| Vulnerability Name: | CVE-2009-1002 (CCN-50052) | ||||||||
| Assigned: | 2009-04-14 | ||||||||
| Published: | 2009-04-14 | ||||||||
| Updated: | 2017-08-17 | ||||||||
| Summary: | Unspecified vulnerability in Oracle BEA WebLogic Server 10.3, 10.0 Gold through MP1, 9.2 Gold through MP3, 9.1, 9.0, 8.1 Gold through SP6, and 7.0 Gold through SP7 allows remote attackers to gain privileges via unknown vectors. | ||||||||
| CVSS v3 Severity: | 6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N)
| ||||||||
| CVSS v2 Severity: | 5.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N) 4.3 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N/E:U/RL:OF/RC:C)
4.3 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-noinfo | ||||||||
| Vulnerability Consequences: | Gain Privileges | ||||||||
| References: | Source: MITRE Type: CNA CVE-2009-1002 Source: CCN Type: SECTRACK ID: 1022059 Oracle WebLogic Server and Portal Bugs Let Remote Users Access and Modify Data and Cause Denial of Service Conditions Source: CCN Type: Oracle Critical Patch Update Advisory - April 2009 Oracle Critical Patch Update Advisory - April 2009 Source: CONFIRM Type: UNKNOWN http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.html Source: CCN Type: Oracle SECURITY ADVISORY (CVE-2009-1002) Elevation of privilege vulnerability in WebLogic Server Source: CONFIRM Type: UNKNOWN http://www.oracle.com/technology/deploy/security/wls-security/1002.html Source: CCN Type: OSVDB ID: 53763 Oracle BEA WebLogic Server Servlet Container Unspecified Remote Issue (CVE-2009-1002) Source: BID Type: UNKNOWN 34461 Source: CCN Type: BID-34461 Oracle April 2009 Critical Patch Update Multiple Vulnerabilities Source: SECTRACK Type: UNKNOWN 1022059 Source: CERT Type: US Government Resource TA09-105A Source: XF Type: UNKNOWN oracle-weblogic-wls-priv-escalation2(50052) Source: XF Type: UNKNOWN oracle-weblogic-wls-priv-escalation2(50052) | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||