Severity: : Critical
  CVE Kennungen: : CVE-2008-5457
  Advisory Date: 21 de lipca de 2015

  DESCRIPTION

Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

  INFORMATION EXPOSURE

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1003210
  Trend Micro Deep Security DPI Rule Name: 1003210 - Oracle BEA WebLogic Server Apache Connector Buffer Overflow Vulnerability

  AFFECTED SOFTWARE AND VERSION:

  • oracle bea_product_suite 10.0
  • oracle bea_product_suite 10.3
  • oracle bea_product_suite 7.0
  • oracle bea_product_suite 8.1
  • oracle bea_product_suite 9.0
  • oracle bea_product_suite 9.1
  • oracle bea_product_suite 9.2