Products: 5
    Vulnerabilities: 17
    Known Exploited: 0
    3
    Critical Level Threats
    4
    High Level Threats
    9
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2003-1587

    Cross-site scripting (XSS) vulnerability in LoganPro allows remote attackers to inject arbitrary web script or HTML via a crafted User-Agent HTTP header.

    Last Modified: Apr 11, 2025
    Published: Feb 05, 2010

    CVE-2003-1586

    Cross-site scripting (XSS) vulnerability in WebExpert allows remote attackers to inject arbitrary web script or HTML via a crafted User-Agent HTTP header.

    Last Modified: Apr 11, 2025
    Published: Feb 05, 2010

    CVE-2002-1655

    The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause a denial of service (crash) via a wp-html-rend request.

    Last Modified: Apr 16, 2026
    Published: Dec 31, 2002

    CVE-2002-1654

    iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP Basic Authentication via the wp-force-auth Web Publisher command, which provides a distinct attack vector and may make it easier to conduct brute force password guessing without detection.

    Last Modified: Apr 16, 2026
    Published: Dec 31, 2002

    CVE-2002-1316

    importInfo in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows the web administrator to execute arbitrary commands via shell metacharacters in the dir parameter, and possibly allows remote attackers to exploit this vulnerability via a separate XSS issue (CVE-2002-1315).

    Last Modified: Apr 16, 2026
    Published: Nov 21, 2002
    Items Per Page
    Iplanet Vulnerabilities & Security CVEs | CVE-DB