CVE Vulnerabilities

CVE-2007-4614

Published: Aug 31, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

BEA WebLogic Server 9.1 does not properly handle propagation of an admin servers security policy change log to temporarily unavailable managed servers, which might allow attackers to bypass intended restrictions, a different vulnerability than CVE-2007-0426.

Affected Software

NameVendorStart VersionEnd Version
Weblogic_serverBea9.1 (including)9.1 (including)

References