CVE-2006-2467 Information

Description

BEA WebLogic Server 8.1 up to SP4 7.0 up to SP6 and 6.1 up to SP7 displays the internal IP address of the WebLogic server in the WebLogic Server Administration Console which allows remote authenticated administrators to determine the address.

Reference

http://dev2dev.bea.com/pub/advisory/191 http://secunia.com/advisories/20130 http://securitytracker.com/id?1016097 http://securitytracker.com/id?1016099 http://www.vupen.com/english/advisories/2006/1828 https://exchange.xforce.ibmcloud.com/vulnerabilities/26462

Share on: