ÿÖÜÉý¼¶²¼¸æ-2023-02-21

°ä²¼¹¦·ò 2023-02-21

ÐÂÔöÊÂÎñ

 

ÊÂÎñÃû³Æ£º£º£º

HTTP_WebLogic_ws_utc_ËÁÒâÎļþÉÏ´«·ì϶_̽²â[CVE-2018-2894][CNNVD-201807-1277]


°²È«ÀàÐÍ£º£º£º

°²È«·ì϶


ÊÂÎñÃèÊö£º£º£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃOracleWebLogicws_utcÒ³ÃæµÄËÁÒâÎļþÉÏ´«·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ£¬ £¬£¬ÊÔͼͨ¹ýWeb²âÊÔÒ³ÃæµÄÉÏ´«Ö°ÄÜ»ñȡָ±ê·þÎñÆ÷µÄWebshell¡£WebLogicÊÇÃÀ¹úOracle¹«Ë¾³öÆ·µÄÀûÓ÷¨Ê½·þÎñÆ÷£¬ £¬£¬ÊÇÒ»¸ö»ùÓÚJavaEE¼Ü¹¹µÄWebÖÐÑë¼þ¡£WebLogic´æÔÚËÁÒâÎļþÉÏ´«·ì϶£¬ £¬£¬WebLogicÖÎÀí¶ËδÊÚȨµÄÁ½¸öÒ³Ãæ´æÔÚËÁÒâÉÏ´«getshell·ì϶£¬ £¬£¬¿ÉÖ±½Ó»ñȡȨÏÞ¡£Á½¸öÒ³Ãæ±ðÀëΪ/ws_utc/begin.do£¬ £¬£¬/ws_utc/config.do£¬ £¬£¬¹¥»÷Õßͨ¹ýÖ¸¶¨URLÀ´ÉÏ´«"107" style="border-right: 1px solid windowtext; border-bottom: 1px solid windowtext; border-left: 1px solid windowtext; border-image: initial; border-top: none; background: white; padding: 0px 7px;">

¸üй¦·ò£º£º£º

20230221


 

ÊÂÎñÃû³Æ£º£º£º

HTTP_ÌáȨ¹¥»÷_Oracle_Weblogic_console_ȨÏÞÈÆ¹ý_̽²â[CVE-2020-14883][CNNVD-202010-997]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃOracleWebLogic10.3.6.0.0¡¢¡¢¡¢12.1.3.0.0¡¢¡¢¡¢12.2.1.3.0¡¢¡¢¡¢12.2.1.4.0ºÍ14.1.1.0.0°æ±¾ÖдæÔÚµÄconsoleȨÏÞÈÆ¹ý·ì϶£¬ £¬£¬Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÄܹ»·ÇÊÚȨ½Ó¼ûweblogicconsole£¬ £¬£¬Ö®ºóÄܹ»Ê¹ÓÃCVE-2020-14882½ÚÖÆÖ¸±êϵͳȨÏÞ¡£¡£WeblogicÊÇĿǰȫÇòÊг¡ÉÏÀûÓÃ×î¿í·ºµÄJ2EE¹¤¾ßÖ®Ò»£¬ £¬£¬±»³ÆÎªÒµ½ç×î¼ÑµÄÀûÓ÷¨Ê½·þÎñÆ÷£¬ £¬£¬ÆäÓÃÓÚ¹¹½¨J2EEÀûÓ÷¨Ê½£¬ £¬£¬Ö§³ÖÐÂÖ°ÄÜ£¬ £¬£¬¿É½µµÍÔËÓª³É±¾£¬ £¬£¬Ìá¸ß»úÄÜ£¬ £¬£¬¼ÓÇ¿¿ÉÀ©´óÐÔ²¢Ö§³ÖOracleApplications²úÆ·×éºÏ¡£

¸üй¦·ò£º£º£º

20230221

 

Åú¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º£º£º

TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Oracle_WebLogic_T3ºÍ̸[CVE-2020-2555]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

¼ì²âµ½Ô´IPÀûÓÃweblogic·´ÐòÁл¯·ì϶½øÐй¥»÷µÄÐÐΪ£¬ £¬£¬OracleCoherenceΪOracleÈÚºÏÖÐÑë¼þÖеIJúÆ·£¬ £¬£¬ÔÚWebLogic12c¼°ÒÔÉϰ汾ÖÐĬÈϼ¯³Éµ½WebLogic×°ÖðüÖУ¬ £¬£¬¹¥»÷Õßͨ¹ýt3ºÍ̸·¢ËÍ»ú¹ØµÄÐòÁл¯Êý¾Ý£¬ £¬£¬ÄܹýÔì³ÉºÅÁîÖ´ÐеijÉЧ

¸üй¦·ò£º£º£º

20230221

 

ÊÂÎñÃû³Æ£º£º£º

TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Oracle_Weblogic_T3ºÍ̸[CVE-2020-2883]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©´óƽ̨£¬ £¬£¬ÓÃÓÚÔÚ±¾µØºÍÔÆ¶Ë¿ª·¢¡¢¡¢¡¢²¿ÊðºÍÔËÐÐÆóÒµÀûÓ÷¨Ê½£¬ £¬£¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿¿µÃס¡¢¡¢¡¢³ÉÊìºÍ¿ÉÀ©´óµÄʵÏÖ¡£CVE-2020-2555·ì϶Äܹ»Í¨¹ý·´ÐòÁл¯´¥·¢ExtractorÖв»°²È«µÄextract²½Ö裬 £¬£¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3ºÍÌ¸ÍøÂç½Ó¼û²¢·ÛËéÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷£¬ £¬£¬³É¹¦ÀûÓô˷ì϶¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»ÊÕÊÜ»òÃô¸ÐÐÅϢй¶¡£Ó°ÏìÁìÓò£º£º£ºOracleCoherence10.3.6.0.0OracleCoherence12.1.3.0.0OracleCoherence12.2.1.3.0OracleCoherence12.2.1.4.0

¸üй¦·ò£º£º£º

20230221


 

ÊÂÎñÃû³Æ£º£º£º

HTTP_·ì϶ÀûÓÃ_ȨÏÞÈÆ¹ý_Apache_Shiro_v1.3.2ÒÔÏÂ[CVE-2016-6802][CNNVD-201609-372]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

ApacheShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü£¬ £¬£¬ËüÄܹ»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢¡¢¡¢ÊÚȨ¡¢¡¢¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£Ä¿Ç°³£¼û¼¯³ÉÓÚ¸÷ÀàÀûÓÃÖнøÐÐÉí·ÝÑéÖ¤£¬ £¬£¬ÊÚȨµÈ¡£ApacheShiro<1.3.2ÔÚõè¾¶½ÚÖÆµÄʱ³½£¬ £¬£¬Î´ÄܶԴ«ÈëµÄurl±àÂë½øÐÐdecode½âÂ룬 £¬£¬µ¼Ö¹¥»÷ÕßÄܹ»Èƹý¹ýÂËÆ÷£¬ £¬£¬½Ó¼û±»¹ýÂ˵Äõè¾¶¡£

¸üй¦·ò£º£º£º

20230221

 

ÊÂÎñÃû³Æ£º£º£º

HTTP_ÌáȨ¹¥»÷_Oracle_WebLogic_·´ÐòÁл¯Èƹý[CVE-2019-2725][CNNVD-201904-1251]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

OracleWebLogicServerÊÇOracleCorporationµ±Ç°¿ª·¢µÄJavaEEÀûÓ÷þÎñÆ÷¡£OracleWebLogicServer10.3.6.0.0¡¢¡¢¡¢OracleWebLogicServer12.1.3.0.0°æ±¾´æÔÚ·´ÐòÁл¯·ì϶£¬ £¬£¬¸Ã·ìÏ¶ÈÆ¹ýCVE-2019-2725²¹¶¡£¬ £¬£¬·ì϶´æÔÚwls-wsatºÍbea_wls9_async_response×é¼þ£¬ £¬£¬Î´¾­ÊÚȨµÄ¹¥»÷ÕßÄܹ»·¢Ë;«ÐÄ»ú¹ØµÄ¶ñÒâHTTPÒªÇó£¬ £¬£¬»ñÈ¡·þÎñÆ÷ȨÏÞ£¬ £¬£¬ÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£

¸üй¦·ò£º£º£º

20230221

 

ÊÂÎñÃû³Æ£º£º£º

TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Weblogic_T3ºÍ̸[CVE-2020-14756][CVE-2020-14756/CVE-2021-2394]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©´óƽ̨£¬ £¬£¬ÓÃÓÚÔÚ±¾µØºÍÔÆ¶Ë¿ª·¢¡¢¡¢¡¢²¿ÊðºÍÔËÐÐÆóÒµÀûÓ÷¨Ê½£¬ £¬£¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿¿µÃס¡¢¡¢¡¢³ÉÊìºÍ¿ÉÀ©´óµÄʵÏÖ¡£CVE-2020-2555·ì϶Äܹ»ÈƹýºÚÃûµ¥Í¨¹ý·´ÐòÁл¯´¥·¢ExtractorÖв»°²È«µÄextract²½Ö裬 £¬£¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3ºÍÌ¸ÍøÂç½Ó¼û²¢·ÛËéÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷£¬ £¬£¬³É¹¦ÀûÓô˷ì϶¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»ÊÕÊÜ»òÃô¸ÐÐÅϢй¶¡£Ó°ÏìÁìÓò£º£º£ºOracleCoherence10.3.6.0.0OracleCoherence12.1.3.0.0OracleCoherence12.2.1.3.0OracleCoherence12.2.1.4.0

¸üй¦·ò£º£º£º

20230221


 

ÊÂÎñÃû³Æ£º£º£º

HTTP_ÌáȨ¹¥»÷_Oracle_WebLogic_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2019-2725/CVE-2019-2729]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

´Ë·ì϶ÊÇÓÉÓÚÀûÓÃÔÚ´¦Ö÷´ÐòÁл¯ÊäÈëÐÅϢʱ´æÔÚȱµã£¬ £¬£¬¹¥»÷ÕßÄܹ»Í¨¹ý·¢Ë;«ÐÄ»ú¹ØµÄ¶ñÒâHTTPÒªÇó£¬ £¬£¬ÓÃÓÚ»ñµÃÖ¸±ê·þÎñÆ÷µÄȨÏÞ£¬ £¬£¬²¢ÔÚδÊÚȨµÄÇé¿öÏÂÖ´ÐÐÔ¶³ÌºÅÁ £¬£¬×îÖÕ»ñÈ¡·þÎñÆ÷µÄȨÏÞ¡£CVE-2019-2729ÊÇCVE-2019-2725µÄÈÆ¹ý¡£ÊÜÓ°Ïì°æ±¾Îª£º£º£ºOracleWebLogicServer,versions10.3.6.0.0,12.1.3.0.0,12.2.1.3.0

¸üй¦·ò£º£º£º

20230221


 

ÊÂÎñÃû³Æ£º£º£º

TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Weblogic·´ÐòÁл¯·ì϶[CVE-2018-3245]

°²È«ÀàÐÍ£º£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃWeblogic·´ÐòÁл¯·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ¡£WebLogicÊÇÃÀ¹úOracle¹«Ë¾³öÆ·µÄÒ»¸öÀûÓ÷þÎñÆ÷£¬ £¬£¬ÊÇÒ»¸ö»ùÓÚJAVAEE¼Ü¹¹µÄÖÐÑë¼þ£¬ £¬£¬WebLogicÊÇÓÃÓÚ¿ª·¢¡¢¡¢¡¢¼¯³É¡¢¡¢¡¢²¿ÊðºÍÖÎÀí´óÐÍÉ¢²¼Ê½WebÀûÓᢡ¢¡¢ÍøÂçÀûÓúÍÊý¾Ý¿âÀûÓõÄJavaÀûÓ÷þÎñÆ÷¡£ÀûÓø÷ì϶¹¥»÷ÕßÄܹ»ÔÚδÊÚȨµÄÇé¿öϽ«payload·â×°ÔÚT3ºÍ̸ÖУ¬ £¬£¬Í¨¹ý¶ÔT3ºÍ̸ÖеÄpayload½øÐз´ÐòÁл¯£¬ £¬£¬´Ó¶øÊµÏÖ¶Ô´æÔÚ·ì϶µÄWebLogic×é¼þͨ¹ýÖ´ÐÐËÁÒâ´úÂë½øÐÐÔ¶³Ì¹¥»÷¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶»ñÈ¡Ãô¸ÐÐÅÏ¢£¬ £¬£¬Ö´ÐÐËÁÒâ±¾µØ¾ç±¾£¬ £¬£¬½ÚÖÆÀûÓ÷¨Ê½ºÍµçÄÔ¡£

¸üй¦·ò£º£º£º

20230221