BEA WebLogic Server and WebLogic Express 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 allows remote authenticated guest users to read the server log and obtain sensitive configuration information.
Link | Tags |
---|---|
http://dev2dev.bea.com/pub/advisory/168 | patch vendor advisory |
http://www.vupen.com/english/advisories/2006/0313 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24295 | vdb entry |
http://www.osvdb.org/22776 | vdb entry |
http://securitytracker.com/id?1015528 | patch vdb entry |
http://secunia.com/advisories/18592 | patch vendor advisory third party advisory |
http://www.securityfocus.com/bid/16358 | vdb entry |