VYPR
Critical severity9.8NVD Advisory· Published May 24, 2005· Updated Jun 16, 2026

CVE-2005-1744

CVE-2005-1744

Description

BEA WebLogic Server and WebLogic Express 7.0 through Service Pack 5 does not log out users when an application is redeployed, which allows those users to continue to access the application without having to log in again, which may be in violation of newly changed security constraints or role mappings.

Affected products

3
  • cpe:2.3:a:bea:weblogic_server:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:bea:weblogic_server:*:*:*:*:*:*:*:*range: <=7.0
    • (no CPE)range: >=7.0, <=7.0 Service Pack 5
  • Range: >=7.0, <=7.0 Service Pack 5

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.