Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-1437


Vulnerability Score 2.1 2.1
CVE Id CVE-2003-1437
Last Modified 05 Sep 2008 04:36:55
Published 31 Dec 2003 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE



BEA WebLogic Express and WebLogic Server 7.0 and, stores passwords in plaintext when a keystore is used to store a private key or trust certificate authorities, which allows local users to gain access.

Vulnerable Systems


  • Bea Weblogic Server 7.0

  • Bea Weblogic Server


BEA - BEA03-25.00

XF - weblogic-keystore-plaintext-passwords(11220)

BID - 6719

Last Updated: 27 May 2016 10:38:22