228
BEA WebLogic prior 8.1 multiple vulnerabilities
CGI
2004/09/15
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
2004/11/14
2.0
Corrected the plugin structure and added the accuracy values in 1.1. Improved the pattern matching and introduced the plugin changelog in 2.0
tcp
80
open|send HEAD / HTTP/1.0\n\n|sleep|close|pattern_exists HTTP/#.# ### *WebLogic*[0-7].* OR HTTP/#.# ### *WebLogic*8.[0-1]*
90
I don't know how to detect the installed service pack accurately. Perhaps I will split this plugin in the future to detect the different flaws seperately.
info at bea dot com
http://www.bea.com
BEA Systems Inc.
2004/09/15
http://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/
BEA WebLogic prior 8.1 with SP3
BEA WebLogic 8.1 with SP3 and newer or other solutions
Configuration
The remote host is running BEA WebLogic which is older than version 8.1 There were more than 8 different vulnerabilities published for this version. An attacker may be able to start a denial of service attack or to get elevated privileges.
If the web server is not used it should be de-installed or de-activated. Install the newest patch or bugfix to solve the problem or upgrade to the latest software version which is not vulnerable anymore. Additionally limit unwanted connections and communications with firewalling.
Approx. 2 hours
Maybe
http://www.securityfocus.com/bid/11168/exploit/
Yes
Yes
High
8
7
9
8
High
Nessus is able to do the same check a bit more accurate.
11168
12524
831
14722
Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427
http://secunia.com/product/1360/