BEA WebLogic Server and Express 6.1 through 7.0.0.1 buffers HTTP requests in a way that can cause BEA to send the same response for two different HTTP requests, which could allow remote attackers to obtain sensitive information that was intended for other users.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Weblogic_server | Bea | 6.1 (including) | 6.1 (including) |
| Weblogic_server | Bea | 6.1-sp1 (including) | 6.1-sp1 (including) |
| Weblogic_server | Bea | 7.0 (including) | 7.0 (including) |
| Weblogic_server | Bea | 7.0.0.1 (including) | 7.0.0.1 (including) |