CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9140 | CVE-2004-0712 | Candidate | The configuration tools (1) config.sh in Unix or (2) config.cmd in Windows for BEA WebLogic Server 8.1 through SP2 create a log file that contains the administrative username and password in cleartext, which could allow local users to gain privileges. | Assigned (20040720) | None (candidate not yet proposed) | View | |
9139 | CVE-2004-0711 | Candidate | The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if they were the legal "/*" pattern, which could cause WebLogic 7.x to allow remote attackers to bypass intended access restrictions because the illegal patterns are properly rejected. | Assigned (20040720) | None (candidate not yet proposed) | View | |
9138 | CVE-2004-0710 | Candidate | IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before 12.2(17d)SXB, or before 12.2(14)SY03 could allow remote attackers to cause a denial of service (device crash and reload) via a malformed Internet Key Exchange (IKE) packet. | Assigned (20040720) | None (candidate not yet proposed) | View | |
9137 | CVE-2004-0709 | Candidate | HP OpenView Select Access 5.0 through 6.0 does not correctly decode UTF-8 encoded unicode characters in a URL, which could allow remote attackers to bypass access restrictions. | Assigned (20040720) | None (candidate not yet proposed) | View | |
9136 | CVE-2004-0708 | Candidate | MoinMoin 1.2.1 and earlier allows remote attackers to gain privileges by creating a user with the same name as an existing group that has higher privileges. | Assigned (20040720) | None (candidate not yet proposed) | View |
Page 19116 of 20943, showing 5 records out of 104715 total, starting on record 95576, ending on 95580