HTTP: BEA Weblogic Encoding Value Overflow
This signature detects attempts to exploit a known vulnerability in BEA Weblogic. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the server.
Extended Description
Oracle has released the October 2008 critical patch update addressing 36 vulnerabilities affecting the following software: Oracle Database Oracle Application Server Oracle E-Business Suite Oracle PeopleSoft Enterprise PeopleTools Oracle PeopleSoft Enterprise Oracle JD Edwards EnterpriseOne Tools Oracle WebLogic Server (formerly BEA WebLogic Server) Oracle Workshop for WebLogic (formerly BEA WebLogic Workshop)
Affected Products
Bea_systems weblogic_server
References
BugTraq: 31683
CVE: CVE-2008-4008
URL: https://support.bea.com/application_content/product_portlets/securityadvisories/2806.html
srx-branch-19.3
vsrx3bsd-19.2
srx-19.4
vsrx3bsd-19.4
srx-branch-19.4
vsrx-19.4
vsrx-19.2
srx-19.3
srx-branch-12.3
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx-12.3
vmx-19.3
srx-12.3
Oracle
Bea_systems
10.0