WebLogic ËÁÒâÎļþÉÏ´«Ô¶³Ì´úÂëÖ´Ðзì϶°²È«¹«¸æ
°ä²¼¹¦·ò 2018-07-19CVE-2018-2894 ³§ÉÌ×ÔÆÀ£º9.8 CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
ÊÜÓ°Ïì°æ±¾£º
WebLogic 10.3.6.0
WebLogic 12.1.3.0
WebLogic 12.2.1.2
WebLogic 12.2.1.3
Oracle¹Ù·½°ä²¼ÁË7Ô·ݵĹؼü²¹¶¡¸üÐÂCPU£¨Critical Patch Update£©£¬ÆäÖÐÕë¶Ô¿ÉÔì³ÉÔ¶³Ì´úÂëÖ´ÐеĸßΣ·ì϶ CVE-2018-2894 ½øÐн¨¸´£ºhttp://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html¡£
½ñÌì7ÔÂ19ºÅ¹ú¶È»¥ÁªÍøÓ¦¼±ÖÐÐÄCNCERT·¢³ö¹«¸æ£¬Ö¸³öCVE-2018-2894ÐÔÖÊÉÏΪËÁÒâÎļþÉÏ´«·ì϶£ºhttps://mp.weixin.qq.com/s/y5JGmM-aNaHcs_6P9a-gRQ¡£
WebLogicÖÎÀí¶ËδÊÚȨµÄÁ½¸öÒ³Ãæ´æÔÚËÁÒâÉÏ´«getshell·ì϶£¬¿ÉÖ±½Ó»ñȡȨÏÞ¡£Á½¸öÒ³Ãæ±ðÀëΪ/ws_utc/begin.do£¬/ws_utc/config.do¡£
ws_utcΪWebLogic Web·þÎñ²âÊÔ¿Í»§¶Ë£¬ÆäÅäÖÃÒ³Ãæ´æÔÚδÊÚȨ½Ó¼ûµÄÎÊÌ⣬õ辶Ϊ/ws_utc/config.do¡£
¹¥»÷Õßͨ¹ýÀûÓô˷ì϶£¬¼´¿ÉÔÚÔ¶³ÌÇÒδ¾ÊÚȨµÄÇé¿öÏÂÔÚWebLogic·þÎñÆ÷ÉÏÖ´ÐÐËÁÒâ´úÂë¡£
1. ´Ë·ì϶ÐÔÖÊÊÇÎļþÉÏ´«£¬Ê¹ÓÃGA»Æ½ð¼×°²È«²úÆ·µÄ¿Í»§ÎÞÐèÉý¼¶²¹¶¡¼´¿É·ÀÓùwebshellÉÏ´«¡£
2. ʹÓÃOracle¹Ù·½°²È«²¼¶¡½øÐиüн¨¸´£ºhttp://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html¡£
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
https://mp.weixin.qq.com/s/y5JGmM-aNaHcs_6P9a-gRQ


¾©¹«Íø°²±¸11010802024551ºÅ