PT-2009-4429 · Bea · Oracle Weblogic Server

Published

2009-07-14

·

Updated

2017-08-17

·

CVE-2009-1974

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: BEA WebLogic Server versions 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP1, and 10.3
Description: The issue affects the confidentiality, integrity, and availability of the system. It is related to the Servlet Container Package in the WebLogic Server component. The exact vectors used for exploitation are not specified.
Recommendations: For versions 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP1, and 10.3, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-1974

Affected Products

Oracle Weblogic Server