CVE-2004-1755
Last modified
CVE-2004-1755 is a vulnerability of currently unknown severity. The Web Services fat client for BEA WebLogic Server and Express 7.0 SP4 and earlier, when using 2-way SSL and multiple certificates to connect to the same URL, may use the incorrect identity after the first connection, which could allow users to gain privileges.. EPSS estimates a 1.47% chance of exploitation in the next 30 days.
Description
The Web Services fat client for BEA WebLogic Server and Express 7.0 SP4 and earlier, when using 2-way SSL and multiple certificates to connect to the same URL, may use the incorrect identity after the first connection, which could allow users to gain privileges.
Metrics
References
- http://www.kb.cert.org/vuls/id/858990Third Party Advisory, US Government Resource
- http://www.kb.cert.org/vuls/id/858990Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-1755?
How severe is CVE-2004-1755?
How do I fix CVE-2004-1755?
Are you affected by CVE-2004-1755?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
