First published: Fri Feb 02 2001(Updated: )
Buffer overflow in Bea WebLogic Server before 5.1.0 allows remote attackers to execute arbitrary commands via a long URL that begins with a ".." string.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle WebLogic Server | <=4.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0098 is considered critical due to its ability to allow remote attackers to execute arbitrary commands.
To fix CVE-2001-0098, upgrade Bea WebLogic Server to version 5.1.0 or later.
CVE-2001-0098 affects users of Bea WebLogic Server versions prior to 5.1.0.
CVE-2001-0098 is a buffer overflow vulnerability.
Yes, CVE-2001-0098 can be exploited remotely by sending a specially crafted URL.