CVE-2003-1226
BEA WebLogic Server and Express 7.0 and 7.0.0.1 stores certain secrets concerning password encryption insecurely in config.xml, filerealm.properties, and weblogic-rar.xml, which allows local users to learn those secrets and decrypt passwords.
Scoring
- CVSS base score
- 0
- EPSS probability
- 0.03%
- Published
- 2005-08-16
- Last modified
- 2026-03-16
Affected products
- n/a n/a