Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

WebLogic Server < 5.1 SP 7 ".." URL Handling Remote Overflow DoS

Critical

Synopsis

The remote host is vulnerable to a Denial of Service (DoS) attack.

Description

The remote WebLogic server can be disabled remotely by requesting a long URL starting with a double dot.

Solution

Upgrade to WebLogic 5.1 SP7 or higher