APP: Oracle Weblogic Server Node Manager Remote Code Execution

This signature detects attempts to exploit a known vulnerability against Oracle Weblogic Server Node Manager. A successful attack can lead to arbitrary code execution.

Extended Description

Unspecified vulnerability in the WebLogic Server in Oracle WebLogic Server 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, and 10.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

Affected Products

Oracle weblogic_server

References

BugTraq: 37926

CVE: CVE-2010-0073

Short Name
APP:ORACLE:WEBLGC-CMD-EXEC
Severity
Critical
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
CVE-2010-0073 Code Execution Manager Node Oracle Remote Server Weblogic bid:37926
Release Date
04/09/2020
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3377
False Positive
Unknown
Vendors

Oracle

CVSS Score

10.0

Found a potential security threat?