BEA Systems WebLogic Server is an enterprise level web and wireless application server for Microsoft Windows and most Unix and Linux distributions. BEA WebLogic Express provides a platform for serving dynamic data to web and wireless applications. It is possible to cause the server to disclose the absolute path to the webroot directory. This is due to difficulties parsing certain types of malformed requests, such as those containing null characters (%00). Path information may aid the attacker in making further attacks against the host.
BEA Systems WebLogic Server is an enterprise level web and wireless application server for Microsoft Windows and most Unix and Linux distributions. BEA WebLogic Express provides a platform for serving dynamic data to web and wireless applications. It is possible to cause the server to disclose the absolute path to the webroot directory. This is due to difficulties parsing certain types of malformed requests, such as those containing null characters (%00). Path information may aid the attacker in making further attacks against the host.