CVE-2004-2320
Summary
| CVE | CVE-2004-2320 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2004-12-31 05:00:00 UTC |
| Updated | 2017-07-11 01:31:00 UTC |
| Description | The default configuration of BEA WebLogic Server and Express 8.1 SP2 and earlier, 7.0 SP4 and earlier, 6.1 through SP6, and 5.1 through SP13 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cross-site tracing (XST) attacks in applications that are vulnerable to cross-site scripting. |
Risk And Classification
Problem Types: CWE-200
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Bea | Weblogic Server | 5.1 | All | express | All |
| Application | Bea | Weblogic Server | 5.1 | All | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp10 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp10 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp10 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp11 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp11 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp11 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp12 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp12 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp12 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp13 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp13 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp13 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp2 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp3 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp3 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp4 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp4 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp5 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp5 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp6 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp6 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp6 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp7 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp7 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp7 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp8 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp8 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp8 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp9 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp9 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp9 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | All | All | All |
| Application | Bea | Weblogic Server | 6.1 | All | express | All |
| Application | Bea | Weblogic Server | 6.1 | All | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp6 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp6 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | All | All | All |
| Application | Bea | Weblogic Server | 7.0 | All | express | All |
| Application | Bea | Weblogic Server | 7.0 | All | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | win32 | All |
| Application | Bea | Weblogic Server | 8.1 | All | All | All |
| Application | Bea | Weblogic Server | 8.1 | All | express | All |
| Application | Bea | Weblogic Server | 8.1 | All | win32 | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | All | express | All |
| Application | Bea | Weblogic Server | 5.1 | All | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp10 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp10 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp10 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp11 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp11 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp11 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp12 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp12 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp12 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp13 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp13 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp13 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp2 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp3 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp3 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp4 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp4 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp5 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp5 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp6 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp6 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp6 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp7 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp7 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp7 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp8 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp8 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp8 | win32 | All |
| Application | Bea | Weblogic Server | 5.1 | sp9 | All | All |
| Application | Bea | Weblogic Server | 5.1 | sp9 | express | All |
| Application | Bea | Weblogic Server | 5.1 | sp9 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | All | All | All |
| Application | Bea | Weblogic Server | 6.1 | All | express | All |
| Application | Bea | Weblogic Server | 6.1 | All | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp2 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp3 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp4 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | express | All |
| Application | Bea | Weblogic Server | 6.1 | sp5 | win32 | All |
| Application | Bea | Weblogic Server | 6.1 | sp6 | All | All |
| Application | Bea | Weblogic Server | 6.1 | sp6 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | All | All | All |
| Application | Bea | Weblogic Server | 7.0 | All | express | All |
| Application | Bea | Weblogic Server | 7.0 | All | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp2 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp3 | win32 | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | All | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | express | All |
| Application | Bea | Weblogic Server | 7.0 | sp4 | win32 | All |
| Application | Bea | Weblogic Server | 8.1 | All | All | All |
| Application | Bea | Weblogic Server | 8.1 | All | express | All |
| Application | Bea | Weblogic Server | 8.1 | All | win32 | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | All | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp1 | win32 | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | All | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | express | All |
| Application | Bea | Weblogic Server | 8.1 | sp2 | win32 | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityTracker.com Archives - WebLogic Server and Express Input Validation Flaw in Processing HTTP TRACE Requests Permits Cross-Site Scripting | SECTRACK | www.securitytracker.com | Patch |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Patches available to prevent compromise of user accounts | BEA | dev2dev.bea.com | Patch, Vendor Advisory |
| Secunia - Advisories - BEA WebLogic HTTP TRACE Response Cross-Site Scripting Issue | SECUNIA | secunia.com | Vendor Advisory |
| 3726 | OSVDB | www.osvdb.org | |
| Vulnerability Note VU#867593 - Web servers enable HTTP TRACE method by default | CERT-VN | www.kb.cert.org | Third Party Advisory, US Government Resource |
| WebLogic Server and Express HTTP TRACE Credential Theft Vulnerability | BID | www.securityfocus.com | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
| Organization | Published | Contributor | Statement |
|---|---|---|---|
| Red Hat | 2008-03-05 | Joshua Bressers | The Apache Software Foundation do not treat this as a security issue. A configuration change can be made to disable the ability to respond to HTTP TRACE requests if required. For more information please see: http://www.apacheweek.com/issues/03-01-24#news |