Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0896 (WebLogic Portal)

BugsAlert Home > CVE-2008-0896 (WebLogic Portal)
 
 

BEA WebLogic Portal 10.0 and 9.2 through MP1, when an administrator deletes a single instance of a content portlet, removes entitlement policies for other content portlets, which allows attackers to bypass intended access restrictions.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0896

Learn more about CVE-2008-0896 (WebLogic Portal)
 
Tags: cve-2008-0896 weblogic portal

Related Items

      CVE-2008-0791 (WinIPDS)

      CVE-2008-3691 (ace, player, server, vmware_player, vmware_server, vmware_workstation)

      Parallel SSH Execution and a Single Shell to Control Them All

      CVE-2008-2018 (phpizabi)

      FrSIRT - Slackware Security Update Fixes Firefox Code Execution Vulnerabilities

      CVE-2008-1456 (windows-nt)

      CVE-2008-0481 (Rich Text Editor)

 

Pixel