Vulnerability Name: CVE-2004-1756 (CCN-15862) Assigned: 2004-04-13 Published: 2004-04-13 Updated: 2017-07-11 Summary: BEA WebLogic Server and WebLogic Express 8.1 SP2 and earlier, and 7.0 SP4 and earlier, when using 2-way SSL with a custom trust manager, may accept a certificate chain even if the trust manager rejects it, which allows remote attackers to spoof other users or servers. CVSS v3 Severity: 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N )Exploitability Metrics: Attack Vector (AV): NetworkAttack Complexity (AC): LowPrivileges Required (PR): NoneUser Interaction (UI): NoneScope: Scope (S): UnchangedImpact Metrics: Confidentiality (C): NoneIntegrity (I): LowAvailibility (A): None
CVSS v2 Severity: 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): LowAuthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): PartialAvailibility (A): None
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): LowAthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): PartialAvailibility (A): None
Vulnerability Type: CWE-Other Vulnerability Consequences: Bypass Security References: Source: MITRE Type: CNACVE-2004-1756 Source: CCN Type: BEA Systems, Inc. Security Advisory (BEA04-54.00)Patches available to prevent user impersonation. Source: CONFIRM Type: Patch, Vendor Advisoryhttp://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/BEA04_54.00.jsp Source: CCN Type: SA11358BEA WebLogic SSL Impersonation Vulnerability Source: SECUNIA Type: Patch, Vendor Advisory11358 Source: CCN Type: SECTRACK ID: 1009765BEA WebLogic Custom Trust Manager Flaw May Let Remote Users Impersonate Target Users or Servers Source: SECTRACK Type: Patch, Vendor Advisory1009765 Source: CCN Type: CIAC Information Bulletin O-132BEA WebLogic Server and Express Certificate Spoofing Vulnerability Source: CCN Type: US-CERT VU#566390BEA WebLogic Server fails to properly validate certificate chains Source: CERT-VN Type: Patch, Third Party Advisory, US Government ResourceVU#566390 Source: CCN Type: OSVDB ID: 5298BEA WebLogic 2-way SSL User / Server Impersonation Source: BID Type: Patch, Vendor Advisory10132 Source: CCN Type: BID-10132BEA WebLogic Server and WebLogic Express Certificate Chain User Impersonation Vulnerability Source: XF Type: UNKNOWNweblogic-trust-certificate-spoofing(15862) Source: XF Type: UNKNOWNweblogic-trust-certificate-spoofing(15862) Vulnerable Configuration: Configuration 1 :cpe:/a:bea:weblogic_server:7.0:*:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:*:win32:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp1:*:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp1:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp2:*:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp2:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp3:*:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp3:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp4:*:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp4:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:7.0:sp4:win32:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:*:*:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:*:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:*:win32:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:sp1:*:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:sp1:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:sp1:win32:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:sp2:*:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:sp2:express:*:*:*:*:* OR cpe:/a:bea:weblogic_server:8.1:sp2:win32:*:*:*:*:* Denotes that component is vulnerable BACK
bea weblogic server 7.0
bea weblogic server 7.0
bea weblogic server 7.0 sp1
bea weblogic server 7.0 sp1
bea weblogic server 7.0 sp2
bea weblogic server 7.0 sp2
bea weblogic server 7.0 sp3
bea weblogic server 7.0 sp3
bea weblogic server 7.0 sp4
bea weblogic server 7.0 sp4
bea weblogic server 7.0 sp4
bea weblogic server 8.1
bea weblogic server 8.1
bea weblogic server 8.1
bea weblogic server 8.1 sp1
bea weblogic server 8.1 sp1
bea weblogic server 8.1 sp1
bea weblogic server 8.1 sp2
bea weblogic server 8.1 sp2
bea weblogic server 8.1 sp2