References https://nvd.nist.gov/vuln/detail/cve-2020-14756 https://www.oracle.com/security-alerts/cpujan2021.html https://www.anquanke.com/post/id/231436 https://www.sentinelone.com/vulnerability-database/cve-2020-14756/ https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/middleware/Weblogic-Server%E8%BF%9C%E7%A8%8B%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E-CVE-2020-14756.md https://www.modb.pro/db/506674 https://avd.aliyun.com/nvd/list?type=WEB%E5%BA%94%E7%94%A8&page=8 https://www.sxxdckj.com/cms/a/309.html
Related VulnerabilitiesPoCCVE-2026-35273: Oracle PeopleSoft PeopleTools PSEMHUB - Pre-Auth Java Deserialization RCEPoCCVE-2020-9314: Oracle iPlanet Web Server 7.0.x - Image InjectionPoCoracle-ebs-sqllog-exposure: Oracle EBS SQL Log - ExposurePoCCVE-2021-2135: Oracle WebLogic Server - Remote Code ExecutionOracle Identity Manager /iam/governance/applicationmanagement/api/v1/applications/groovyscriptstatus;.wadl 命令执行漏洞(CVE-2025-61757)Oracle Identity Manager 访问控制不当漏洞PoCCVE-2025-61757: Oracle Identity Manager REST WebServices - Authentication BypassOracle_E_Business 存在SSRF(CVE-2025-61884)(CVE-2025-61757)Oracle Identity Manager REST WebServices远程接管漏洞(CVE-2025-61884) Oracle配置器运行时UI未授权访问漏洞Oracle E-Business Suite 存在访问控制不当漏洞(CVE-2025-61884)