Lucene search

K
nvd[email protected]NVD:CVE-2007-2694
HistoryMay 16, 2007 - 1:19 a.m.

CVE-2007-2694

2007-05-1601:19:00
web.nvd.nist.gov
8

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.005

Percentile

75.7%

Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Express and WebLogic Server 6.1 through SP7, 7.0 through SP7, 8.1 through SP5, 9.0 GA, and 9.1 GA allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected configurations

Nvd
Node
beaweblogic_serverMatch6.1
OR
beaweblogic_serverMatch6.1express
OR
beaweblogic_serverMatch6.1sp1
OR
beaweblogic_serverMatch6.1sp1express
OR
beaweblogic_serverMatch6.1sp2
OR
beaweblogic_serverMatch6.1sp2express
OR
beaweblogic_serverMatch6.1sp3
OR
beaweblogic_serverMatch6.1sp3express
OR
beaweblogic_serverMatch6.1sp4
OR
beaweblogic_serverMatch6.1sp4express
OR
beaweblogic_serverMatch6.1sp5
OR
beaweblogic_serverMatch6.1sp5express
OR
beaweblogic_serverMatch6.1sp6
OR
beaweblogic_serverMatch6.1sp6express
OR
beaweblogic_serverMatch6.1sp7
OR
beaweblogic_serverMatch6.1sp7express
OR
beaweblogic_serverMatch7.0
OR
beaweblogic_serverMatch7.0express
OR
beaweblogic_serverMatch7.0sp1
OR
beaweblogic_serverMatch7.0sp1express
OR
beaweblogic_serverMatch7.0sp2
OR
beaweblogic_serverMatch7.0sp2express
OR
beaweblogic_serverMatch7.0sp3
OR
beaweblogic_serverMatch7.0sp3express
OR
beaweblogic_serverMatch7.0sp4
OR
beaweblogic_serverMatch7.0sp4express
OR
beaweblogic_serverMatch7.0sp5
OR
beaweblogic_serverMatch7.0sp5express
OR
beaweblogic_serverMatch7.0sp6
OR
beaweblogic_serverMatch7.0sp6express
OR
beaweblogic_serverMatch7.0sp7
OR
beaweblogic_serverMatch7.0sp7express
OR
beaweblogic_serverMatch8.1
OR
beaweblogic_serverMatch8.1express
OR
beaweblogic_serverMatch8.1sp1
OR
beaweblogic_serverMatch8.1sp1express
OR
beaweblogic_serverMatch8.1sp2
OR
beaweblogic_serverMatch8.1sp2express
OR
beaweblogic_serverMatch8.1sp3
OR
beaweblogic_serverMatch8.1sp3express
OR
beaweblogic_serverMatch8.1sp4
OR
beaweblogic_serverMatch8.1sp4express
OR
beaweblogic_serverMatch8.1sp5
OR
beaweblogic_serverMatch8.1sp5express
OR
beaweblogic_serverMatch9.0ga
OR
beaweblogic_serverMatch9.0gaexpress
OR
beaweblogic_serverMatch9.1ga
OR
beaweblogic_serverMatch9.1gaexpress
VendorProductVersionCPE
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:*:*:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:*:express:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp1:*:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp1:express:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp2:*:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp2:express:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp3:*:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp3:express:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp4:*:*:*:*:*:*
beaweblogic_server6.1cpe:2.3:a:bea:weblogic_server:6.1:sp4:express:*:*:*:*:*
Rows per page:
1-10 of 481

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.005

Percentile

75.7%

Related for NVD:CVE-2007-2694