Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

Oracle BEA WebLogic Server Apache Connector Buffer Overflow Vulnerability

Overview

A new buffer overflow vulnerability has been reported in Oracle (BEA) WebLogic Server Apache Connector (CVE-2008-4008).

Details

BEA WebLogic Server is a Java Application Server platform that supports various databases, including Oracle. A remote attacker may exploit this vulnerability to execute arbitrary code on a vulnerable system.

Protection

SmartDefense has protected against this vulnerability since 2004. No update is required to protect against this vulnerability. For more information about configuring this protection, see CPAI-2008-160.