , CVE-2024-13609 , CVE-2024-8852
CWE-259CVE-2024-7332
CWE-284CVE-2025-31125
CWE-287CVE-2018-12455
CWE-306CVE-2018-0127 , CVE-2019-19822 , CVE-2020-10973
CWE-425CVE-2019-17503
CWE-522CVE-2017-8225 , CVE-2024-32238 , CVE-2024-44000 , CVE-2019-19823
CWE-532CVE-2023-43261 , CVE-2024-20440 , CVE-2025-14437 , CVE-2025-9985
CWE-552CVE-2017-14942 , CVE-2021-40150 , CVE-2023-2766 , CVE-2021-40149
CWE-601CVE-2008-1547
CWE-798CVE-2022-34045 , CVE-2024-7332
CWE-1258CVE-2025-32257