Show filters
118 Total Results
Displaying 21-30 of 118
Sort by:
Attacker Value
Unknown
CVE-2017-5645
Disclosure Date: April 17, 2017 (last updated November 08, 2023)
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code.
0
Attacker Value
Unknown
CVE-2010-4453
Disclosure Date: January 19, 2011 (last updated October 04, 2023)
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 7.0.7, 8.1.6, 9.0, 9.1, 9.2.4, 10.0.2, 10.3.2, and 10.3.3 allows remote attackers to affect integrity via unknown vectors related to Servlet Container.
0
Attacker Value
Unknown
CVE-2010-2375
Disclosure Date: July 13, 2010 (last updated October 04, 2023)
Package/Privilege: Plugins for Apache, Sun and IIS web servers Unspecified vulnerability in the WebLogic Server component in Oracle Fusion Middleware 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, 10.3.2, and 10.3.3 allows remote attackers to affect confidentiality and integrity, related to IIS.
0
Attacker Value
Unknown
CVE-2010-0073
Disclosure Date: April 14, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the WebLogic Server in Oracle WebLogic Server 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, and 10.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
0
Attacker Value
Unknown
CVE-2008-2582
Disclosure Date: July 15, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the WebLogic Server component in Oracle BEA Product Suite 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 has unknown impact and remote attack vectors.
0
Attacker Value
Unknown
CVE-2008-2579
Disclosure Date: July 15, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the WebLogic Server Plugins for Apache, Sun and IIS web servers component in Oracle BEA Product Suite 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, 7.0 SP7, and 6.1 SP7 has unknown impact and remote attack vectors.
0
Attacker Value
Unknown
CVE-2008-2581
Disclosure Date: July 15, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the WebLogic Server component in Oracle BEA Product Suite 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 has unknown impact and remote attack vectors related to UDDI Explorer.
0
Attacker Value
Unknown
CVE-2008-0895
Disclosure Date: February 22, 2008 (last updated October 04, 2023)
BEA WebLogic Server and WebLogic Express 6.1 through 10.0 allows remote attackers to bypass authentication for application servlets via crafted request headers.
0
Attacker Value
Unknown
CVE-2008-0902
Disclosure Date: February 22, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Server and Express 6.1 through 10.0 MP1 allow remote attackers to inject arbitrary web script or HTML via unspecified samples. NOTE: this might be the same issue as CVE-2007-2694.
0
Attacker Value
Unknown
CVE-2008-0901
Disclosure Date: February 22, 2008 (last updated October 04, 2023)
BEA WebLogic Server and Express 7.0 through 10.0 allows remote attackers to conduct brute force password guessing attacks, even when account lockout has been activated, via crafted URLs that indicate whether a guessed password is successful or not.
0