peter bassill · operator
$ cve CVE-2008-5457 JSON

CVE-2008-5457 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 61.3% (pctl 99)

Patch early

A public exploit exists.

Description

Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS61.31% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2009-01-14
Last modified2026-06-16

Affected (1)

VendorProduct
oraclebea product suite

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD