Required CVE Record Information
Description
A recommended admin password reset mechanism for BEA WebLogic Server 8.1, when followed before October 10, 2005, causes the administrator password to be stored in cleartext in the domain directory, which could allow attackers to gain privileges.
References 5 Total
- secunia.com: 20130 third-party-advisory
- securitytracker.com: 1016101 vdb-entry
- vupen.com: ADV-2006-1828 vdb-entry
- dev2dev.bea.com: BEA06-131.00 vendor-advisory
- exchange.xforce.ibmcloud.com: weblogic-admin-password-cleartext(26460) vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- secunia.com: 20130 third-party-advisoryx_transferred
- securitytracker.com: 1016101 vdb-entryx_transferred
- vupen.com: ADV-2006-1828 vdb-entryx_transferred
- dev2dev.bea.com: BEA06-131.00 vendor-advisoryx_transferred
- exchange.xforce.ibmcloud.com: weblogic-admin-password-cleartext(26460) vdb-entryx_transferred