5

CVE-2003-0622

Exploit

The Administration Console for BEA Tuxedo 8.1 and earlier allows remote attackers to cause a denial of service (hang) via pathname arguments that contain MS-DOS device names such as CON and AUX.

Data is provided by the National Vulnerability Database (NVD)
BeaTuxedo Version6.3
BeaTuxedo Version6.4
BeaTuxedo Version6.5
BeaTuxedo Version7.1
BeaTuxedo Version8.0
BeaTuxedo Version8.1
BeaWeblogic Server Version4.2 Editionenterprise
BeaWeblogic Server Version5.0.1 Editionenterprise
BeaWeblogic Server Version5.1 Editionenterprise
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.78% 0.713
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P