Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The JMS Message Bridge in BEA WebLogic Server 7.0 through SP7 and 8.1 through Service Pack 6, when configured without a username and password, or when the connection URL is not defined, allows remote attackers to bypass the security access policy and "send unauthorized messages to a protected queue."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BEA WebLogic Server JMS Message Bridge 安全访问漏洞
Vulnerability Description
当没有配置用户名和密码时或连接URL未被限定时,BEA WebLogic Server 中的JMS Message Bridge允许远程攻击者绕过安全访问策略和"发送未授权的信息到受保护的队列"。
CVSS Information
N/A
Vulnerability Type
N/A