Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Administration Console in BEA WebLogic Express and WebLogic Server 9.0 and 9.1 does not properly enforce certain Domain Security Policies, which allows remote administrative users in the Deployer role to upload arbitrary files.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BEA WebLogic Express和WebLogic Server 域安全策略安全权限漏洞
Vulnerability Description
BEA WebLogic Express和WebLogic Server中的管理控制台没有正确的执行特定的域安全策略,这使得拥有部署权利的远程管理用户可以上传任意文件。
CVSS Information
N/A
Vulnerability Type
N/A