CVE-2006-2546
Last modified
CVE-2006-2546 is a vulnerability of currently unknown severity. A recommended admin password reset mechanism for BEA WebLogic Server 8.1, when followed before October 10, 2005, causes the administrator password to be stored in cleartext in the domain directory, which could allow attackers to gain privileges.. EPSS estimates a 1.62% chance of exploitation in the next 30 days.
Description
A recommended admin password reset mechanism for BEA WebLogic Server 8.1, when followed before October 10, 2005, causes the administrator password to be stored in cleartext in the domain directory, which could allow attackers to gain privileges.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Bea | Weblogic Server | 8.1 |
References
- http://dev2dev.bea.com/pub/advisory/193Patch, Vendor Advisory
- http://secunia.com/advisories/20130Vendor Advisory
- http://dev2dev.bea.com/pub/advisory/193Patch, Vendor Advisory
- http://secunia.com/advisories/20130Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-2546?
How severe is CVE-2006-2546?
How do I fix CVE-2006-2546?
Are you affected by CVE-2006-2546?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
