CVE

CVE-2008-0865

Severity:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
21/02/2008
Last modified:
30/10/2018

Description

Unspecified vulnerability in BEA WebLogic Portal 8.1 through SP6 allows remote attackers to bypass entitlements for instances of a floatable WLP portlet via unknown vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bea_systems:weblogic_portal:8.1_sp6:*:*:*:*:*:*:*
cpe:2.3:a:oracle:weblogic_portal:8.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:weblogic_portal:8.1:sp1:*:*:*:*:*:*
cpe:2.3:a:oracle:weblogic_portal:8.1:sp2:*:*:*:*:*:*
cpe:2.3:a:oracle:weblogic_portal:8.1:sp3:*:*:*:*:*:*
cpe:2.3:a:oracle:weblogic_portal:8.1:sp4:*:*:*:*:*:*
cpe:2.3:a:oracle:weblogic_portal:8.1:sp5:*:*:*:*:*:*