Логотип exploitDog
bind:CVE-2004-1756
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2004-1756

Количество 2

Количество 2

nvd логотип

CVE-2004-1756

почти 22 года назад

BEA WebLogic Server and WebLogic Express 8.1 SP2 and earlier, and 7.0 SP4 and earlier, when using 2-way SSL with a custom trust manager, may accept a certificate chain even if the trust manager rejects it, which allows remote attackers to spoof other users or servers.

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-vgc7-vcfh-c73q

почти 4 года назад

BEA WebLogic Server and WebLogic Express 8.1 SP2 and earlier, and 7.0 SP4 and earlier, when using 2-way SSL with a custom trust manager, may accept a certificate chain even if the trust manager rejects it, which allows remote attackers to spoof other users or servers.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-1756

BEA WebLogic Server and WebLogic Express 8.1 SP2 and earlier, and 7.0 SP4 and earlier, when using 2-way SSL with a custom trust manager, may accept a certificate chain even if the trust manager rejects it, which allows remote attackers to spoof other users or servers.

CVSS2: 5
2%
Низкий
почти 22 года назад
github логотип
GHSA-vgc7-vcfh-c73q

BEA WebLogic Server and WebLogic Express 8.1 SP2 and earlier, and 7.0 SP4 and earlier, when using 2-way SSL with a custom trust manager, may accept a certificate chain even if the trust manager rejects it, which allows remote attackers to spoof other users or servers.

2%
Низкий
почти 4 года назад

Уязвимостей на страницу