Loading HuntDB...

CVE-2022-21371: Oracle WebLogic Server Local File Inclusion

High
M
Mars
Submitted None

Team Summary

Official summary from Mars

A vulnerability was identified in Oracle WebLogic Server, specifically in its Web Container component. The affected versions include ██████████, ██████████, ██████████, and ██████████ This vulnerability can be exploited by an unauthenticated attacker over HTTP, potentially leading to unauthorized access to critical data or complete control over Oracle WebLogic Server. The issue involves local file inclusion, which enables attackers to access sensitive data or the entire data store of the server.

Reported by deb0con

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted