SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2005-1742

BEA WebLogic Server and WebLogic Express 8.1 SP2 and SP3 allows users with the Monitor security role to "shrink or reset JDBC connection pools."

MEDIUM 5.0EPSS 3.03%

Does this matter?

Lower severity and a low EPSS score (3.03%). Track it; it rarely justifies an emergency change on its own.

Description

BEA WebLogic Server and WebLogic Express 8.1 SP2 and SP3 allows users with the Monitor security role to "shrink or reset JDBC connection pools."

CVSS 2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS
3.03% probability · 87th percentile
CISA KEV
Not listed
Affected
bea/weblogic server · oracle/weblogic portal
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.