PT-2007-1896 · Bea+1 · Bea Weblogic Server+2
Published
2007-01-23
·
Updated
2011-03-08
·
CVE-2007-0425
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
BEA WebLogic Platform and Server versions 8.1 through 8.1 SP5
JRockit versions 1.4.2 R4.5 and earlier
Description
The issue allows attackers to gain privileges via unspecified vectors, related to an "overflow condition," which is probably a buffer overflow.
Recommendations
For BEA WebLogic Platform and Server versions 8.1 through 8.1 SP5, update to a version later than 8.1 SP5 to resolve the issue.
For JRockit versions 1.4.2 R4.5 and earlier, update to a version later than 1.4.2 R4.5 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bea Weblogic Platform
Bea Weblogic Server
Jrockit