6.4
CVSSv2

CVE-2006-0419

Published: 25/01/2006 Updated: 05/09/2008
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

BEA WebLogic Server and WebLogic Express 9.0, 8.1 through SP5, and 7.0 through SP6 allows anonymous binds to the embedded LDAP server, which allows remote malicious users to read user entries or cause a denial of service (unspecified) via a large number of connections.

Vulnerable Product Search on Vulmon Subscribe to Product

bea weblogic server 7.0

bea weblogic server 8.1

bea weblogic server 9.0