The Plumtree portal in BEA AquaLogic Interaction 5.0.2 up to and including 5.0.4 and 6.0.1.218452 allows remote malicious users to obtain version numbers and internal hostnames by reading comments in the HTML source of any page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
bea aqualogic interaction 5.0.2 |
||
bea aqualogic interaction 6.0.1.218452 |
||
bea aqualogic interaction 5.0.3 |
||
bea aqualogic interaction 5.0.4 |