CVE-2001-1477
published 2001-12-31CVE-2001-1477: The Domain gateway in BEA Tuxedo 7.1 does not perform authorization checks for imported services and qspaces on remote domains, even when an ACL exists, which…
PriorityP411medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.32%
24.2th percentile
The Domain gateway in BEA Tuxedo 7.1 does not perform authorization checks for imported services and qspaces on remote domains, even when an ACL exists, which allows users to access services in a remote domain.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bea | tuxedo | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2001-12-31
Published