Vulnerability Database

313,825

Total vulnerabilities in the database

CVE-2007-0409

BEA WebLogic 7.0 through 7.0 SP6, 8.1 through 8.1 SP4, and 9.0 initial release does not encrypt passwords stored in the JDBCDataSourceFactory MBean Properties, which allows local administrative users to read the cleartext password.

  • Published: Jan 23, 2007
  • Updated: Nov 9, 2025
  • CVE: CVE-2007-0409
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 1.5
  • AV:L/AC:M/Au:S/C:P/I:N/A:N

No CWE or OWASP classifications available.