漏洞关键信息 CVE ID: CVE-2008-2579 CVSS: 6.8 CVSS 2.0 Base Score: 6.8 - Access Vector: Network - Access Complexity: Medium - Authentication: None - Confidentiality Impact: Partial - Integrity Impact: Partial - Availability Impact: Partial CVSS 2.0 Temporal Score: 5 - Exploitability: Unproven - Remediation Level: Official Fix - Report Confidence: Confirmed Consequences: Gain Access Remedy: Refer to the BEA Support Web site for patch, upgrade, or suggested workaround information. See References. Affected Products: - Oracle WebLogic Server 7.0 - Oracle WebLogic Server 7.0 SP4 - Oracle WebLogic Server 7.0 SP5 - Oracle WebLogic Server 8.1 References: - Oracle Critical Patch Update - July 2008 - BEA Support Web site - BID-30177 - CVE-2008-2579