NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
74294 | CVE-2003-1224 | Weblogic.admin for BEA WebLogic Server and Express 7.0 and 7.0.0.1 displays the JDBCConnectionPoolRuntimeMBean password to the screen in cleartext, which allows attackers to read a user"s password by physically observing ("shoulder surfing") the screen. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-10 | View | |
4069 | CVE-2008-4215 | Weblog in Mac OS X Server 10.4.11 does not properly check an error condition when a weblog posting access control list is specified for a user that has multiple short names, which might allow attackers to bypass intended access restrictions. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
71611 | CVE-2004-1222 | weblibs.pl in WebLibs 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the TextFile parameter. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
18049 | CVE-2016-1699 | WebKit/Source/devtools/front_end/devtools.js in the Developer Tools (aka DevTools) subsystem in Blink, as used in Google Chrome before 51.0.2704.79, does not ensure that the remoteFrontendUrl parameter is associated with a chrome-devtools-frontend.appspot.com URL, which allows remote attackers to bypass intended access restrictions via a crafted URL. | 2 | 4.3 | Medium | 2017-01-19 | 2016-07-29 | View | |
18061 | CVE-2016-1711 | WebKit/Source/core/loader/FrameLoader.cpp in Blink, as used in Google Chrome before 52.0.2743.82, does not disable frame navigation during a detach operation on a DocumentLoader object, which allows remote attackers to bypass the Same Origin Policy via a crafted web site. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 279 of 17672, showing 5 records out of 88360 total, starting on record 1391, ending on 1395