5

CVE-2000-0500

Exploit

The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
BeaWeblogic Server Version3.1.8
BeaWeblogic Server Version3.1.8 Editionexpress
BeaWeblogic Server Version4.0
BeaWeblogic Server Version4.0 Editionexpress
BeaWeblogic Server Version4.5
BeaWeblogic Server Version4.5 Editionexpress
BeaWeblogic Server Version5.1
BeaWeblogic Server Version5.1 Editionexpress
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.54% 0.894
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N