| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2004-2312 | The default configuration of BEA WebLogic Server and Express 8.1 SP2 and earlier, 7.0 SP4 and earlier, 6.1 through SP6, and 5.1 through SP13 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cross-site tracing (XST) attacks in applications that are vulnerable to cross-site scripting. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 28 May 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-28T17:55:12.478Z
Reserved: 2005-08-16T00:00:00.000Z
Link: CVE-2004-2320
Updated: 2024-08-08T01:22:13.662Z
Status : Modified
Published: 2004-12-31T05:00:00.000
Modified: 2026-05-28T19:16:21.473
Link: CVE-2004-2320
No data.
OpenCVE Enrichment
No data.
EUVD