Vulnerability record · CVE-2005-1744 · published 24 May 2005
CVE-2005-1744: Bea weblogic server vulnerability
Bea · Weblogic Server
BEA WebLogic Server and WebLogic Express 7.0 through Service Pack 5 does not log out users when an application is redeployed, which allows those users to continue to access the application without having to log in again, which may be in violation of newly changed security constraints or role mappings.
Description
BEA WebLogic Server and WebLogic Express 7.0 through Service Pack 5 does not log out users when an application is redeployed, which allows those users to continue to access the application without having to log in again, which may be in violation of newly changed security constraints or role mappings.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://dev2dev.bea.com/pub/advisory/127 | Product |
| http://secunia.com/advisories/15486 | Broken LinkVendor Advisory |
| http://securitytracker.com/id?1014049 | Broken LinkThird Party AdvisoryVDB Entry |
| http://www.securityfocus.com/bid/13717 | Broken LinkThird Party AdvisoryVDB Entry |
| http://www.vupen.com/english/advisories/2005/0604 | Broken Link |
| http://dev2dev.bea.com/pub/advisory/127 | Product |
| http://secunia.com/advisories/15486 | Broken LinkVendor Advisory |
| http://securitytracker.com/id?1014049 | Broken LinkThird Party AdvisoryVDB Entry |
| http://www.securityfocus.com/bid/13717 | Broken LinkThird Party AdvisoryVDB Entry |
| http://www.vupen.com/english/advisories/2005/0604 | Broken Link |
Track CVE-2005-1744 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2005-1744), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.