Oracle BEA WebLogic Server Apache Connector Buffer Overflow Vulnerability

  Severity: CRITICAL
  CVE Identifier: CVE-2008-5457
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1003210
  Trend Micro Deep Security DPI Rule Name: 1003210 - Oracle BEA WebLogic Server Apache Connector Buffer Overflow Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • oracle bea_product_suite 10.0
  • oracle bea_product_suite 10.3
  • oracle bea_product_suite 7.0
  • oracle bea_product_suite 8.1
  • oracle bea_product_suite 9.0
  • oracle bea_product_suite 9.1
  • oracle bea_product_suite 9.2

Featured Stories