Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.100494
Category:Web Servers
Title:Oracle WebLogic Server Node Manager 'beasvc.exe' RCE Vulnerability
Summary:Oracle WebLogic Server is prone to a remote command-execution vulnerability; because the software fails to restrict access to sensitive commands.;; Successful attacks can compromise the affected software and possibly the computer.;; Oracle WebLogic Server 10.3.2 is vulnerable, other versions may also be affected.
Description:Summary:
Oracle WebLogic Server is prone to a remote command-execution vulnerability
because the software fails to restrict access to sensitive commands.

Successful attacks can compromise the affected software and possibly the computer.

Oracle WebLogic Server 10.3.2 is vulnerable, other versions may also be affected.

Solution:
Vendor updates are available. Please see the vendor advisory for details.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2010-0073
Cert/CC Advisory: TA10-103B
http://www.us-cert.gov/cas/techalerts/TA10-103B.html
http://secunia.com/advisories/39439
http://www.vupen.com/english/advisories/2010/0216
CopyrightCopyright (C) 2010 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.