### [CVE-2002-2177](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-2177) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen) ### Description BEA WebLogic Server and Express 6.1 through 7.0.0.1 buffers HTTP requests in a way that can cause BEA to send the same response for two different HTTP requests, which could allow remote attackers to obtain sensitive information that was intended for other users. ### POC #### Reference - http://dev2dev.bea.com/pub/advisory/38 #### Github No PoCs found on GitHub currently.