10
CVE-2000-0685
- EPSS 12.26%
- Veröffentlicht 20.10.2000 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:52:15
- Erkennungen
BEA WebLogic 5.1.x does not properly restrict access to the PageCompileServlet, which could allow remote attackers to compile and execute Java JHTML code by directly invoking the servlet on any source file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bea ≫ Weblogic Server Version 3.1.8
Bea ≫ Weblogic Server Version 4.0.4
Bea ≫ Weblogic Server Version 4.5.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 12.26% | 0.957 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
http://developer.bea.com/alerts/security_000731.html
http://archives.neohapsis.com/archives/bugtraq/2000-07/0434.html
http://www.securityfocus.com/bid/1525