CVE-2007-0433: Medium severity Bea AquaLogic Service Bus vulnerability
Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated users to access the server even after the account has been disabled.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0433?
CVE-2007-0433 is considered a critical vulnerability due to the potential for unauthorized access to the server after user accounts have been disabled.
How do I fix CVE-2007-0433?
To address CVE-2007-0433, upgrade to the latest version of BEA AquaLogic Enterprise Security that has patched this vulnerability.
Who is affected by CVE-2007-0433?
CVE-2007-0433 affects users of BEA AquaLogic Enterprise Security versions 2.0 to 2.2 when using Active Directory LDAP for authentication.
Can CVE-2007-0433 be exploited remotely?
Yes, CVE-2007-0433 can be exploited by remote authenticated users, allowing them access even to disabled accounts.
What types of systems are impacted by CVE-2007-0433?
CVE-2007-0433 impacts systems running specific versions of BEA AquaLogic Service Bus, ranging from 2.0 to 2.2.