CVE Vulnerabilities

CVE-2005-4753

Published: Dec 31, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP6 and earlier, in certain heavy usage scenarios, report incorrect severity levels for an audit event, which might allow attackers to perform unauthorized actions and avoid detection.

Affected Software

NameVendorStart VersionEnd Version
Weblogic_serverBea7.0 (including)7.0 (including)
Weblogic_serverBea7.0-sp1 (including)7.0-sp1 (including)
Weblogic_serverBea7.0-sp2 (including)7.0-sp2 (including)
Weblogic_serverBea7.0-sp3 (including)7.0-sp3 (including)
Weblogic_serverBea7.0-sp4 (including)7.0-sp4 (including)
Weblogic_serverBea7.0-sp5 (including)7.0-sp5 (including)
Weblogic_serverBea7.0-sp6 (including)7.0-sp6 (including)
Weblogic_serverBea8.1 (including)8.1 (including)
Weblogic_serverBea8.1-sp1 (including)8.1-sp1 (including)
Weblogic_serverBea8.1-sp2 (including)8.1-sp2 (including)
Weblogic_serverBea8.1-sp3 (including)8.1-sp3 (including)
Weblogic_serverBea8.1-sp4 (including)8.1-sp4 (including)

References