| Vulnerability Name: | CVE-2007-2699 (CCN-34289) | ||||||||
| Assigned: | 2007-05-15 | ||||||||
| Published: | 2007-05-15 | ||||||||
| Updated: | 2019-05-28 | ||||||||
| Summary: | The Administration Console in BEA WebLogic Express and WebLogic Server 9.0 and 9.1 does not properly enforce certain Domain Security Policies, which allows remote administrative users in the Deployer role to upload arbitrary files. | ||||||||
| CVSS v3 Severity: | 8.0 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H)
| ||||||||
| CVSS v2 Severity: | 7.1 High (CVSS v2 Vector: AV:N/AC:H/Au:S/C:C/I:C/A:C) 5.3 Medium (Temporal CVSS v2 Vector: AV:N/AC:H/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)
5.3 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-Other | ||||||||
| Vulnerability Consequences: | Gain Privileges | ||||||||
| References: | Source: MITRE Type: CNA CVE-2007-2699 Source: BEA Type: Patch, Vendor Advisory BEA07-164.00 Source: OSVDB Type: UNKNOWN 36069 Source: MISC Type: UNKNOWN http://packetstormsecurity.com/files/153072/Oracle-Application-Testing-Suite-WebLogic-Server-Administration-Console-War-Deployment.html Source: CCN Type: SA25284 BEA Products Multiple Vulnerabilities Source: SECUNIA Type: Vendor Advisory 25284 Source: CCN Type: SECTRACK ID: 1018057 BEA WebLogic Server Multiple Bugs Let Remote Users Deny Service, Gain Elevated Privileges Source: SECTRACK Type: Patch 1018057 Source: CCN Type: OSVDB ID: 36069 BEA WebLogic Administration Console Domain Security Policies Deployer Role Arbitrary File Upload Source: CCN Type: BID-23979 Multiple BEA WebLogic Applications Multiple Vulnerabilities Source: VUPEN Type: UNKNOWN ADV-2007-1815 Source: XF Type: UNKNOWN weblogic-adminconsole-insecure-permissions(34289) Source: XF Type: UNKNOWN weblogic-adminconsole-insecure-permissions(34289) Source: CCN Type: Packet Storm Security [05-24-2019] Oracle Application Testing Suite WebLogic Server Administration Console War Deployment Source: CCN Type: BEA07-164.00 Security policy may not be applied to WebLogic administration deployers when uploading archives Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [05-29-2019] | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||