Loading...
Loading...
BEA WebLogic Server and Express 7.0 through 10.0 allows remote attackers to conduct brute force password guessing attacks, even when account lockout has been activated, via crafted URLs that indicate whether a guessed password is successful or not.
February 22, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2008-0901
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.