CVE-2007-0416
The WSEE runtime (WS-Security runtime) in BEA WebLogic Server 9.0 and 9.1 does not verify credentials when decrypting cl
The WSEE runtime (WS-Security runtime) in BEA WebLogic Server 9.0 and 9.1 does not verify credentials when decrypting client messages, which allows remote attackers to bypass application security.
HIGH · CVSS 7.5
EPSS 0.00635
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0