CVE

Id
2805  
CVE No.
CVE-2000-1238  
Status
Candidate  
Description
BEA Systems WebLogic Express and WebLogic Server 5.1 SP1-SP6 allows remote attackers to bypass access controls for restricted JSP or servlet pages via a URL with multiple / (forward slash) characters before the restricted pages.  
Phase
Assigned (20051116)  
Votes
None (candidate not yet proposed)  
Comments