Emergency Oracle Patch to BEA WebLogic
Oracle switched gears from its usual quarterly patch release cycle to issue a patch to a critical vulnerability in a WebLogic plug-in for Apache.
The vulnerability, which can be exploited remotely and without authentication, affects a number of versions:
# Oracle WebLogic Server 10.0 released through MP1
# Oracle WebLogic Server 9.2 released through MP3
# Oracle WebLogic Server 9.1
# Oracle WebLogic Server 9.0
# Oracle WebLogic Server 8.1 released through SP6
# Oracle WebLogic Server 7.0 released through SP7
# Oracle WebLogic Server 6.1 released through SP7
More details are here, including a link to download the patch.



Email This!
Digg it!
Del.icio.us
Reddit!
Newsvine
