NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63927 | CVE-2006-5324 | The Web Services Notification (WSN) security component of IBM WebSphere Application Server before 6.1.0.2 allows attackers to obtain unspecified access without supplying a username and password, aka PK28374. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 51196 | CVE-2009-4044 | The Web Services module 6.x for Drupal does not perform the expected access control, which allows remote attackers to make unspecified use of an API via unknown vectors. | 2 | 7.5 | High | 2017-01-07 | 2009-11-23 | View | |
| 10978 | CVE-2011-4590 | The web services implementation in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 does not properly consider the maintenance-mode state and account attributes during login attempts, which allows remote authenticated users to bypass intended access restrictions by connecting to a webservice server. | 2 | 4 | Medium | 2017-01-07 | 2012-07-23 | View | |
| 49349 | CVE-2009-2087 | The Web Services functionality in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.25 and 7.0 before 7.0.0.5, in certain circumstances involving the ibm-webservicesclient-bind.xmi file and custom password encryption, uses weak password obfuscation, which allows local users to cause a denial of service (deployment failure) via unspecified vectors. | 2 | 2.1 | Low | 2017-01-07 | 2014-10-24 | View | |
| 72134 | CVE-2004-1755 | The Web Services fat client for BEA WebLogic Server and Express 7.0 SP4 and earlier, when using 2-way SSL and multiple certificates to connect to the same URL, may use the incorrect identity after the first connection, which could allow users to gain privileges. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 2701 of 17672, showing 5 records out of 88360 total, starting on record 13501, ending on 13505