CVE-2001-1477 Information

Description

The Domain gateway in BEA Tuxedo 7.1 does not perform authorization checks for imported services and qspaces on remote domains even when an ACL exists which allows users to access services in a remote domain.

Reference

http://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/BEA00-08.jsp https://exchange.xforce.ibmcloud.com/vulnerabilities/6326

Share on: