10
CVSSv2

CVE-2001-0098

Published: 12/02/2001 Updated: 19/12/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Bea WebLogic Server prior to 5.1.0 allows remote malicious users to execute arbitrary commands via a long URL that begins with a ".." string.

Vulnerable Product Search on Vulmon Subscribe to Product

bea weblogic server

Exploits

source: wwwsecurityfocuscom/bid/2138/info BEA Systems WebLogic Server is an enterprise level web and wireless application server Unchecked buffers exist in a particular handler for URL requests that begin with two dots "" Depending on the data entered into the buffer, WebLogic Server could be forced to crash or arbitrary code could ...