Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote authenticated users to affect confidentiality, integrity, and availability, related to IIS. NOTE: the previous information was obtained from the April 2009 CPU. Oracle has not commented on claims from a reliable researcher that this is a stack-based buffer overflow involving an unspecified Server Plug-in and a crafted SSL certificate.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: oracle
Published: 2009-04-15T10:00:00
Updated: 2024-08-07T04:57:17.537Z
Reserved: 2009-03-19T00:00:00
Link: CVE-2009-1016
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-04-15T10:30:01.077
Modified: 2024-11-21T01:01:27.960
Link: CVE-2009-1016
Redhat
No data.