📦

apache_connector_in_weblogic_server

Vendor: bea_systems

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 83.59% Exploit Prob.
Latest CVE CVE-2008-3257 Jul 22

Security Vulnerability Index

Page 1 / 1
10.0 CVSS
CVE-2008-3257
Exploit Found

Stack-based buffer overflow in the Apache Connector (mod_wl) in Oracle WebLogic Server (formerly BEA WebLogic Server) 10.3 and earlier allows remote attackers to execute arbitrary code via a long HTTP version string, as demonstrated by a string after "POST /.jsp" in an HTTP request.

EPSS: 83.59%