CVE
- Id
- 23783
- CVE No.
- CVE-2007-0426
- Status
- Candidate
- Description
- BEA WebLogic Portal 9.2, when running in a WebLogic Server clustered environment using WebLogic Portal entitlements, does not properly propagate entitlement policy changes if the changes are made on a managed server while the Administrative Server is unavailable, which might allow attackers to bypass intended restrictions.
- Phase
- Assigned (20070122)
- Votes
- None (candidate not yet proposed)
- Comments