5

CVE-2000-0683

BEA WebLogic 5.1.x allows remote attackers to read source code for parsed pages by inserting /*.shtml/ into the URL, which invokes the SSIServlet.

Data is provided by the National Vulnerability Database (NVD)
BeaWeblogic Server Version5.1
BeaWeblogic Server Version5.1 Editionenterprise
BeaWeblogic Server Version5.1 Editionexpress
BeaWeblogic Server Version5.1 Updatesp1 Editionexpress
BeaWeblogic Server Version5.1 Updatesp10 Editionexpress
BeaWeblogic Server Version5.1 Updatesp11 Editionexpress
BeaWeblogic Server Version5.1 Updatesp12 Editionexpress
BeaWeblogic Server Version5.1 Updatesp2 Editionexpress
BeaWeblogic Server Version5.1 Updatesp3 Editionexpress
BeaWeblogic Server Version5.1 Updatesp4 Editionexpress
BeaWeblogic Server Version5.1 Updatesp5 Editionexpress
BeaWeblogic Server Version5.1 Updatesp6 Editionexpress
BeaWeblogic Server Version5.1 Updatesp7 Editionexpress
BeaWeblogic Server Version5.1 Updatesp8 Editionexpress
BeaWeblogic Server Version5.1 Updatesp9 Editionexpress
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.6% 0.669
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N