CVE-2007-6197

The Plumtree portal in BEA AquaLogic Interaction 5.0.2 through 5.0.4 and 6.0.1.218452 allows remote attackers to obtain version numbers and internal hostnames by reading comments in the HTML source of any page.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:bea:aqualogic_interaction:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_interaction:5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_interaction:5.0.4:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_interaction:6.0.1.218452:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-12-01 06:46

Updated : 2024-02-04 17:13


NVD link : CVE-2007-6197

Mitre link : CVE-2007-6197

CVE.ORG link : CVE-2007-6197


JSON object : View

Products Affected

bea

  • aqualogic_interaction
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor