BEA WebLogic Server and WebLogic Express 9.0, 8.1 through SP5, and 7.0 through SP6 allows anonymous binds to the embedded LDAP server, which allows remote attackers to read user entries or cause a denial of service (unspecified) via a large number of connections.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2006-01-25T23:00:00
Updated: 2024-08-07T16:34:14.652Z
Reserved: 2006-01-25T00:00:00
Link: CVE-2006-0419
Vulnrichment
No data.
NVD
Status : Modified
Published: 2006-01-25T23:07:00.000
Modified: 2024-11-21T00:06:25.250
Link: CVE-2006-0419
Redhat
No data.