vendor:
Weblogic Server
by:
pusscat
7.5
CVSS
HIGH
Stack-based Buffer Overflow
119
CWE
Product Name: Weblogic Server
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2008-4008
CPE: a:bea:weblogic_server
Platforms Tested: Windows
2010
BEA Weblogic Transfer-Encoding Buffer Overflow
This module exploits a stack based buffer overflow in the BEA Weblogic Apache plugin. This vulnerability exists in the error reporting for unknown Transfer-Encoding headers. You may have to run this twice due to timing issues with handlers.
Mitigation:
Apply the patch provided by the vendor.