漏洞描述 WebLogic Server 是一个适用于云环境和传统环境的应用服务器组件。WebLogic uddiexplorer 存在服务端请求伪造漏洞(CVE-2014-4210),攻击者可以通过该漏洞发送伪造请求,探测内网敏感信息或攻击内网服务器。
相关漏洞推荐 CVE-2017-10271: WebLogic XMLDecoder 反序列化漏洞 CVE-2017-10271 POC 2025-09-01 | WebLogic XMLDecoder Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent - WL... CVE-2020-14750: Oracle WebLogic Server - Remote Command Execution POC 2025-09-01 | Oracle WebLogic Server Oracle WebLogic Server 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0 is susceptible ... CVE-2020-14883: Oracle Fusion Middleware WebLogic Server Administration Console - Remote Code Execution POC 2025-09-01 | Oracle Fusion Middleware WebLogic Server Administration Console The Oracle Fusion Middleware WebLogic Server admin console in versions 10.3.6.0.0, 12.1.3.0.0, 12.2.... CVE-2014-3120: ElasticSearch v1.1.1/1.2 RCE POC 2025-09-01 | ElasticSearch The default configuration in Elasticsearch before 1.2 enables dynamic scripting, which allows remote... CVE-2014-0160: OpenSSL Heartbleed Vulnerability POC 2025-08-01 | OpenSSL The Heartbleed bug allows anyone on the Internet to read the memory of the systems protected by the ...