CVE detail
CVE-2005-1744 — CVE-2005-1744
Published 2005-05-24 · Modified 2026-06-16 · Vendor bea · Product weblogic_server · Source nvd
CRITICAL
severity
CVSS-derived band
0.0214
EPSS probability
exploitation probability, 30d
80.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
BEA WebLogic Server and WebLogic Express 7.0 through Service Pack 5 does not log out users when an application is redeployed, which allows those users to continue to access the application without having to log in again, which may be in violation of newly changed security constraints or role mappings.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References