CVE Vulnerabilities

CVE-2008-0897

Published: Feb 22, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.9 HIGH
AV:N/AC:M/Au:S/C:C/I:C/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in BEA WebLogic Server 9.0 through 10.0 allows remote authenticated users without receive permissions to bypass intended access restrictions and receive messages from a standalone JMS Topic or secured Distributed Topic member destination, related to durable subscriptions.

Affected Software

NameVendorStart VersionEnd Version
Weblogic_serverBea9.0 (including)9.0 (including)
Weblogic_serverBea9.1 (including)9.1 (including)
Weblogic_serverBea9.2 (including)9.2 (including)
Weblogic_serverBea9.2-mp1 (including)9.2-mp1 (including)
Weblogic_serverBea10.0 (including)10.0 (including)

References