Back

CVE-2005-2680

Unspecified vulnerability in BEA WebLogic Portal 8.1 through SP4, when using entitlements, allows remote attackers to bypass access restrictions for the pages of a Book via crafted URLs.

Published: Aug 23, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (5)

Vendor Product Version
oracle weblogic_portal 8.1
oracle weblogic_portal 8.1
oracle weblogic_portal 8.1
oracle weblogic_portal 8.1
oracle weblogic_portal 8.1

GitHub Security Advisory GHSA-c4cx-569w-wq98

Unspecified vulnerability in BEA WebLogic Portal 8.1 through SP4, when using entitlements, allows...

References (2)

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 3.45%

Top 12% most likely to be exploited

Threat Score 21 / 100

Data Sources

NVD EPSS GitHub