CVE-2008-0903Systems Weblogic Express vulnerability

3 documents3 sources
Severity
4.3MEDIUMNVD
EPSS
0.5%
top 33.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 22
Latest updateMay 1

Description

Unspecified vulnerability in the BEA WebLogic Server and Express proxy plugin, as distributed before November 2007 and before 9.2 MP3 and 10.0 MP2, allows remote attackers to cause a denial of service (web server crash) via a crafted URL.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-6qhc-v2h9-m47w: Unspecified vulnerability in the BEA WebLogic Server and Express proxy plugin, as distributed before November 2007 and before 92022-05-01
CVEList
CVE-2008-0903: Unspecified vulnerability in the BEA WebLogic Server and Express proxy plugin, as distributed before November 2007 and before 92008-02-22
CVE-2008-0903 — Systems Weblogic Express vulnerability | cvebase