2024-07-14 02:06:08 +00:00

104 lines
2.7 KiB
JSON

{
"id": "CVE-2007-0423",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-01-23T00:28:00.000",
"lastModified": "2018-10-30T16:25:28.980",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "BEA WebLogic Portal 9.2 does not properly handle when an administrator deletes entitlements for a role, which causes other role entitlements to be \"inadvertently affected,\" which has an unknown impact."
},
{
"lang": "es",
"value": "BEA WebLogic Portal 9.2 no maneja adecuadamente cuando un administrador borra derechos de un rol, lo que provoca que otros derechos de ese rol sean \"afectados inadvertidamente\", lo cual tiene un impacto desconocido."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:M/Au:N/C:P/I:P/A:P",
"accessVector": "LOCAL",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL",
"baseScore": 4.4
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 3.4,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:oracle:weblogic_portal:9.2:*:*:*:*:*:*:*",
"matchCriteriaId": "B04835B2-7FE9-462B-B989-4031D43C9670"
}
]
}
]
}
],
"references": [
{
"url": "http://dev2dev.bea.com/pub/advisory/218",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://osvdb.org/32857",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/23750",
"source": "cve@mitre.org"
},
{
"url": "http://securitytracker.com/id?1017521",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/22082",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/0213",
"source": "cve@mitre.org"
}
]
}