BEA WebLogic Server and Express are reported to be prone to an issue which has the potential to disclose sensitive information to malicious parties. The vulnerable software occasionally returns two responses for a HTTP request. As a result, two users may receive responses from a single user's request, which may unintentionally expose sensitive information. It has been reported by the vendor that there is no way for an attacker to trigger this vulnerability, and that the condition may occur randomly.
BEA WebLogic Server and Express are reported to be prone to an issue which has the potential to disclose sensitive information to malicious parties. The vulnerable software occasionally returns two responses for a HTTP request. As a result, two users may receive responses from a single user's request, which may unintentionally expose sensitive information. It has been reported by the vendor that there is no way for an attacker to trigger this vulnerability, and that the condition may occur randomly.