Page 23 of 116 results (0.006 seconds)

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

JSP sample files in Allaire JRun 2.3.x allow remote attackers to access arbitrary files (e.g. via viewsource.jsp) or obtain configuration information. • http://www.allaire.com/handlers/index.cfm?ID=16290&Method=Full http://www.osvdb.org/2713 http://www.securityfocus.com/bid/1386 https://exchange.xforce.ibmcloud.com/vulnerabilities/4774 •

CVSS: 6.4EPSS: 0%CPEs: 1EXPL: 0

Servlet examples in Allaire JRun 2.3.x allow remote attackers to obtain sensitive information, e.g. listing HttpSession ID's via the SessionServlet servlet. • http://www.allaire.com/handlers/index.cfm?ID=16290&Method=Full http://www.osvdb.org/818 http://www.securityfocus.com/bid/1386 https://exchange.xforce.ibmcloud.com/vulnerabilities/4774 •

CVSS: 4.6EPSS: 0%CPEs: 1EXPL: 0

Macromedia "The Matrix" screen saver on Windows 95 with the "Password protected" option enabled allows attackers with physical access to the machine to bypass the password prompt by pressing the ESC (Escape) key. • http://marc.info/?l=bugtraq&m=93915027622690&w=2 •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

Auto-update feature of Macromedia Shockwave 7 transmits a user's password and hard disk information back to Macromedia. • http://www.securityfocus.com/archive/1/12842 https://exchange.xforce.ibmcloud.com/vulnerabilities/1931 •

CVSS: 2.1EPSS: 0%CPEs: 1EXPL: 0

Macromedia Dreamweaver uses weak encryption to store FTP passwords, which could allow local users to easily decrypt the passwords of other users. • http://www.securityfocus.com/archive/1/9511 https://exchange.xforce.ibmcloud.com/vulnerabilities/1636 •