Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-4616
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-4616

Description:
The SSL server implementation in BEA WebLogic Server 7.0 Gold through SP7, 8.1 Gold through SP6, 9.0, 9.1, 9.2 Gold through MP1, and 10.0 sometimes selects the null cipher when no other cipher is compatible between the server and client, which might allow remote attackers to intercept communications.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/36320

ST
  1018620

SAID
  Secunia Advisory: SA26539

BID
  25472

BEA
  http://dev2dev.bea.com/pub/advisory/245


Return to the previous page.