TROYANOSYVIRUS
Back to CVEs

CVE-2004-0711

N/A

Description

The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if they were the legal "/*" pattern, which could cause WebLogic 7.x to allow remote attackers to bypass intended access restrictions because the illegal patterns are properly rejected.

CVE Details

CVSS v3.1 ScoreN/A
Published7/27/2004
Last Modified4/16/2026
Sourcenvd
Honeypot Sightings0

Affected Products

bea:weblogic_server

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.