5
CVSSv2

CVE-2008-0864

Published: 21/02/2008 Updated: 30/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Admin Tools in BEA WebLogic Portal 8.1 SP3 through SP6 can inadvertently remove entitlements for pages when an administrator edits the page definition label, which might allow remote malicious users to bypass intended access restrictions.

Vulnerable Product Search on Vulmon Subscribe to Product

bea systems weblogic portal 8.1_sp6

oracle weblogic portal 8.1