Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5xh6-xm7q-82q6

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

BEA WebLogic Server and WebLogic Express 8.1 through SP4, when configuration auditing is enabled and a password change occurs, stores the old and new passwords in cleartext in the DefaultAuditRecorder.log file, which could allow attackers to gain privileges.

BEA WebLogic Server and WebLogic Express 8.1 through SP4, when configuration auditing is enabled and a password change occurs, stores the old and new passwords in cleartext in the DefaultAuditRecorder.log file, which could allow attackers to gain privileges.

EPSS

Процентиль: 73%
0.00749
Низкий

Связанные уязвимости

nvd
около 20 лет назад

BEA WebLogic Server and WebLogic Express 8.1 through SP4, when configuration auditing is enabled and a password change occurs, stores the old and new passwords in cleartext in the DefaultAuditRecorder.log file, which could allow attackers to gain privileges.

EPSS

Процентиль: 73%
0.00749
Низкий