CVE-2007-0412 Information
Feb 14, 2021
cve
Description
BEA WebLogic Server 6.1 through 6.1 SP7 7.0 through 7.0 SP7 and 8.1 through 8.1 SP5 allows remote attackers to read arbitrary files inside the class-path property via .ear or exploded .ear files that use the manifest class-path property to point to utility jar files.
Reference
http://dev2dev.bea.com/pub/advisory/206 http://osvdb.org/38505 http://secunia.com/advisories/23750 http://securitytracker.com/id?1017525 http://www.securityfocus.com/bid/22082 http://www.vupen.com/english/advisories/2007/0213
Share on: