Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r94f-3fx8-fr52

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The WSEE runtime (WS-Security runtime) in BEA WebLogic Server 9.0 and 9.1 does not verify credentials when decrypting client messages, which allows remote attackers to bypass application security.

The WSEE runtime (WS-Security runtime) in BEA WebLogic Server 9.0 and 9.1 does not verify credentials when decrypting client messages, which allows remote attackers to bypass application security.

EPSS

Процентиль: 69%
0.00611
Низкий

Связанные уязвимости

nvd
около 19 лет назад

The WSEE runtime (WS-Security runtime) in BEA WebLogic Server 9.0 and 9.1 does not verify credentials when decrypting client messages, which allows remote attackers to bypass application security.

EPSS

Процентиль: 69%
0.00611
Низкий