The embedded LDAP server in BEA WebLogic Server and Express 8.1 through Service Pack 4, and 7.0 through Service Pack 5, allows remote anonymous binds, which may allow remote attackers to view user entries or cause a denial of service.
References
Link | Resource |
---|---|
http://dev2dev.bea.com/pub/advisory/131 | Vendor Advisory |
http://www.securityfocus.com/bid/13717 | |
http://secunia.com/advisories/15486 | Vendor Advisory |
http://securitytracker.com/id?1014049 | |
http://www.vupen.com/english/advisories/2005/0608 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-05-23 21:00
Updated : 2018-10-30 09:26
NVD link : CVE-2005-1748
Mitre link : CVE-2005-1748
JSON object : View
CWE
Products Affected
oracle
- weblogic_portal
bea
- weblogic_server