CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8898  CVE-2004-0470  Candidate  BEA WebLogic Server and WebLogic Express 7.0 through SP5 and 8.1 through SP2, when editing weblogic.xml using WebLogic Builder or the SecurityRoleAssignmentMBean.toXML method, inadvertently removes security-role-assignment tags when weblogic.xml does not have a principal-name tag, which can remove intended access restrictions for the associated web application.  Assigned (20040513)  None (candidate not yet proposed)    View
8899  CVE-2004-0471  Candidate  BEA WebLogic Server and WebLogic Express 7.0 through SP5 and 8.1 through SP2 does not enforce site restrictions for starting and stopping servers for users in the Admin and Operator security roles, which allows unauthorized users to cause a denial of service (service shutdown).  Assigned (20040513)  None (candidate not yet proposed)    View
8900  CVE-2004-0472  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is a reservation duplicate of CVE-2004-0434. Notes: All CVE users should reference CVE-2004-0434 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20040513)  None (candidate not yet proposed)    View
8901  CVE-2004-0473  Candidate  Argument injection vulnerability in Opera before 7.50 does not properly filter "-" characters that begin a hostname in a telnet URI, which allows remote attackers to insert options to the resulting command line and overwrite arbitrary files via (1) the "-f" option on Windows XP or (2) the "-n" option on Linux.  Assigned (20040513)  None (candidate not yet proposed)    View
8902  CVE-2004-0474  Candidate  Help Center (HelpCtr.exe) may allow remote attackers to read or execute arbitrary files via an "http://" or "file://" argument to the topic parameter in an hcp:// URL. NOTE: since the initial report of this problem, several researchers have been unable to reproduce this issue.  Assigned (20040514)  None (candidate not yet proposed)    View

Page 867 of 20943, showing 5 records out of 104715 total, starting on record 4331, ending on 4335

Actions