NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
74294  CVE-2003-1224  Weblogic.admin for BEA WebLogic Server and Express 7.0 and 7.0.0.1 displays the JDBCConnectionPoolRuntimeMBean password to the screen in cleartext, which allows attackers to read a user"s password by physically observing ("shoulder surfing") the screen.    2.1  Low  2017-01-03  2008-09-10  View
4069  CVE-2008-4215  Weblog in Mac OS X Server 10.4.11 does not properly check an error condition when a weblog posting access control list is specified for a user that has multiple short names, which might allow attackers to bypass intended access restrictions.    7.5  High  2017-01-03  2011-03-07  View
71611  CVE-2004-1222  weblibs.pl in WebLibs 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the TextFile parameter.    10  High  2017-07-18  2017-07-10  View
18049  CVE-2016-1699  WebKit/Source/devtools/front_end/devtools.js in the Developer Tools (aka DevTools) subsystem in Blink, as used in Google Chrome before 51.0.2704.79, does not ensure that the remoteFrontendUrl parameter is associated with a chrome-devtools-frontend.appspot.com URL, which allows remote attackers to bypass intended access restrictions via a crafted URL.    4.3  Medium  2017-01-19  2016-07-29  View
18061  CVE-2016-1711  WebKit/Source/core/loader/FrameLoader.cpp in Blink, as used in Google Chrome before 52.0.2743.82, does not disable frame navigation during a detach operation on a DocumentLoader object, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.    6.8  Medium  2017-01-19  2016-11-28  View

Page 279 of 17672, showing 5 records out of 88360 total, starting on record 1391, ending on 1395

Actions