CVE Vulnerabilities

CVE-2005-1743

Published: May 24, 2005 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

BEA WebLogic Server and WebLogic Express 8.1 through Service Pack 3 and 7.0 through Service Pack 5 does not properly handle when a security provider throws an exception, which may cause WebLogic to use incorrect identity for the thread, or to fail to audit security exceptions.

Affected Software

Name Vendor Start Version End Version
Weblogic_server Bea 6.0 (including) 6.0 (including)
Weblogic_server Bea 6.0-sp1 (including) 6.0-sp1 (including)
Weblogic_server Bea 6.0-sp2 (including) 6.0-sp2 (including)
Weblogic_server Bea 6.1 (including) 6.1 (including)
Weblogic_server Bea 6.1-sp1 (including) 6.1-sp1 (including)
Weblogic_server Bea 6.1-sp2 (including) 6.1-sp2 (including)
Weblogic_server Bea 6.1-sp3 (including) 6.1-sp3 (including)
Weblogic_server Bea 6.1-sp4 (including) 6.1-sp4 (including)
Weblogic_server Bea 6.1-sp5 (including) 6.1-sp5 (including)
Weblogic_server Bea 6.1-sp6 (including) 6.1-sp6 (including)
Weblogic_server Bea 7.0 (including) 7.0 (including)
Weblogic_server Bea 7.0-sp1 (including) 7.0-sp1 (including)
Weblogic_server Bea 7.0-sp2 (including) 7.0-sp2 (including)
Weblogic_server Bea 7.0-sp3 (including) 7.0-sp3 (including)
Weblogic_server Bea 7.0-sp4 (including) 7.0-sp4 (including)
Weblogic_server Bea 7.0-sp5 (including) 7.0-sp5 (including)
Weblogic_server Bea 7.0.0.1 (including) 7.0.0.1 (including)
Weblogic_server Bea 7.0.0.1-sp1 (including) 7.0.0.1-sp1 (including)
Weblogic_server Bea 7.0.0.1-sp2 (including) 7.0.0.1-sp2 (including)
Weblogic_server Bea 7.0.0.1-sp3 (including) 7.0.0.1-sp3 (including)
Weblogic_server Bea 7.0.0.1-sp4 (including) 7.0.0.1-sp4 (including)
Weblogic_server Bea 8.1 (including) 8.1 (including)
Weblogic_server Bea 8.1-sp1 (including) 8.1-sp1 (including)
Weblogic_server Bea 8.1-sp2 (including) 8.1-sp2 (including)
Weblogic_server Bea 8.1-sp3 (including) 8.1-sp3 (including)
Weblogic_server Bea 8.1-sp4 (including) 8.1-sp4 (including)
Weblogic_portal Oracle 8.0 (including) 8.0 (including)

References