228 BEA WebLogic prior 8.1 multiple vulnerabilities CGI 2004/09/15 Marc Ruef marc dot ruef at computec dot ch http://www.computec.ch computec.ch Marc Ruef marc dot ruef at computec dot ch http://www.computec.ch computec.ch 2004/11/14 2.0 Corrected the plugin structure and added the accuracy values in 1.1. Improved the pattern matching and introduced the plugin changelog in 2.0 tcp 80 open|send HEAD / HTTP/1.0\n\n|sleep|close|pattern_exists HTTP/#.# ### *WebLogic*[0-7].* OR HTTP/#.# ### *WebLogic*8.[0-1]* 90 I don't know how to detect the installed service pack accurately. Perhaps I will split this plugin in the future to detect the different flaws seperately. info at bea dot com http://www.bea.com BEA Systems Inc. 2004/09/15 http://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/ BEA WebLogic prior 8.1 with SP3 BEA WebLogic 8.1 with SP3 and newer or other solutions Configuration The remote host is running BEA WebLogic which is older than version 8.1 There were more than 8 different vulnerabilities published for this version. An attacker may be able to start a denial of service attack or to get elevated privileges. If the web server is not used it should be de-installed or de-activated. Install the newest patch or bugfix to solve the problem or upgrade to the latest software version which is not vulnerable anymore. Additionally limit unwanted connections and communications with firewalling. Approx. 2 hours Maybe http://www.securityfocus.com/bid/11168/exploit/ Yes Yes High 8 7 9 8 High Nessus is able to do the same check a bit more accurate. 11168 12524 831 14722 Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427 http://secunia.com/product/1360/