[19919] in bugtraq

home help back first fref pref prev next nref lref last post

Re: def-2001-14: Bea Weblogic Unicode Directory Browsing

daemon@ATHENA.MIT.EDU (Przemyslaw Maciuszko)
Wed Mar 28 22:03:30 2001

MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-ID:  <Pine.LNX.4.33.0103281035100.7424-100000@virgin.gazeta.pl>
Date:         Wed, 28 Mar 2001 10:35:46 +0200
Reply-To: Przemyslaw Maciuszko <sal@GAZETA.PL>
From: Przemyslaw Maciuszko <sal@GAZETA.PL>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <000201c0b701$fe55a590$6faeb33e@gateway>

On Tue, 27 Mar 2001, Mikhail Iakovlev wrote:

> Hi.
> I have tested it on Solaris platform and it doesn't seem to be vulnerable,
> neither on single or cluster versions (tested on 5.x) so it applies
> obviously only to Windows platform.(No wonder :) )
We were able to reproduce it on Solaris with Weblogic 5.1 SP8 in a clustered
Weblogic enviroment.
So this version IS vulnerable on Solaris.


--
Przemyslaw Maciuszko

home help back first fref pref prev next nref lref last post