bea
158 tracked vulnerabilities.
CVE-2005-1744
CRITICAL
BEA WebLogic Server & WebLogic Express 7.0-5 - Info Disclosure
May 24, 2005
CVSS 9.8
EPSS 0.01
CVE-2005-1745
BEA WebLogic Portal 8.1-SP3 - Info Disclosure
May 24, 2005
EPSS 0.01
CVE-2005-1746
BEA WebLogic Server 7.0-7.0 SP5 - Denial of Service via Cluster Cookie Parsing
May 24, 2005
EPSS 0.01
CVE-2005-1747
BEA WebLogic Server 7.0-8.1 - Cross-Site Scripting via Login Parameters and Console Pages
May 24, 2005
EPSS 0.03
CVE-2005-1748
BEA WebLogic Server 7.0-8.1 - Unauthenticated Denial of Service via LDAP Anonymous Bind
May 24, 2005
EPSS 0.01
CVE-2005-1749
BEA WebLogic Server 6.1 SP4 - Denial of Service via Buffer Overflow
May 24, 2005
EPSS 0.01
CVE-2005-1380
BEA WebLogic Server 8.1 - Cross-Site Scripting via Server Parameter in JndiFramesetAction
May 03, 2005
EPSS 0.01
CVE-2005-0432
BEA WebLogic Server <8.1 SP3 - Info Disclosure
May 02, 2005
EPSS 0.00
CVE-2004-1757
BEA WebLogic Server & Express <8.1.SP1 - Privilege Escalation
Dec 31, 2004
EPSS 0.00
CVE-2004-2320
BEA WebLogic Server and Express - Information Exposure via HTTP TRACE Method
Dec 31, 2004
EPSS 0.05
CVE-2004-2321
BEA WebLogic Server & Express <8.1 SP1 - Info Disclosure
Dec 31, 2004
EPSS 0.00
CVE-2004-2424
BEA WebLogic Server & WebLogic Express <8.1 SP2 - DoS
Dec 31, 2004
EPSS 0.01
CVE-2004-2696
BEA WebLogic Server and WebLogic Express 6.1, 7.0, 8.1 - Unauthenticated User Identity Spoofing via RMI over IIOP
Dec 31, 2004
EPSS 0.01
CVE-2004-0204
BEA Weblogic Server - Path Traversal
Aug 06, 2004
EPSS 0.75
CVE-2004-0652
BEA WebLogic Server <8.1 SP2 - Info Disclosure
Aug 06, 2004
EPSS 0.00
CVE-2004-0711
BEA WebLogic Server - URL Pattern Bypass via Illegal Wildcard Handling
Jul 27, 2004
EPSS 0.01
CVE-2004-0712
BEA WebLogic Server 8.1-SP2 - Info Disclosure
Jul 27, 2004
EPSS 0.00
CVE-2004-0713
BEA WebLogic Server/Express <8.1.SP2, <7.0.SP4, <6.1.SP6 - Privileg...
Jul 27, 2004
EPSS 0.01
CVE-2004-0715
WebLogic Server/Express <8.1.SP2 & 7.0.SP4 - Privilege Escalation
Jul 27, 2004
EPSS 0.02
CVE-2004-0470
BEA WebLogic Server & Express 7.0-8.1 - Info Disclosure
Jul 07, 2004
EPSS 0.02
CVE-2004-0471
BEA WebLogic Server & WebLogic Express <8.1 - DoS
Jul 07, 2004
EPSS 0.00
CVE-2004-1756
BEA WebLogic Server & Express <8.1 SP2 - Auth Bypass
Apr 13, 2004
EPSS 0.02
CVE-2004-1758
BEA WebLogic Server & Express - Info Disclosure
Apr 13, 2004
EPSS 0.00
CVE-2003-1093
BEA WebLogic Server <7.0.0.1 - Info Disclosure
Dec 31, 2003
EPSS 0.01
CVE-2003-1094
BEA WebLogic Server & Express <7.0 SP3 - Privilege Escalation
Dec 31, 2003
EPSS 0.02