VendorsBEAaqualogic_service_bus2.1
Vulnerabilities

BEA Systems AquaLogic Service Bus 2.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2007-0432
BEA AquaLogic Service Bus 2.0, 2.1, and 2.5 does not properly reject malformed request messages to a proxy service, which might allow remote attackers to bypass authorization policies and route requests to back-end services or conduct other unauthorized activities.
Published 2007-01-23 · Modified
7.5EPSS 0.015
CVE-2007-0433
Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated users to access the server even after the account has been disabled.
Published 2007-01-23 · Modified
6.5EPSS 0.013