CVE
- Id
- 30987
- CVE No.
- CVE-2008-0870
- Status
- Candidate
- Description
- BEA WebLogic Portal 10.0 and 9.2 through Maintenance Pack 2, under certain circumstances, can redirect a user from the https:// URI for the Portal Administration Console to an http URI, which allows remote attackers to sniff the session.
- Phase
- Assigned (20080220)
- Votes
- None (candidate not yet proposed)
- Comments