Vulnerabilities > CVE-2003-1223 - Denial of Service and Information Disclosure vulnerability in Multiple BEA WebLogic Server/Express

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
bea

Summary

The Node Manager for BEA WebLogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of service (Node Manager crash) via malformed data to the Node Manager's port, as demonstrated by nmap.

Vulnerable Configurations

Part Description Count
Application
Bea
44