6.4
CVSSv2

CVE-2007-4615

Published: 31/08/2007 Updated: 29/07/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The SSL client implementation in BEA WebLogic Server 7.0 SP7, 8.1 SP2 through SP6, 9.0, 9.1, 9.2 Gold through MP2, and 10.0 sometimes selects the null cipher when others are available, which might allow remote malicious users to intercept communications.

Vulnerable Product Search on Vulmon Subscribe to Product

bea weblogic server 8.1

bea weblogic server 7.0

bea weblogic server

bea weblogic server 10.0

bea weblogic server 9.0

bea weblogic server 9.1