BEA WebLogic Portal 9.2 GA can corrupt a visitor entitlements role if an administrator provides a long role description, which might allow remote authenticated users to access privileged resources.
Link | Tags |
---|---|
http://osvdb.org/36065 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34285 | vdb entry |
http://secunia.com/advisories/25284 | third party advisory vendor advisory |
http://dev2dev.bea.com/pub/advisory/236 | patch vendor advisory |
http://www.securitytracker.com/id?1018060 | vdb entry vendor advisory |
http://www.vupen.com/english/advisories/2007/1815 | vdb entry |