Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-0864
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-0864

Description:
Admin Tools in BEA WebLogic Portal 8.1 SP3 through SP6 can inadvertently remove entitlements for pages when an administrator edits the page definition label, which might allow remote attackers to bypass intended access restrictions.

CVE Status:
Candidate

References:

ST
  1019454

SAID
  Secunia Advisory: SA29041

BEA
  http://dev2dev.bea.com/pub/advisory/256


Return to the previous page.