Lucene search

K
cveOracleCVE-2009-1974
HistoryJul 14, 2009 - 11:30 p.m.

CVE-2009-1974

2009-07-1423:30:00
oracle
web.nvd.nist.gov
28
cve-2009-1974
weblogic server
bea product suite
remote attack
confidentiality
integrity
availability
nvd

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.014

Percentile

86.5%

Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Servlet Container Package.

Affected configurations

Nvd
Node
oraclebea_product_suiteMatch7.0sp7
OR
oraclebea_product_suiteMatch8.1sp6
OR
oraclebea_product_suiteMatch9.0
OR
oraclebea_product_suiteMatch9.1
OR
oraclebea_product_suiteMatch9.2mp3
OR
oraclebea_product_suiteMatch10.0mp1
OR
oraclebea_product_suiteMatch10.3
VendorProductVersionCPE
oraclebea_product_suite7.0cpe:2.3:a:oracle:bea_product_suite:7.0:sp7:*:*:*:*:*:*
oraclebea_product_suite8.1cpe:2.3:a:oracle:bea_product_suite:8.1:sp6:*:*:*:*:*:*
oraclebea_product_suite9.0cpe:2.3:a:oracle:bea_product_suite:9.0:*:*:*:*:*:*:*
oraclebea_product_suite9.1cpe:2.3:a:oracle:bea_product_suite:9.1:*:*:*:*:*:*:*
oraclebea_product_suite9.2cpe:2.3:a:oracle:bea_product_suite:9.2:mp3:*:*:*:*:*:*
oraclebea_product_suite10.0cpe:2.3:a:oracle:bea_product_suite:10.0:mp1:*:*:*:*:*:*
oraclebea_product_suite10.3cpe:2.3:a:oracle:bea_product_suite:10.3:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.014

Percentile

86.5%