Vulnerabilities (CVE)

Filtered by vendor Bea Systems Subscribe
Filtered by product Apache Connector In Weblogic Server
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3257 3 Bea, Bea Systems, Oracle 4 Weblogic Server, Apache Connector In Weblogic Server, Weblogic Server and 1 more 2023-12-10 10.0 HIGH N/A
Stack-based buffer overflow in the Apache Connector (mod_wl) in Oracle WebLogic Server (formerly BEA WebLogic Server) 10.3 and earlier allows remote attackers to execute arbitrary code via a long HTTP version string, as demonstrated by a string after "POST /.jsp" in an HTTP request.