Vulnerability index

Browse CVEs

17 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.4 CVE-2010-2375EPSS 7% Package/Privilege: Plugins for Apache, Sun and IIS web servers Unspecified vulnerability in the WebLogic Server component in Oracle Fusion Middleware… Weblogic Server No fix yet Fix from $1,6002010-07-13 MEDIUM 6.8 CVE-2007-5576 BEA Tuxedo 8.0 before RP392 and 8.1 before RP293, and WebLogic Enterprise 5.1 before RP174, echo the password in cleartext, which allows physically p… Tuxedo Mitigation only Fix from $1,6002007-10-18 HIGH 7.8 CVE-2007-4617 Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP4 allows remote attackers to caus… Weblogic Server Mitigation only Fix from $1,9502007-08-31 HIGH 7.5 CVE-2007-0432 BEA AquaLogic Service Bus 2.0, 2.1, and 2.5 does not properly reject malformed request messages to a proxy service, which might allow remote attacker… Aqualogic Service Bus No fix yet Fix from $1,9502007-01-23 MEDIUM 6.5 CVE-2007-0433 Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP fo… Aqualogic Service Bus Mitigation only Fix from $1,6002007-01-23 HIGH 7.5 CVE-2005-4750 BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP5 and earlier, and 6.1 SP7 and earlier allow remote attackers to cause a denial o… Weblogic Server Mitigation only Fix from $1,9502005-12-31 HIGH 7.5 CVE-2005-4763 BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP6 and earlier, and 6.1 SP7 and earlier, when Internet Inter-ORB Protocol (IIOP) i… Weblogic Server Mitigation only Fix from $1,9502005-12-31 HIGH 7.5 CVE-2005-1743 BEA WebLogic Server and WebLogic Express 8.1 through Service Pack 3 and 7.0 through Service Pack 5 does not properly handle when a security provider … Weblogic Server Mitigation only Fix from $1,9502005-05-24 MEDIUM 6.8 CVE-2005-1747EPSS 5% Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Server and Express 8.1 through Service Pack 4, and 7.0 through Service Pack 6, al… Weblogic Server Mitigation only Fix from $1,6002005-05-24 MEDIUM 5.0 CVE-2005-1742 BEA WebLogic Server and WebLogic Express 8.1 SP2 and SP3 allows users with the Monitor security role to "shrink or reset JDBC connection pools." Weblogic Server Mitigation only Fix from $1,6002005-05-24 MEDIUM 5.0 CVE-2005-1746 The cluster cookie parsing code in BEA WebLogic Server 7.0 through Service Pack 5 attempts to contact any host or port specified in a cookie, even wh… Weblogic Server Mitigation only Fix from $1,6002005-05-24 MEDIUM 5.0 CVE-2005-1748 The embedded LDAP server in BEA WebLogic Server and Express 8.1 through Service Pack 4, and 7.0 through Service Pack 5, allows remote anonymous binds… Weblogic Server Mitigation only Fix from $1,6002005-05-24 MEDIUM 5.0 CVE-2005-1749 Buffer overflow in BEA WebLogic Server and WebLogic Express 6.1 Service Pack 4 allows remote attackers to cause a denial of service (CPU consumption … Weblogic Server Mitigation only Fix from $1,6002005-05-24 MEDIUM 6.8 CVE-2005-1380 Cross-site scripting (XSS) vulnerability in BEA Admin Console 8.1 allows remote attackers to execute arbitrary web script or HTML via the server para… Weblogic Server No fix yet Fix from $1,6002005-05-03 MEDIUM 5.5 CVE-2004-2696 BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, when using Remote Method Invocation (RMI) over Internet Inter-ORB Protocol (IIOP), does n… Weblogic Server Mitigation only Fix from $1,6002004-12-31 HIGH 7.5 CVE-2003-0151 BEA WebLogic Server and Express 6.0 through 7.0 does not properly restrict access to certain internal servlets that perform administrative functions,… Weblogic Server Mitigation only Fix from $1,9502003-03-24 HIGH 7.5 CVE-2002-2141 BEA WebLogic Server and Express 7.0 and 7.0.0.1, when running Servlets and Enterprise JavaBeans (EJB) on more than one server, will remove the securi… Weblogic Server Mitigation only Fix from $1,9502002-12-31