← Back

CVE-2003-1437

nvd nist
Published: Dec 31, 2003Modified: Apr 16, 2026

JSON object

Loading...
2.1
Vector
AV:L/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 3.9 / Impact: 2.9
Source: NVD

Description

BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores passwords in plaintext when a keystore is used to store a private key or trust certificate authorities, which allows local users to gain access.

Affected (8)

Products: Bea: Weblogic Server
1 product
Weblogic Server
Configuration A
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Bea
Version 7.0.0.1
Version 7.0.0.1 sp1
Version 7.0
Version 7.0 sp1
Running on/withPlatform Versions
Hp
Hp Ux
Version 11.11i v1
Configuration B
8 platform
Running on/withPlatform Versions
Hp
Hp Ux
Version 11.00
Hp
Hp Ux
Version 11.11i
Ibm
Aix
Version 4.3.3
Redhat
Linux
Version 6.2
Redhat
Linux
Version 7.1
Sun
Solaris
Version 2.6
Sun
Sunos
Version 5.7
Sun
Sunos
Version 5.8
Configuration C
4 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Bea
Version 7.0.0.1
Version 7.0.0.1 sp1
Version 7.0
Version 7.0 sp1
Running on/withPlatform Versions
Microsoft
Windows 2000
All versions
Microsoft
Windows Nt
All versions

References (6)

Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.