
Find real vulnerabilities before they ship
The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing.
| Base Score | 5 |
|---|---|
| Vector String | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| Base Severity | Unknown |
| Version | 2.0 |
| Attack Vector (AV) |