BEA Weblogic Server 8.1 through 8.1 SP4 does not properly validate client certificates when reusing cached connections, which allows remote attackers to obtain access via an untrusted X.509 certificate.
Score: 0.0
Priority: Unclassified
Score: 0.00553
Percentile:
0.67025
CVSS v2 Score: 7.5
Severity: