VYPR
Unrated severityNVD Advisory· Published May 23, 2006· Updated Jun 16, 2026

CVE-2006-2546

CVE-2006-2546

Description

A recommended admin password reset mechanism for BEA WebLogic Server 8.1, when followed before October 10, 2005, causes the administrator password to be stored in cleartext in the domain directory, which could allow attackers to gain privileges.

Affected products

2
  • cpe:2.3:a:bea:weblogic_server:8.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:bea:weblogic_server:8.1:*:*:*:*:*:*:*
    • (no CPE)range: =8.1

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.