Back to search
CVE-2003-1290
Published: Jan 13, 2006
Modified: Aug 8, 2024
PUBLISHED
Description
BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, with RMI and anonymous admin lookup enabled, allows remote attackers to obtain configuration information by accessing MBeanHome via the Java Naming and Directory Interface (JNDI).
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
BEA03-43.00
vendor-advisory
x_refsource_BEA
9034
vdb-entry
x_refsource_BID
10218
third-party-advisory
x_refsource_SECUNIA
18396
third-party-advisory
x_refsource_SECUNIA
3064
vdb-entry
x_refsource_OSVDB
16215
vdb-entry
x_refsource_BID
weblogic-mbeanhome-obtain-information(13752)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now