Oracle iPlanet Web Server 7.0.x has incorrect access control for admingui/version URIs in the Administration console, as demonstrated by unauthenticated read access to encryption keys. NOTE a related support policy can be found in the www.oracle.com references attached to this CVE.
id: CVE-2020-9315
info:
name: Oracle iPlanet Web Server 7.0.x - Authentication Bypass
author: d
...