Show plain JSON{"id": "CVE-2008-5462", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 6.8, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 6.4, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": true, "userInteractionRequired": false}]}, "published": "2009-01-14T02:30:00.657", "references": [{"url": "http://www.oracle.com/technetwork/topics/security/cpujan2009-097901.html", "source": "secalert_us@oracle.com"}, {"url": "http://www.securityfocus.com/bid/33177", "source": "secalert_us@oracle.com"}, {"url": "http://www.securitytracker.com/id?1021571", "source": "secalert_us@oracle.com"}, {"url": "http://www.vupen.com/english/advisories/2009/0115", "source": "secalert_us@oracle.com"}, {"url": "http://www.oracle.com/technetwork/topics/security/cpujan2009-097901.html", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securityfocus.com/bid/33177", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securitytracker.com/id?1021571", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.vupen.com/english/advisories/2009/0115", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-264"}]}], "descriptions": [{"lang": "en", "value": "Unspecified vulnerability in the WebLogic Portal component in BEA Product Suite 10.3, 10.2, 10.0 MP1, 9.2 MP3, and 8.1 SP6 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors."}, {"lang": "es", "value": "Vulnerabilidad no especificada en el componente\r\nWebLogic Portal component en BEA Product Suite 10.3, 10.2, 10.0, MP1, 9.2, MP3, 8.1, y SP6 que permite atacantes remotos y afecta a la confidencialidad, integridad y disponibilidad a trav\u00e9s de vectores desconocidos."}], "lastModified": "2025-04-09T00:30:58.490", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:oracle:bea_product_suite:8.1:sp6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B8AB045-051A-477E-B2F7-4057826C43F1"}, {"criteria": "cpe:2.3:a:oracle:bea_product_suite:9.2:mp3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A7390B6A-7944-4509-B499-5B51DB9BF42E"}, {"criteria": "cpe:2.3:a:oracle:bea_product_suite:10.0:mp1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "193516AD-8096-4A6E-9C4B-4B9717DD7021"}, {"criteria": "cpe:2.3:a:oracle:bea_product_suite:10.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47D631E9-C2EE-4A63-AA5F-DEDBA5649BE2"}, {"criteria": "cpe:2.3:a:oracle:bea_product_suite:10.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B1C64BD-7C8C-4B28-9EA8-5198B6C71AD1"}], "operator": "OR"}]}], "evaluatorComment": "See following link for more information: https://support.bea.com/application_content/product_portlets/securityadvisories/2808.html", "sourceIdentifier": "secalert_us@oracle.com"}