¡¾Îó²îͨ¸æ¡¿Oracle WebLogic Server δÊÚȨ»á¼ûÎó²î(CVE-2025-30762)
Ðû²¼Ê±¼ä 2025-07-16Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Oracle WebLogic Server δÊÚȨ»á¼ûÎó²î | ||
CVE ID | CVE-2025-30762 | ||
Îó²îÀàÐÍ | δÊÚȨ»á¼û | ·¢Ã÷ʱ¼ä | 2025-07-16 |
Îó²îÆÀ·Ö | 7.5 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»ÐèÒª |
PoC/EXP | δ¹ûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
Oracle WebLogic ServerÊÇOracle¹«Ë¾ÍƳöµÄÒ»¿îÆóÒµ¼¶Ó¦Ó÷þÎñÆ÷£¬Ö÷ÒªÓÃÓÚ¹¹½¨¡¢°²ÅźÍÔËÐÐJava EE£¨ÆóÒµ¼¶JavaÓ¦ÓóÌÐò£©¡£ËüÖ§³ÖWeb·þÎñ¡¢ÂþÑÜʽϵͳ¡¢ÊÂÎñÖÎÀí¡¢³¤ÆÚÐÔ¡¢ÐÂÎÅת´ïµÈ¹¦Ð§£¬ÆÕ±éÓ¦ÓÃÓÚÆóÒµ¼¶Ó¦ÓúÍÔÆÅÌËãÇéÐΡ£×÷ΪһÆäÖÐÐļþƽ̨£¬WebLogicÌṩ¸ß¿ÉÓÃÐÔ¡¢¿ÉÉìËõÐÔºÍÇå¾²ÐÔ£¬ÊÊÓÃÓÚ¹¹½¨´ó¹æÄ£¡¢ÈÝ´íµÄÆóÒµÓ¦Óá£
2025Äê7ÔÂ16ÈÕ£¬×ðÁú¿Ê±¼¯ÍÅVSRC¼à²âµ½Oracle WebLogic Server²úÆ·ÖеÄÒ»¸öδÊÚȨ»á¼ûÎó²î¡£¸ÃÎó²îÔÊÐí¹¥»÷ÕßÎÞÐèÉí·ÝÑéÖ¤£¬½öͨ¹ýT3»òIIOPÐÒé¾ÙÐÐÍøÂç»á¼û£¬±ã¿É¹¥»÷Oracle WebLogic Server¡£ÀÖ³ÉʹÓôËÎó²îºó£¬¹¥»÷ÕßÄܹ»Î´¾ÊÚȨ»á¼ûWebLogic ServerÖÐËùÓпɻá¼ûµÄÒªº¦Êý¾Ý¡£Îó²îÆÀ·Ö7.5·Ö£¬Îó²î¼¶±ð¸ßΣ¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://www.oracle.com/security-alerts/cpujul2025.html
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£
3.3 ͨÓý¨Òé
?ÆôÓÃÇ¿ÃÜÂëÕ½ÂÔ²¢ÉèÖÃΪ°´ÆÚÐ޸ġ£


¾©¹«Íø°²±¸11010802024551ºÅ