Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0711
Description:The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if they were the legal "/*" pattern, which could cause WebLogic 7.x to allow remote attackers to bypass intended access restrictions because the illegal patterns are properly rejected.
Test IDs: 1.3.6.1.4.1.25623.1.0.55681  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0711
BugTraq ID: 10184
http://www.securityfocus.com/bid/10184
CERT/CC vulnerability note: VU#184558
http://www.kb.cert.org/vuls/id/184558
XForce ISS Database: weblogic-urlpattern-obtain-information(15927)
https://exchange.xforce.ibmcloud.com/vulnerabilities/15927




© 1998-2025 E-Soft Inc. All rights reserved.