CVE-2001-0098
WebLogic Server < 4.5.2 - Remote Code Execution via Long URL with Dot-Dot Sequence
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2001-0098. PoCs published by peter.grundl.
AI-analyzed exploit summary The provided text describes a buffer overflow vulnerability in BEA Systems WebLogic Server triggered by URL requests starting with two dots (..) followed by an overly long string. This could lead to a crash or arbitrary code execution in the context of the web server.
Description
Buffer overflow in Bea WebLogic Server before 5.1.0 allows remote attackers to execute arbitrary commands via a long URL that begins with a ".." string.
Exploits (1)
The provided text describes a buffer overflow vulnerability in BEA Systems WebLogic Server triggered by URL requests starting with two dots (..) followed by an overly long string. This could lead to a crash or arbitrary code execution in the context of the web server.