CVE-2007-5576
Summary
| CVE | CVE-2007-5576 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-10-18 21:17:00 UTC |
| Updated | 2018-10-30 16:25:00 UTC |
| Description | BEA Tuxedo 8.0 before RP392 and 8.1 before RP293, and WebLogic Enterprise 5.1 before RP174, echo the password in cleartext, which allows physically proximate attackers to obtain sensitive information via the (1) cnsbind, (2) cnsunbind, or (3) cnsls commands. |
Risk And Classification
Problem Types: CWE-200
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Bea | Tuxedo | 8.0 | All | All | All |
| Application | Bea | Tuxedo | 8.1 | All | All | All |
| Application | Bea | Tuxedo | 8.0 | All | All | All |
| Application | Bea | Tuxedo | 8.1 | All | All | All |
| Application | Bea | Weblogic Integration | 8.1 | All | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp2 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp3 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp4 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp5 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp6 | All | All |
| Application | Bea | Weblogic Integration | 9.2 | All | All | All |
| Application | Bea | Weblogic Integration | 8.1 | All | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp2 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp3 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp4 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp5 | All | All |
| Application | Bea | Weblogic Integration | 8.1 | sp6 | All | All |
| Application | Bea | Weblogic Integration | 9.2 | All | All | All |
| Application | Bea | Weblogic Server | 5.1 | All | enterprise | All |
| Application | Bea | Weblogic Server | 6.1 | All | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp6 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp7 | express | All |
| Application | Bea | Weblogic Server | 7.0 | All | All | All |
| Application | Bea | Weblogic Server | 7.0 | All | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp5 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp5 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp6 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp6 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp7 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp7 | express | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | All | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp3 | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp4 | All | All |
| Application | Bea | Weblogic Server | 8.1 | All | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 9.0 | All | All | All |
| Application | Bea | Weblogic Server | 9.1 | All | All | All |
| Application | Bea | Weblogic Server | 9.1 | All | express | All |
| Application | Bea | Weblogic Server | 9.2 | All | All | All |
| Application | Bea | Weblogic Server | 9.2 | All | express | All |
| Application | Bea | Weblogic Server | 5.1 | All | enterprise | All |
| Application | Bea | Weblogic Server | 6.1 | All | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp6 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp7 | express | All |
| Application | Bea | Weblogic Server | 7.0 | All | All | All |
| Application | Bea | Weblogic Server | 7.0 | All | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp5 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp5 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp6 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp6 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp7 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp7 | express | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | All | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp3 | All | All |
| Application | Bea | Weblogic Server | 7.0.0.1 | sp4 | All | All |
| Application | Bea | Weblogic Server | 8.1 | All | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 9.0 | All | All | All |
| Application | Bea | Weblogic Server | 9.1 | All | All | All |
| Application | Bea | Weblogic Server | 9.1 | All | express | All |
| Application | Bea | Weblogic Server | 9.2 | All | All | All |
| Application | Bea | Weblogic Server | 9.2 | All | express | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp2 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp3 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp4 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp5 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp6 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp2 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp3 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp4 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp5 | All | All |
| Application | Bea | Weblogic Workshop | 8.1 | sp6 | All | All |
| Application | Oracle | Weblogic Portal | 9.2 | All | All | All |
| Application | Oracle | Weblogic Portal | 9.2 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 45478 | OSVDB | osvdb.org | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Oracle Fusion Middleware Technologies | BEA | dev2dev.bea.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.