CVE-2001-0098

BEA Weblogic Server < 4.5.2 - Buffer Overflow

Title source: rule
STIX 2.1

Description

Buffer overflow in Bea WebLogic Server before 5.1.0 allows remote attackers to execute arbitrary commands via a long URL that begins with a ".." string.

Exploits (1)

exploitdb WRITEUP VERIFIED
by peter.grundl · textremotemultiple
https://www.exploit-db.com/exploits/20516

References (3)

Core 3
Core References
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/2138
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5782
Exploit, Patch mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2000-12/0331.html

Scores

EPSS 0.2139
EPSS Percentile 95.8%

Details

Status published
Products (1)
bea/weblogic_server < 4.5.2
Published Feb 12, 2001
Tracked Since Feb 18, 2026