CVE
- Id
- 8045
- CVE No.
- CVE-2003-1221
- Status
- Candidate
- Description
- BEA WebLogic Express and Server 7.0 through 8.1 SP 1, under certain circumstances when a request to use T3 over SSL (t3s) is made to the insecure T3 port, may use a non-SSL connection for the communication, which could allow attackers to sniff sessions.
- Phase
- Assigned (20050816)
- Votes
- None (candidate not yet proposed)
- Comments