Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated users to access the server even after the account has been disabled.
References
Link | Resource |
---|---|
http://dev2dev.bea.com/pub/advisory/221 | Vendor Advisory |
http://securitytracker.com/id?1017524 | Vendor Advisory |
http://secunia.com/advisories/23786 | Vendor Advisory |
http://www.securityfocus.com/bid/22082 | |
http://osvdb.org/32861 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-01-22 18:28
Updated : 2008-11-12 22:31
NVD link : CVE-2007-0433
Mitre link : CVE-2007-0433
JSON object : View
CWE
Products Affected
bea
- aqualogic_service_bus