NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70294 | CVE-2005-4705 | BEA WebLogic Server and WebLogic Express 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7, when a Java client application creates an SSL connection to the server after it has already created an insecure connection, will use the insecure connection, which allows remote attackers to sniff the connection. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
59162 | CVE-2006-0424 | BEA WebLogic Server and WebLogic Express 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 allows remote authenticated guest users to read the server log and obtain sensitive configuration information. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
59158 | CVE-2006-0420 | BEA WebLogic Server and WebLogic Express 8.1 through SP4 and 7.0 through SP6 does not properly handle when servlets use relative forwarding, which allows remote attackers to cause a denial of service (slowdown) via unknown attack vectors that cause "looping stack overflow errors." | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
67467 | CVE-2005-1743 | BEA WebLogic Server and WebLogic Express 8.1 through Service Pack 3 and 7.0 through Service Pack 5 does not properly handle when a security provider throws an exception, which may cause WebLogic to use incorrect identity for the thread, or to fail to audit security exceptions. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
72801 | CVE-2004-2424 | BEA WebLogic Server and WebLogic Express 8.1 through 8.1 SP2 allow remote attackers to cause a denial of service (network port consumption) via unknown actions in HTTPS sessions, which prevents the server from releasing the network port when the session ends. | 2 | 5 | Medium | 2017-07-18 | 2017-07-11 | View |
Page 16152 of 17672, showing 5 records out of 88360 total, starting on record 80756, ending on 80760