BEA WebLogic Server and WebLogic Express 7.0 through 7.0 Service Pack 4, and 8.1 through 8.1 Service Pack 2, allows attackers to obtain the username and password for booting the server by directly accessing certain internal methods.
2004-08-06T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |