📦

weblogic_express

Vendor: bea_systems

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 5.59% Exploit Prob.
Latest CVE CVE-2008-0900 Feb 22

Security Vulnerability Index

Page 1 / 1
6.0 CVSS

Session fixation vulnerability in BEA WebLogic Server and Express 8.1 SP4 through SP6, 9.2 through MP1, and 10.0 allows remote authenticated users to hijack web sessions via unknown vectors.

EPSS: 9.99%
4.3 CVSS

Unspecified vulnerability in the BEA WebLogic Server and Express proxy plugin, as distributed before November 2007 and before 9.2 MP3 and 10.0 MP2, allows remote attackers to cause a denial of service (web server crash) via a crafted URL.

EPSS: 1.19%