CVE-2022-21371: Oracle WebLogic Server Local File Inclusion
High
M
Mars
Submitted None
Team Summary
Official summary from Mars
A vulnerability was identified in Oracle WebLogic Server, specifically in its Web Container component. The affected versions include ██████████, ██████████, ██████████, and ██████████ This vulnerability can be exploited by an unauthenticated attacker over HTTP, potentially leading to unauthorized access to critical data or complete control over Oracle WebLogic Server. The issue involves local file inclusion, which enables attackers to access sensitive data or the entire data store of the server.
Actions:
Reported by
deb0con
Report Details
Additional information and metadata
State
Closed
Substate
Resolved