2008-02-22 21:00:00
mitre
PUBLISHED
BEA WebLogic Server and WebLogic Express 6.1 through 10.0 allows remote attackers to bypass authentication for application servlets via crafted request headers.