WebLogic Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability - CVE-2008-3257 - Vulnerability Database

WebLogic Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability - CVE-2008-3257

Critical
Reference: CVE-2008-3257
Title: WebLogic Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Overview:

Stack-based buffer overflow in the Apache Connector (mod_wl) in Oracle WebLogic Server (formerly BEA WebLogic Server) 10.3 and earlier allows remote attackers to execute arbitrary code via a long HTTP version string as demonstrated by a string after quotPOST /.jspquot in an HTTP request.