Vulnerability Database

296,733

Total vulnerabilities in the database

CVE-2007-0409

BEA WebLogic 7.0 through 7.0 SP6, 8.1 through 8.1 SP4, and 9.0 initial release does not encrypt passwords stored in the JDBCDataSourceFactory MBean Properties, which allows local administrative users to read the cleartext password.

  • Published: Jan 23, 2007
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-0409
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 1.5
  • AV:L/AC:M/Au:S/C:P/I:N/A:N

No CWE or OWASP classifications available.