Unrated severityNVD Advisory· Published Dec 1, 2003· Updated Apr 16, 2026
CVE-2003-0624
CVE-2003-0624
Description
Cross-site scripting (XSS) vulnerability in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier allows remote attackers to inject malicious web script via the person parameter.
Affected products
2cpe:2.3:a:bea:weblogic_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bea:weblogic_server:*:*:*:*:*:*:*:*range: <=8.1
- cpe:2.3:a:bea:weblogic_server:3.1.8:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- dev2dev.bea.com/resourcelibrary/advisoriesnotifications/SA_BEA03_36.00.jspnvdPatchVendor Advisory
- www.securityfocus.com/bid/8938nvdExploitVendor Advisory
- marc.infonvd
- exchange.xforce.ibmcloud.com/vulnerabilities/13568nvd
News mentions
0No linked articles in our index yet.