Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
BEA AquaLogic Service Bus 2.0, 2.1, and 2.5 does not properly reject malformed request messages to a proxy service, which might allow remote attackers to bypass authorization policies and route requests to back-end services or conduct other unauthorized activities.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BEA AquaLogic Service Bus 畸形请求信息安全绕过漏洞
Vulnerability Description
BEA AquaLogic Service Bus 2.0,2.1和2.5没有正确的拒绝发送到代理服务器的畸形请求信息,这可能使得远程攻击者可以绕过授权策略,对后端服务器发送请求或执行其他未授权操作。
CVSS Information
N/A
Vulnerability Type
N/A