WebLogic Crafted GET Request Hostname Disclosure
Medium Nessus Plugin ID 11606
SynopsisThe remote service is vulnerable to information disclosure.
DescriptionThe remote WebLogic server discloses its NetBIOS host name when it is issued a request generating a redirection.
An attacker may use this information to better prepare other attacks against this host.
SolutionCurrently, there are no known upgrades or patches to correct this issue.
Filter requests that start with a "." in a proxy or firewall with URL filtering capabilities.