CVE-2007-6197

The Plumtree portal in BEA AquaLogic Interaction 5.0.2 through 5.0.4 and 6.0.1.218452 allows remote attackers to obtain version numbers and internal hostnames by reading comments in the HTML source of any page.
Configurations

Configuration 1

cpe:2.3:a:bea:aqualogic_interaction:6.0.1.218452:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_interaction:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_interaction:5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:bea:aqualogic_interaction:5.0.4:*:*:*:*:*:*:*

Information

Published : 2007-12-01 06:46

Updated : 2018-10-15 09:50


NVD link : CVE-2007-6197

Mitre link : CVE-2007-6197

Products Affected
No products.
CWE
CWE-615

Inclusion of Sensitive Information in Source Code Comments