# CVE-2001-1477

## Summary

- **CVE ID:** CVE-2001-1477
- **Severity:** UNKNOWN
- **CVSS Score:** 0
- **CWE:** N/A
- **Published:** May 10, 2005
- **Last Modified:** Mar 16, 2026

## Description

The Domain gateway in BEA Tuxedo 7.1 does not perform authorization checks for imported services and qspaces on remote domains, even when an ACL exists, which allows users to access services in a remote domain.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/BEA00-08.jsp)
- [CNA](https://exchange.xforce.ibmcloud.com/vulnerabilities/6326)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.08%
- **EPSS Percentile:** 22.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._