BEA WebLogic Web Application...

- AV AC AU C I A
发布: 2003-03-18
修订: 2025-04-13

BEA WebLogic reported vulnerable to authentication bypass vulnerability under certain circumstances. When a BEA WebLogic web application component that implements session persistence is redistributed without a server reboot an authenticated user session can, in some cases, be reused by any user for a variable period of time without requiring valid credentials. This vulnerability may be exploited to gain access to the WebLogic server without prior authentication.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息