CVE-2002-1030

BEA WebLogic Server 5.1.x, 6.0.x, 6.1.x, 7.0 - Denial of Service via Performance Pack Race Condition

Title source: llm
STIX 2.1

Description

Race condition in Performance Pack in BEA WebLogic Server and Express 5.1.x, 6.0.x, 6.1.x and 7.0 allows remote attackers to cause a denial of service (crash) via a flood of data and connections.

References (5)

Core 5
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5159
Patch, Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/9486.php
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://online.securityfocus.com/archive/1/281046
Third Party Advisory mailing-list x_refsource_vulnwatch
http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0008.html

Scores

EPSS 0.0068
EPSS Percentile 71.9%

Details

Status published
Products (4)
bea/weblogic_server 5.1 (25 CPE variants)
bea/weblogic_server 6.0 (6 CPE variants)
bea/weblogic_server 6.1 (8 CPE variants)
bea/weblogic_server 7.0
Published Oct 04, 2002
Tracked Since Feb 18, 2026