Oracle WebLogic Server是美国甲骨文(Oracle)公司的一款适用于云环境和传统环境的应用服务中间件,它提供了一个现代轻型开发平台,支持应用从开发到生产的整个生命周期管理,并简化了应用的部署和管理。 Oracle WebLogic Server 12.2.1.3.0, 12.2.1.4.0 和 14.1.1.0.0存在安全漏洞,攻击者可利用该漏洞导致对关键数据的未授权访问或对所有 Oracle WebLogic Server 可访问数据的完全访问。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Oracle Corporation | WebLogic Server | 12.2.1.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/DXask88MA/Weblogic-CVE-2023-21839 | POC Details |
| 2 | Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE) | https://github.com/ASkyeye/CVE-2023-21839 | POC Details |
| 3 | CVE-2023-21839工具 | https://github.com/Firebasky/CVE-2023-21839 | POC Details |
| 4 | CVE-2023-21839 Python版本 | https://github.com/houqe/POC_CVE-2023-21839 | POC Details |
| 5 | None | https://github.com/kw3h4/CVE-2023-21839-metasploit-scanner | POC Details |
| 6 | None | https://github.com/MMarch7/weblogic_CVE-2023-21839_POC-EXP | POC Details |
| 7 | CVE-2024-20931, this is the bypass of the patch of CVE-2023-21839 | https://github.com/dinosn/CVE-2024-20931 | POC Details |
| 8 | Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE) | https://github.com/outgoingcon/CVE-2023-21839 | POC Details |
| 9 | Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE) | https://github.com/thishistorian/CVE-2023-21839 | POC Details |
| 10 | Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE) | https://github.com/juniorinter/CVE-2023-21839 | POC Details |
| 11 | Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE) | https://github.com/lovingpot/CVE-2023-21839 | POC Details |
| 12 | Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE) | https://github.com/illegalbrea/CVE-2023-21839 | POC Details |
| 13 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E4%B8%AD%E9%97%B4%E4%BB%B6%E6%BC%8F%E6%B4%9E/Weblogic%20%E6%9C%AA%E6%8E%88%E6%9D%83%E8%BF%9C%E7%A8%8B%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E%20CVE-2023-21839.md | POC Details |
| 14 | https://github.com/vulhub/vulhub/blob/master/weblogic/CVE-2023-21839/README.md | POC Details | |
| 15 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3, IIOP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). | https://github.com/projectdiscovery/nuclei-templates/blob/main/javascript/cves/2023/CVE-2023-21839.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-21890 | 9.8 CRITICAL | Oracle Communications Converged Application Server 安全漏洞 |
| CVE-2023-21846 | 8.8 HIGH | Oracle BI Publisher 安全漏洞 |
| CVE-2023-21848 | 8.8 HIGH | Oracle Communications Applications 安全漏洞 |
| CVE-2023-21832 | 8.8 HIGH | Oracle BI Publisher安全漏洞 |
| CVE-2023-21886 | 8.1 HIGH | Oracle VM VirtualBox 安全漏洞 |
| CVE-2023-21828 | 8.1 HIGH | Oracle Hospitality Reporting and Analytics 安全漏洞 |
| CVE-2023-21862 | 8.1 HIGH | Oracle Web Services Manager 安全漏洞 |
| CVE-2023-21826 | 7.6 HIGH | Oracle Hospitality Reporting and Analytics 安全漏洞 |
| CVE-2023-21893 | 7.5 HIGH | Oracle Database Server 安全漏洞 |
| CVE-2023-21842 | 7.5 HIGH | Oracle WebLogic Server 安全漏洞 |
| CVE-2023-21850 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21849 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21853 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21852 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21858 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21851 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21854 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21855 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21856 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21857 | 7.5 HIGH | Oracle E-Business Suite 安全漏洞 |
Showing top 20 of 73 CVEs. View all on vendor page → →
No comments yet