NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52648 | CVE-2007-0421 | BEA WebLogic Server 6.1 through 6.1 SP7, and 7.0 through 7.0 SP7 allows remote attackers to cause a denial of service (disk consumption) via requests containing malformed headers, which cause a large amount of data to be written to the server log. | 2 | 6.4 | Medium | 2017-01-07 | 2011-03-07 | View | |
52639 | CVE-2007-0412 | BEA WebLogic Server 6.1 through 6.1 SP7, 7.0 through 7.0 SP7, and 8.1 through 8.1 SP5 allows remote attackers to read arbitrary files inside the class-path property via .ear or exploded .ear files that use the manifest class-path property to point to utility jar files. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
52641 | CVE-2007-0414 | BEA WebLogic Server 6.1 through 6.1 SP7, 7.0 through 7.0 SP6, 8.1 through 8.1 SP5, and 9.0 allows remote attackers to cause a denial of service (server hang) via certain requests that cause muxer threads to block when processing error pages. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
60060 | CVE-2006-1351 | BEA WebLogic Server 6.1 SP7 and earlier allows remote attackers to read arbitrary files via unknown attack vectors related to a "default internal servlet" accessed through HTTP. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
52653 | CVE-2007-0426 | BEA WebLogic Portal 9.2, when running in a WebLogic Server clustered environment using WebLogic Portal entitlements, does not properly propagate entitlement policy changes if the changes are made on a managed server while the Administrative Server is unavailable, which might allow attackers to bypass intended restrictions. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 16163 of 17672, showing 5 records out of 88360 total, starting on record 80811, ending on 80815