CVE-2004-1757 | BEA WebLogic 6.1/7.0/8.1 Administration Server Console config.xml missing encryption (VU#350350 / Nessus ID 12043)
A vulnerability classified as critical has been found in BEA WebLogic 6.1/7.0/8.1. This affects an unknown part of the file config.xml of the component Administration Server Console. The manipulation leads to missing encryption of sensitive data.
This vulnerability is uniquely identified as CVE-2004-1757. Access to the local network is required for this attack. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.