Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unspecified vulnerability in BEA WebLogic Portal 8.1 up to SP5 causes a JSR-168 Portlet to be retrieved from the cache for the wrong session, which might allow one user to see a Portlet of another user.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BEA WebLogic Portal JSR-168 Portlet信息泄露漏洞
Vulnerability Description
BEA Systems WebLogic包含多种应用系统集成方案,包括Server/Express/Integration等。 WebLogic Portal在渲染JSR-168 Portlet中存在漏洞,导致可能从缓存中错误地渲染Portlet,将一个用户的Portlet信息泄漏给其他用户。
CVSS Information
N/A
Vulnerability Type
N/A