WeblogicÔÙ±¬¸ßΣÎó²î ¼øºÚµ£±£ÍøÌṩ½â¾ö¼Æ»®
Ðû²¼Ê±¼ä 2019-10-17
CVE-2019-2890 £¬£¬£¬£¬¹¥»÷Õß¿Éͨ¹ýT3ÐÒé¶Ô±£´æ¸ÃÎó²îµÄWebLogic×é¼þʵÑéÔ¶³Ìí§Òâ´úÂë¹¥»÷£»£»£»£»
Îó²îÓ°Ïì°æ±¾
WebLogic Server 12.1.3.0
WebLogic Server 12.2.1.3
Îó²îʹÓÃ
²âÊÔÇéÐΣºWebLogic Server 10.3.6.0
Îó²îʹÓÃЧ¹û£º

Çå¾²Îó²î£ºCVE-2019-2887
²âÊÔÇéÐΣºWebLogic Server 10.3.6.0
Îó²îʹÓÃЧ¹û:

https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
? ²úÆ·¼ì²âÓë·À»¤
ÒѰ²ÅżøºÚµ£±£ÍøIDS¡¢IPS¡¢WAF²úÆ·µÄ¿Í»§ÇëÈ·ÈÏÈçÏÂÊÂÎñ¹æÔòÒѾÏ·¢²¢Ó¦Ó㬣¬£¬£¬¼´¿ÉÓÐÓüì²â»ò×è¶Ï¹¥»÷£º
TCP_Oracle_WebLogic_·´ÐòÁл¯Îó²î[CVE-2019-2890]
HTTP_WebLogic_XXE×¢ÈëÎó²î[CVE-2019-2887]
£¨1£©ÌìãÙÈëÇÖ¼ì²âÓëÖÎÀíϵͳ±¨¾¯½ØÍ¼£º

£¨2£©ÌìÇåÈëÇÖ·ÀÓùϵͳ±¨¾¯½ØÍ¼£º

£¨3£©ÌìÇåWebÓ¦ÓÃÇå¾²Íø¹Ø±¨¾¯½ØÍ¼£º

Îó²îɨÃè
¼øºÚµ£±£ÍøÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0ÓÚ2019Äê10ÔÂ17ÈÕ½ôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü£¬£¬£¬£¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐмì²â£¬£¬£¬£¬Óû§Éý¼¶Ì쾵©ɨ²úÆ·Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£¡£¡£¡£¡£¡£¡£
/article/type/1/146.html
ÇëÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬£¬£¬£¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â£¬£¬£¬£¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£¡£¡£¡£¡£¡£¡£

