CVE Vulnerabilities

CVE-2005-1745

Published: May 24, 2005 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The UserLogin control in BEA WebLogic Portal 8.1 through Service Pack 3 prints the password to standard output when an incorrect login attempt is made, which could make it easier for attackers to guess the correct password.

Affected Software

Name Vendor Start Version End Version
Weblogic_server Bea 6.0 (including) 6.0 (including)
Weblogic_server Bea 6.0-sp1 (including) 6.0-sp1 (including)
Weblogic_server Bea 6.0-sp2 (including) 6.0-sp2 (including)
Weblogic_server Bea 6.1 (including) 6.1 (including)
Weblogic_server Bea 6.1-sp1 (including) 6.1-sp1 (including)
Weblogic_server Bea 6.1-sp2 (including) 6.1-sp2 (including)
Weblogic_server Bea 6.1-sp3 (including) 6.1-sp3 (including)
Weblogic_server Bea 6.1-sp4 (including) 6.1-sp4 (including)
Weblogic_server Bea 6.1-sp5 (including) 6.1-sp5 (including)
Weblogic_server Bea 6.1-sp6 (including) 6.1-sp6 (including)
Weblogic_server Bea 7.0 (including) 7.0 (including)
Weblogic_server Bea 7.0-sp1 (including) 7.0-sp1 (including)
Weblogic_server Bea 7.0-sp2 (including) 7.0-sp2 (including)
Weblogic_server Bea 7.0-sp3 (including) 7.0-sp3 (including)
Weblogic_server Bea 7.0-sp4 (including) 7.0-sp4 (including)
Weblogic_server Bea 7.0-sp5 (including) 7.0-sp5 (including)
Weblogic_server Bea 7.0.0.1 (including) 7.0.0.1 (including)
Weblogic_server Bea 7.0.0.1-sp1 (including) 7.0.0.1-sp1 (including)
Weblogic_server Bea 7.0.0.1-sp2 (including) 7.0.0.1-sp2 (including)
Weblogic_server Bea 7.0.0.1-sp3 (including) 7.0.0.1-sp3 (including)
Weblogic_server Bea 7.0.0.1-sp4 (including) 7.0.0.1-sp4 (including)
Weblogic_server Bea 8.1 (including) 8.1 (including)
Weblogic_server Bea 8.1-sp1 (including) 8.1-sp1 (including)
Weblogic_server Bea 8.1-sp2 (including) 8.1-sp2 (including)
Weblogic_server Bea 8.1-sp3 (including) 8.1-sp3 (including)
Weblogic_server Bea 8.1-sp4 (including) 8.1-sp4 (including)
Weblogic_portal Oracle 8.0 (including) 8.0 (including)

References