6.4
CVSSv2

CVE-2007-4616

Published: 31/08/2007 Updated: 26/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The SSL server implementation in BEA WebLogic Server 7.0 Gold through SP7, 8.1 Gold through SP6, 9.0, 9.1, 9.2 Gold through MP1, and 10.0 sometimes selects the null cipher when no other cipher is compatible between the server and client, which might allow remote malicious users to intercept communications.

Vulnerable Product Search on Vulmon Subscribe to Product

bea weblogic server 7.0

bea weblogic server 8.1

bea weblogic server 9.0

bea weblogic server 9.1

bea weblogic server 9.2

bea weblogic server 10.0