Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

BEA WebLogic Operator/Admin Password Disclosure Vulnerability

BEA WebLogic Server and WebLogic Express are reported prone to a vulnerability that may result in the disclosure of Operator or Admin passwords. An attacker who has interactive access to the affected managed server, may potentially exploit this issue in a timed attack to harvest credentials when the managed server fails during the boot process.







 

Privacy Statement
Copyright 2009, SecurityFocus