6.8
CVSSv2

CVE-2003-0733

Published: 20/10/2003 Updated: 05/09/2008
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in WebLogic Integration 7.0 and 2.0, Liquid Data 1.1, and WebLogic Server and Express 5.1 up to and including 7.0, allow remote malicious users to execute arbitrary web script and steal authentication credentials via (1) a forward instruction to the Servlet container or (2) other vulnerabilities in the WebLogic Server console application.

Vulnerable Product Search on Vulmon Subscribe to Product

bea liquid data 1.1

bea weblogic integration 2.0

bea weblogic integration 7.0

bea weblogic server 5.1

bea weblogic server 7.0