CVE-2008-0897
22.02.2008, 21:44
Unspecified vulnerability in BEA WebLogic Server 9.0 through 10.0 allows remote authenticated users without "receive" permissions to bypass intended access restrictions and receive messages from a standalone JMS Topic or secured Distributed Topic member destination, related to durable subscriptions.Enginsight
| Vendor | Product | Version |
|---|---|---|
| bea | weblogic_server | 9.0 |
| bea | weblogic_server | 9.1 |
| bea | weblogic_server | 9.2 |
| bea | weblogic_server | 9.2:mp1 |
| bea | weblogic_server | 10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References