The WebLogic Server Administration Console in BEA WebLogic Server 8.1 up to SP4 and 7.0 up to SP6 displays the domain name in the Console login form, which allows remote attackers to obtain sensitive information.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:11
Type | Values Removed | Values Added |
---|---|---|
References | () http://dev2dev.bea.com/pub/advisory/190 - Patch, Vendor Advisory | |
References | () http://secunia.com/advisories/20130 - Patch, Vendor Advisory | |
References | () http://securitytracker.com/id?1016097 - | |
References | () http://securitytracker.com/id?1016099 - | |
References | () http://www.vupen.com/english/advisories/2006/1828 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/26468 - |
Information
Published : 2006-05-19 10:02
Updated : 2024-11-21 00:11
NVD link : CVE-2006-2468
Mitre link : CVE-2006-2468
CVE.ORG link : CVE-2006-2468
JSON object : View
Products Affected
bea
- weblogic_server
CWE