CVE-2008-0897 - CERT CVE
ID CVE-2008-0897
Sažetak Unspecified vulnerability in BEA WebLogic Server 9.0 through 10.0 allows remote authenticated users without "receive" permissions to bypass intended access restrictions and receive messages from a standalone JMS Topic or secured Distributed Topic member destination, related to durable subscriptions.
Reference
CVSS
Base: 7.9
Impact: 9.2
Exploitability:6.8
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE NONE
CVSS vektor AV:N/AC:M/Au:S/C:C/I:C/A:N
Zadnje važnije ažuriranje 08-03-2011 - 03:05
Objavljeno 22-02-2008 - 21:44