CVE Database
/

CVE-2003-1290

Back to search

CVE-2003-1290

Published: Jan 13, 2006

Modified: Aug 8, 2024

PUBLISHED

Description

BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, with RMI and anonymous admin lookup enabled, allows remote attackers to obtain configuration information by accessing MBeanHome via the Java Naming and Directory Interface (JNDI).

VendorProductVersions

n/a

n/a

affected
n/a

References

BEA03-43.00
vendor-advisory
x_refsource_BEA
9034
vdb-entry
x_refsource_BID
10218
third-party-advisory
x_refsource_SECUNIA
18396
third-party-advisory
x_refsource_SECUNIA
3064
vdb-entry
x_refsource_OSVDB
16215
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now