Skip to main content

Vendor/product archive

oracle / iplanet_web_server CVEs

Beta · best-effort

7 CVEs tagged to oracle / iplanet_web_server1 Critical, 2 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2020-9315

Published May 10, 2020

** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web Server 7.0.x has Incorrect Access Control for admingui/version URIs in the Administration console, as demonstrated by…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-9314

Published May 10, 2020

** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web Server 7.0.x allows image injection in the Administration console via the productNameSrc parameter to an admingui URI.…

CVSS 4.8 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-10055

Published Oct 19, 2017

Vulnerability in the Oracle iPlanet Web Server component of Oracle Fusion Middleware (subcomponent: Admin Graphical User Interface). The supported version that is affected is 7.0.…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-1950

Published Mar 13, 2016

Heap-based buffer overflow in Mozilla Network Security Services (NSS) before 3.19.2.3 and 3.20.x and 3.21.x before 3.21.1, as used in Mozilla Firefox before 45.0 and Firefox ESR 3…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Showing 1-7 of 7 CVEsPage 1 of 1