CVE-2007-4614: High severity bea weblogic server vulnerability
BEA WebLogic Server 9.1 does not properly handle propagation of an admin server's security policy change log to temporarily unavailable managed servers, which might allow attackers to bypass intended restrictions, a different vulnerability than CVE-2007-0426.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4614?
CVE-2007-4614 is classified as a potentially high-severity vulnerability due to its ability to allow attackers to bypass security restrictions.
How do I fix CVE-2007-4614?
To fix CVE-2007-4614, ensure that all managed servers are properly configured to propagate security policy changes from the admin server.
What software is affected by CVE-2007-4614?
CVE-2007-4614 specifically affects BEA WebLogic Server version 9.1.
Can CVE-2007-4614 allow unauthorized access?
Yes, CVE-2007-4614 may allow unauthorized access by enabling attackers to bypass intended security restrictions.
Is CVE-2007-4614 related to other vulnerabilities?
Yes, CVE-2007-4614 is a different vulnerability than CVE-2007-0426, although both affect WebLogic Server.