WeblogicÔÙ±¬¸ßΣ©¶´ ¶¶È¦Îª¶Ä¶øÉúÌṩ½â¾ö·½°¸
Ðû²¼Ê±¼ä 2019-10-17
CVE-2019-2890 £¬¹¥»÷Õß¿Éͨ¹ýT3ÐÒé¶Ô´æÔڸé¶´µÄWebLogic×é¼þʵʩԶ³ÌÈÎÒâ´úÂë¹¥»÷£»
©¶´Ó°Ïì°æ±¾
WebLogic Server 12.1.3.0
WebLogic Server 12.2.1.3
©¶´ÀûÓÃ
²âÊÔ»·¾³£ºWebLogic Server 10.3.6.0
©¶´ÀûÓÃЧ¹û£º

Äþ¾²Â©¶´£ºCVE-2019-2887
²âÊÔ»·¾³£ºWebLogic Server 10.3.6.0
©¶´ÀûÓÃЧ¹û:

https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
? ²úÎï¼ì²âÓë·À»¤
ÒѲ¿Êð¶¶È¦Îª¶Ä¶øÉúIDS¡¢IPS¡¢WAF²úÎïµÄ¿Í»§ÇëÈ·ÈÏÈçÏÂʼþ¹æÔòÒѾÏ·¢²¢Ó¦Ó㬼´¿ÉÓÐЧ¼ì²â»ò×è¶Ï¹¥»÷£º
TCP_Oracle_WebLogic_·´ÐòÁл¯Â©¶´[CVE-2019-2890]
HTTP_WebLogic_XXE×¢Èë©¶´[CVE-2019-2887]
£¨1£©ÌìãÙÈëÇÖ¼ì²âÓë¹ÜÀíϵͳ±¨¾¯½ØÍ¼£º

£¨2£©ÌìÇåÈëÇÖ·ÀÓùϵͳ±¨¾¯½ØÍ¼£º

£¨3£©ÌìÇåWebÓ¦ÓÃÄþ¾²Íø¹Ø±¨¾¯½ØÍ¼£º

©¶´É¨Ãè
¶¶È¦Îª¶Ä¶øÉúÌì¾µ´àÈõÐÔɨÃèÓë¹ÜÀíϵͳV6.0ÓÚ2019Äê10ÔÂ17ÈÕ½ô¼±Ðû²¼Õë¶Ô¸Ã©¶´µÄÉý¼¶°ü£¬Ö§³Ö¶Ô¸Ã©¶´½øÐмì²â£¬Óû§Éý¼¶Ì쾵©ɨ²úÎï©¶´¿âºó¼´¿É¶Ô¸Ã©¶´½øÐÐɨÃè¡£
/article/type/1/146.html
ÇëÌì¾µ´àÈõÐÔɨÃèÓë¹ÜÀíϵͳV6.0²úÎïµÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬¼°Ê±¶Ô¸Ã©¶´½øÐмì²â£¬ÒԱ㾡¿ì½ÓÄÉ·À·¶´ëÊ©¡£

