Unrated severityNVD Advisory· Published Aug 27, 2003· Updated Jun 16, 2026
CVE-2003-0640
CVE-2003-0640
Description
BEA WebLogic Server and Express, when using NodeManager to start servers, provides Operator users with privileges to overwrite usernames and passwords, which may allow Operators to gain Admin privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:bea:weblogic_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:bea:weblogic_server:*:*:*:*:*:*:*:*
- cpe:2.3:a:bea:weblogic_server:*:*:express:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
2- www.secunia.com/advisories/9232/nvdPatchVendor Advisory
- dev2dev.bea.com/resourcelibrary/advisoriesnotifications/BEA03-33.jspnvd
News mentions
0No linked articles in our index yet.