NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57641 | CVE-2007-5576 | BEA Tuxedo 8.0 before RP392 and 8.1 before RP293, and WebLogic Enterprise 5.1 before RP174, echo the password in cleartext, which allows physically proximate attackers to obtain sensitive information via the (1) cnsbind, (2) cnsunbind, or (3) cnsls commands. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
76924 | CVE-2000-0683 | BEA WebLogic 5.1.x allows remote attackers to read source code for parsed pages by inserting /*.shtml/ into the URL, which invokes the SSIServlet. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
76923 | CVE-2000-0682 | BEA WebLogic 5.1.x allows remote attackers to read source code for parsed pages by inserting /ConsoleHelp/ into the URL, which invokes the FileServlet. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
76925 | CVE-2000-0684 | BEA WebLogic 5.1.x does not properly restrict access to the JSPServlet, which could allow remote attackers to compile and execute Java JSP code by directly invoking the servlet on any source file. | 2 | 10 | High | 2017-01-05 | 2008-09-10 | View | |
76926 | CVE-2000-0685 | BEA WebLogic 5.1.x does not properly restrict access to the PageCompileServlet, which could allow remote attackers to compile and execute Java JHTML code by directly invoking the servlet on any source file. | 2 | 10 | High | 2017-01-05 | 2008-09-10 | View |
Page 1507 of 17672, showing 5 records out of 88360 total, starting on record 7531, ending on 7535