ÿÖÜÉý¼¶²¼¸æ-2023-02-21
°ä²¼¹¦·ò 2023-02-21ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º£º£º | HTTP_WebLogic_ws_utc_ËÁÒâÎļþÉÏ´«·ì϶_̽²â[CVE-2018-2894][CNNVD-201807-1277] | |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ | |
ÊÂÎñÃèÊö£º£º£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃOracleWebLogicws_utcÒ³ÃæµÄËÁÒâÎļþÉÏ´«·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ£¬£¬£¬ÊÔͼͨ¹ýWeb²âÊÔÒ³ÃæµÄÉÏ´«Ö°ÄÜ»ñȡָ±ê·þÎñÆ÷µÄWebshell¡£WebLogicÊÇÃÀ¹úOracle¹«Ë¾³öÆ·µÄÀûÓ÷¨Ê½·þÎñÆ÷£¬£¬£¬ÊÇÒ»¸ö»ùÓÚJavaEE¼Ü¹¹µÄWebÖÐÑë¼þ¡£WebLogic´æÔÚËÁÒâÎļþÉÏ´«·ì϶£¬£¬£¬WebLogicÖÎÀí¶ËδÊÚȨµÄÁ½¸öÒ³Ãæ´æÔÚËÁÒâÉÏ´«getshell·ì϶£¬£¬£¬¿ÉÖ±½Ó»ñȡȨÏÞ¡£Á½¸öÒ³Ãæ±ðÀëΪ/ws_utc/begin.do£¬£¬£¬/ws_utc/config.do£¬£¬£¬¹¥»÷Õßͨ¹ýÖ¸¶¨URLÀ´ÉÏ´«"107" style="border-right: 1px solid windowtext; border-bottom: 1px solid windowtext; border-left: 1px solid windowtext; border-image: initial; border-top: none; background: white; padding: 0px 7px;"> ¸üй¦·ò£º£º£º | 20230221 |
ÊÂÎñÃû³Æ£º£º£º | HTTP_ÌáȨ¹¥»÷_Oracle_Weblogic_console_ȨÏÞÈÆ¹ý_̽²â[CVE-2020-14883][CNNVD-202010-997] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃOracleWebLogic10.3.6.0.0¡¢¡¢¡¢12.1.3.0.0¡¢¡¢¡¢12.2.1.3.0¡¢¡¢¡¢12.2.1.4.0ºÍ14.1.1.0.0°æ±¾ÖдæÔÚµÄconsoleȨÏÞÈÆ¹ý·ì϶£¬£¬£¬Î´¾Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÄܹ»·ÇÊÚȨ½Ó¼ûweblogicconsole£¬£¬£¬Ö®ºóÄܹ»Ê¹ÓÃCVE-2020-14882½ÚÖÆÖ¸±êϵͳȨÏÞ¡£¡£WeblogicÊÇĿǰȫÇòÊг¡ÉÏÀûÓÃ×î¿í·ºµÄJ2EE¹¤¾ßÖ®Ò»£¬£¬£¬±»³ÆÎªÒµ½ç×î¼ÑµÄÀûÓ÷¨Ê½·þÎñÆ÷£¬£¬£¬ÆäÓÃÓÚ¹¹½¨J2EEÀûÓ÷¨Ê½£¬£¬£¬Ö§³ÖÐÂÖ°ÄÜ£¬£¬£¬¿É½µµÍÔËÓª³É±¾£¬£¬£¬Ìá¸ß»úÄÜ£¬£¬£¬¼ÓÇ¿¿ÉÀ©´óÐÔ²¢Ö§³ÖOracleApplications²úÆ·×éºÏ¡£ |
¸üй¦·ò£º£º£º | 20230221 |
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º£º£º | TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Oracle_WebLogic_T3ºÍ̸[CVE-2020-2555] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | ¼ì²âµ½Ô´IPÀûÓÃweblogic·´ÐòÁл¯·ì϶½øÐй¥»÷µÄÐÐΪ£¬£¬£¬OracleCoherenceΪOracleÈÚºÏÖÐÑë¼þÖеIJúÆ·£¬£¬£¬ÔÚWebLogic12c¼°ÒÔÉϰ汾ÖÐĬÈϼ¯³Éµ½WebLogic×°ÖðüÖУ¬£¬£¬¹¥»÷Õßͨ¹ýt3ºÍ̸·¢ËÍ»ú¹ØµÄÐòÁл¯Êý¾Ý£¬£¬£¬ÄܹýÔì³ÉºÅÁîÖ´ÐеijÉЧ |
¸üй¦·ò£º£º£º | 20230221 |
ÊÂÎñÃû³Æ£º£º£º | TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Oracle_Weblogic_T3ºÍ̸[CVE-2020-2883] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©´óƽ̨£¬£¬£¬ÓÃÓÚÔÚ±¾µØºÍÔÆ¶Ë¿ª·¢¡¢¡¢¡¢²¿ÊðºÍÔËÐÐÆóÒµÀûÓ÷¨Ê½£¬£¬£¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿¿µÃס¡¢¡¢¡¢³ÉÊìºÍ¿ÉÀ©´óµÄʵÏÖ¡£CVE-2020-2555·ì϶Äܹ»Í¨¹ý·´ÐòÁл¯´¥·¢ExtractorÖв»°²È«µÄextract²½Ö裬£¬£¬ÔÊÐíδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3ºÍÌ¸ÍøÂç½Ó¼û²¢·ÛËéÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷£¬£¬£¬³É¹¦ÀûÓô˷ì϶¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»ÊÕÊÜ»òÃô¸ÐÐÅϢй¶¡£Ó°ÏìÁìÓò£º£º£ºOracleCoherence10.3.6.0.0OracleCoherence12.1.3.0.0OracleCoherence12.2.1.3.0OracleCoherence12.2.1.4.0 |
¸üй¦·ò£º£º£º | 20230221 |
ÊÂÎñÃû³Æ£º£º£º | HTTP_·ì϶ÀûÓÃ_ȨÏÞÈÆ¹ý_Apache_Shiro_v1.3.2ÒÔÏÂ[CVE-2016-6802][CNNVD-201609-372] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | ApacheShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü£¬£¬£¬ËüÄܹ»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢¡¢¡¢ÊÚȨ¡¢¡¢¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£Ä¿Ç°³£¼û¼¯³ÉÓÚ¸÷ÀàÀûÓÃÖнøÐÐÉí·ÝÑéÖ¤£¬£¬£¬ÊÚȨµÈ¡£ApacheShiro<1.3.2ÔÚõè¾¶½ÚÖÆµÄʱ³½£¬£¬£¬Î´ÄܶԴ«ÈëµÄurl±àÂë½øÐÐdecode½âÂ룬£¬£¬µ¼Ö¹¥»÷ÕßÄܹ»Èƹý¹ýÂËÆ÷£¬£¬£¬½Ó¼û±»¹ýÂ˵Äõè¾¶¡£ |
¸üй¦·ò£º£º£º | 20230221 |
ÊÂÎñÃû³Æ£º£º£º | HTTP_ÌáȨ¹¥»÷_Oracle_WebLogic_·´ÐòÁл¯Èƹý[CVE-2019-2725][CNNVD-201904-1251] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | OracleWebLogicServerÊÇOracleCorporationµ±Ç°¿ª·¢µÄJavaEEÀûÓ÷þÎñÆ÷¡£OracleWebLogicServer10.3.6.0.0¡¢¡¢¡¢OracleWebLogicServer12.1.3.0.0°æ±¾´æÔÚ·´ÐòÁл¯·ì϶£¬£¬£¬¸Ã·ìÏ¶ÈÆ¹ýCVE-2019-2725²¹¶¡£¬£¬£¬·ì϶´æÔÚwls-wsatºÍbea_wls9_async_response×é¼þ£¬£¬£¬Î´¾ÊÚȨµÄ¹¥»÷ÕßÄܹ»·¢Ë;«ÐÄ»ú¹ØµÄ¶ñÒâHTTPÒªÇ󣬣¬£¬»ñÈ¡·þÎñÆ÷ȨÏÞ£¬£¬£¬ÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£ |
¸üй¦·ò£º£º£º | 20230221 |
ÊÂÎñÃû³Æ£º£º£º | TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Weblogic_T3ºÍ̸[CVE-2020-14756][CVE-2020-14756/CVE-2021-2394] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©´óƽ̨£¬£¬£¬ÓÃÓÚÔÚ±¾µØºÍÔÆ¶Ë¿ª·¢¡¢¡¢¡¢²¿ÊðºÍÔËÐÐÆóÒµÀûÓ÷¨Ê½£¬£¬£¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿¿µÃס¡¢¡¢¡¢³ÉÊìºÍ¿ÉÀ©´óµÄʵÏÖ¡£CVE-2020-2555·ì϶Äܹ»ÈƹýºÚÃûµ¥Í¨¹ý·´ÐòÁл¯´¥·¢ExtractorÖв»°²È«µÄextract²½Ö裬£¬£¬ÔÊÐíδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3ºÍÌ¸ÍøÂç½Ó¼û²¢·ÛËéÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷£¬£¬£¬³É¹¦ÀûÓô˷ì϶¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»ÊÕÊÜ»òÃô¸ÐÐÅϢй¶¡£Ó°ÏìÁìÓò£º£º£ºOracleCoherence10.3.6.0.0OracleCoherence12.1.3.0.0OracleCoherence12.2.1.3.0OracleCoherence12.2.1.4.0 |
¸üй¦·ò£º£º£º | 20230221 |
ÊÂÎñÃû³Æ£º£º£º | HTTP_ÌáȨ¹¥»÷_Oracle_WebLogic_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2019-2725/CVE-2019-2729] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | ´Ë·ì϶ÊÇÓÉÓÚÀûÓÃÔÚ´¦Ö÷´ÐòÁл¯ÊäÈëÐÅϢʱ´æÔÚȱµã£¬£¬£¬¹¥»÷ÕßÄܹ»Í¨¹ý·¢Ë;«ÐÄ»ú¹ØµÄ¶ñÒâHTTPÒªÇ󣬣¬£¬ÓÃÓÚ»ñµÃÖ¸±ê·þÎñÆ÷µÄȨÏÞ£¬£¬£¬²¢ÔÚδÊÚȨµÄÇé¿öÏÂÖ´ÐÐÔ¶³ÌºÅÁ£¬£¬×îÖÕ»ñÈ¡·þÎñÆ÷µÄȨÏÞ¡£CVE-2019-2729ÊÇCVE-2019-2725µÄÈÆ¹ý¡£ÊÜÓ°Ïì°æ±¾Îª£º£º£ºOracleWebLogicServer,versions10.3.6.0.0,12.1.3.0.0,12.2.1.3.0 |
¸üй¦·ò£º£º£º | 20230221 |
ÊÂÎñÃû³Æ£º£º£º | TCP_·ì϶ÀûÓÃ_·´ÐòÁл¯_Weblogic·´ÐòÁл¯·ì϶[CVE-2018-3245] |
°²È«ÀàÐÍ£º£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃWeblogic·´ÐòÁл¯·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ¡£WebLogicÊÇÃÀ¹úOracle¹«Ë¾³öÆ·µÄÒ»¸öÀûÓ÷þÎñÆ÷£¬£¬£¬ÊÇÒ»¸ö»ùÓÚJAVAEE¼Ü¹¹µÄÖÐÑë¼þ£¬£¬£¬WebLogicÊÇÓÃÓÚ¿ª·¢¡¢¡¢¡¢¼¯³É¡¢¡¢¡¢²¿ÊðºÍÖÎÀí´óÐÍÉ¢²¼Ê½WebÀûÓᢡ¢¡¢ÍøÂçÀûÓúÍÊý¾Ý¿âÀûÓõÄJavaÀûÓ÷þÎñÆ÷¡£ÀûÓø÷ì϶¹¥»÷ÕßÄܹ»ÔÚδÊÚȨµÄÇé¿öϽ«payload·â×°ÔÚT3ºÍ̸ÖУ¬£¬£¬Í¨¹ý¶ÔT3ºÍ̸ÖеÄpayload½øÐз´ÐòÁл¯£¬£¬£¬´Ó¶øÊµÏÖ¶Ô´æÔÚ·ì϶µÄWebLogic×é¼þͨ¹ýÖ´ÐÐËÁÒâ´úÂë½øÐÐÔ¶³Ì¹¥»÷¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬Ö´ÐÐËÁÒâ±¾µØ¾ç±¾£¬£¬£¬½ÚÖÆÀûÓ÷¨Ê½ºÍµçÄÔ¡£ |
¸üй¦·ò£º£º£º | 20230221 |


¾©¹«Íø°²±¸11010802024551ºÅ