Описание
Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated users to access the server even after the account has been disabled.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:bea:aqualogic_service_bus:2.0:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_service_bus:2.0:sp1:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_service_bus:2.0:sp2:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_service_bus:2.1:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_service_bus:2.1:sp1:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_service_bus:2.2:*:*:*:*:*:*:*
EPSS
Процентиль: 77%
0.01037
Низкий
6.5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated users to access the server even after the account has been disabled.
EPSS
Процентиль: 77%
0.01037
Низкий
6.5 Medium
CVSS2
Дефекты
NVD-CWE-Other