Vulnerability | Weblogic ForeignOpaqueReference remote code execution vulnerability (CVE-2024-20931) |
---|---|
Chinese name | Weblogic ForeignOpaqueReference 远程代码执行漏洞(CVE-2024-20931) |
CVSS core | 9.8 |
FOFA Query (click to view the results directly) | app="Weblogic_interface_7001" |
Number of assets affected | 194125 |
Description | WebLogic Server is one of the application server components suitable for both cloud and traditional environments.WebLogic has a remote code execution vulnerability that allows an unauthenticated attacker to access and destroy a vulnerable WebLogic Server through the IIOP protocol network. Successful exploitation of the vulnerability can cause WebLogic Server to be taken over by an attacker, resulting in remote code execution. |
Impact | There is a remote code execution vulnerability in WebLogic, which allows an unauthenticated attacker to access and damage the vulnerable WebLogic Server through the IIOP protocol network. Successful exploitation of the vulnerability can lead to WebLogic Server being taken over by the attacker, resulting in remote code execution. |