CVE Vulnerabilities

CVE-2007-0417

Published: Jan 23, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

BEA WebLogic Server 7.0 through 7.0 SP7, 8.1 through 8.1 SP5, 9.0, and 9.1, when using the WebLogic Server 6.1 compatibility realm, allows attackers to execute certain EJB container persistence operations with an administrative identity.

Affected Software

NameVendorStart VersionEnd Version
Weblogic_serverBea*7.0 (including)
Weblogic_serverBea7.0 (including)7.0 (including)
Weblogic_serverBea8.1 (including)8.1 (including)
Weblogic_serverBea8.1-sp5 (including)8.1-sp5 (including)
Weblogic_serverBea9.0 (including)9.0 (including)
Weblogic_serverBea9.1 (including)9.1 (including)

References