BEA Weblogic Server 8.1 through 8.1 SP4 does not properly validate client certificates when reusing cached connections, which allows remote attackers to obtain access via an untrusted X.509 certificate.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-01-23T00:00:00
Updated: 2024-08-07T12:19:29.977Z
Reserved: 2007-01-22T00:00:00
Link: CVE-2007-0408
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-01-23T00:28:00.000
Modified: 2024-11-21T00:25:47.353
Link: CVE-2007-0408
Redhat
No data.