Files
CVEs-PoC/2002/CVE-2002-2177.md
T
2025-09-29 21:09:30 +02:00

18 lines
732 B
Markdown

### [CVE-2002-2177](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-2177)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen)
### Description
BEA WebLogic Server and Express 6.1 through 7.0.0.1 buffers HTTP requests in a way that can cause BEA to send the same response for two different HTTP requests, which could allow remote attackers to obtain sensitive information that was intended for other users.
### POC
#### Reference
- http://dev2dev.bea.com/pub/advisory/38
#### Github
No PoCs found on GitHub currently.