Exploit BEA Systems WebLogic Server 4.0 x/4.5 x/5.1 x - Double Dot Buffer Overflow

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
20516
Проверка EDB
  1. Пройдено
Автор
PETER.GRUNDL
Тип уязвимости
REMOTE
Платформа
MULTIPLE
CVE
cve-2001-0098
Дата публикации
2000-12-19
Код:
source: https://www.securityfocus.com/bid/2138/info


BEA Systems WebLogic Server is an enterprise level web and wireless application server.

Unchecked buffers exist in a particular handler for URL requests that begin with two dots "..". Depending on the data entered into the buffer, WebLogic Server could be forced to crash or arbitrary code could be executed on the system in the security context of the web server. In the event that random data was sent in order to crash the server, restarting the application would be required in order to regain normal functionality. 

..<overly long string of characters>
 
Источник
www.exploit-db.com

Похожие темы