BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, when using Remote Method Invocation (RMI) over Internet Inter-ORB Protocol (IIOP), does not properly handle when multiple logins for different users coming from the same client, which could cause an "unexpected user identity" to be used in an RMI call.
2004-12-31T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 5.5 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:P/A:N
8.0
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 6.1 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 7.0.0.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |
Application | bea | weblogic_server | 8.1 | Yes |