CVE-2003-0640

BEA WebLogic Server - Privilege Escalation

Title source: llm
STIX 2.1

Description

BEA WebLogic Server and Express, when using NodeManager to start servers, provides Operator users with privileges to overwrite usernames and passwords, which may allow Operators to gain Admin privileges.

References (2)

Core 2
Core References
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://www.secunia.com/advisories/9232/

Scores

EPSS 0.0065
EPSS Percentile 71.0%

Details

Status published
Products (1)
bea/weblogic_server (2 CPE variants)
Published Aug 27, 2003
Tracked Since Feb 18, 2026