BEA WebLogic Server and Express 6.0 through 7.0 does not properly restrict access to certain internal servlets that perform administrative functions, which allows remote attackers to read arbitrary files or execute arbitrary code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2003-03-21T05:00:00

Updated: 2016-10-17T13:57:01

Reserved: 2003-03-18T00:00:00


Link: CVE-2003-0151

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2003-03-24T05:00:00.000

Modified: 2016-10-18T02:30:09.873


Link: CVE-2003-0151

JSON object: View

cve-icon Redhat Information

No data.