7.5
CVSSv2

CVE-2008-0870

Published: 21/02/2008 Updated: 30/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

BEA WebLogic Portal 10.0 and 9.2 through Maintenance Pack 2, under certain circumstances, can redirect a user from the URI for the Portal Administration Console to an http URI, which allows remote malicious users to sniff the session.

Vulnerable Product Search on Vulmon Subscribe to Product

bea systems weblogic portal 9.2

oracle weblogic portal 9.2

bea systems weblogic portal 10.0